./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 592117a566b45deb7ab0407540eecbf2be0f732724f0529483f85e7a6864867a --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-17 15:07:08,099 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-17 15:07:08,101 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-17 15:07:08,133 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-17 15:07:08,134 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-17 15:07:08,134 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-17 15:07:08,135 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-17 15:07:08,136 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-17 15:07:08,138 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-17 15:07:08,138 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-17 15:07:08,139 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-17 15:07:08,140 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-17 15:07:08,141 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-17 15:07:08,143 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-17 15:07:08,144 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-17 15:07:08,146 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-17 15:07:08,149 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-17 15:07:08,153 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-17 15:07:08,154 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-17 15:07:08,155 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-17 15:07:08,156 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-17 15:07:08,157 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-17 15:07:08,158 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-17 15:07:08,159 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-17 15:07:08,161 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-17 15:07:08,161 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-17 15:07:08,161 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-17 15:07:08,162 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-17 15:07:08,162 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-17 15:07:08,162 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-17 15:07:08,163 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-17 15:07:08,163 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-17 15:07:08,164 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-17 15:07:08,164 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-17 15:07:08,165 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-17 15:07:08,165 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-17 15:07:08,166 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-17 15:07:08,166 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-17 15:07:08,166 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-17 15:07:08,167 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-17 15:07:08,167 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-17 15:07:08,172 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-17 15:07:08,191 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-17 15:07:08,191 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-17 15:07:08,192 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-17 15:07:08,192 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-17 15:07:08,192 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-17 15:07:08,193 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-17 15:07:08,193 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-17 15:07:08,193 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-17 15:07:08,193 INFO L138 SettingsManager]: * Use SBE=true [2021-12-17 15:07:08,194 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-17 15:07:08,194 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-17 15:07:08,194 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-17 15:07:08,194 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-17 15:07:08,194 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-17 15:07:08,194 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-17 15:07:08,194 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-17 15:07:08,195 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-17 15:07:08,195 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-17 15:07:08,195 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-17 15:07:08,195 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-17 15:07:08,195 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-17 15:07:08,195 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-17 15:07:08,196 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-17 15:07:08,196 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-17 15:07:08,196 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:07:08,196 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-17 15:07:08,196 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-17 15:07:08,196 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-17 15:07:08,197 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-17 15:07:08,197 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-17 15:07:08,197 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-17 15:07:08,197 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-17 15:07:08,197 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-17 15:07:08,197 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-17 15:07:08,198 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 592117a566b45deb7ab0407540eecbf2be0f732724f0529483f85e7a6864867a [2021-12-17 15:07:08,408 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-17 15:07:08,429 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-17 15:07:08,431 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-17 15:07:08,431 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-17 15:07:08,432 INFO L275 PluginConnector]: CDTParser initialized [2021-12-17 15:07:08,433 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c [2021-12-17 15:07:08,500 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/150694e01/8f67be6b50b94ccba98a777953913424/FLAGaedaf0509 [2021-12-17 15:07:08,917 INFO L306 CDTParser]: Found 1 translation units. [2021-12-17 15:07:08,918 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c [2021-12-17 15:07:08,927 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/150694e01/8f67be6b50b94ccba98a777953913424/FLAGaedaf0509 [2021-12-17 15:07:08,953 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/150694e01/8f67be6b50b94ccba98a777953913424 [2021-12-17 15:07:08,955 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-17 15:07:08,956 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-17 15:07:08,957 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-17 15:07:08,957 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-17 15:07:08,961 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-17 15:07:08,962 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:07:08" (1/1) ... [2021-12-17 15:07:08,963 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@44184b2d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:08, skipping insertion in model container [2021-12-17 15:07:08,964 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:07:08" (1/1) ... [2021-12-17 15:07:08,977 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-17 15:07:09,011 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-17 15:07:09,194 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c[19185,19198] [2021-12-17 15:07:09,204 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:07:09,215 INFO L203 MainTranslator]: Completed pre-run [2021-12-17 15:07:09,274 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c[19185,19198] [2021-12-17 15:07:09,274 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:07:09,286 INFO L208 MainTranslator]: Completed translation [2021-12-17 15:07:09,287 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09 WrapperNode [2021-12-17 15:07:09,287 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-17 15:07:09,288 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-17 15:07:09,288 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-17 15:07:09,288 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-17 15:07:09,294 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,313 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,331 INFO L137 Inliner]: procedures = 58, calls = 161, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 271 [2021-12-17 15:07:09,332 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-17 15:07:09,332 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-17 15:07:09,332 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-17 15:07:09,332 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-17 15:07:09,341 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,342 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,351 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,351 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,356 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,358 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,360 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,361 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-17 15:07:09,362 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-17 15:07:09,362 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-17 15:07:09,362 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-17 15:07:09,363 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (1/1) ... [2021-12-17 15:07:09,368 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:07:09,380 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:07:09,394 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-17 15:07:09,395 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-17 15:07:09,444 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-17 15:07:09,444 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-17 15:07:09,444 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-17 15:07:09,444 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-17 15:07:09,444 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-17 15:07:09,444 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2021-12-17 15:07:09,445 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2021-12-17 15:07:09,445 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-17 15:07:09,445 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-17 15:07:09,445 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-17 15:07:09,445 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-17 15:07:09,445 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-17 15:07:09,445 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-17 15:07:09,445 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2021-12-17 15:07:09,446 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2021-12-17 15:07:09,446 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2021-12-17 15:07:09,446 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2021-12-17 15:07:09,446 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-17 15:07:09,446 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-17 15:07:09,446 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-17 15:07:09,446 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-17 15:07:09,446 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-17 15:07:09,447 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-17 15:07:09,447 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-17 15:07:09,514 INFO L236 CfgBuilder]: Building ICFG [2021-12-17 15:07:09,515 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-17 15:07:09,708 INFO L277 CfgBuilder]: Performing block encoding [2021-12-17 15:07:09,714 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-17 15:07:09,714 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-17 15:07:09,715 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:07:09 BoogieIcfgContainer [2021-12-17 15:07:09,715 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-17 15:07:09,716 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-17 15:07:09,716 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-17 15:07:09,718 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-17 15:07:09,719 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 17.12 03:07:08" (1/3) ... [2021-12-17 15:07:09,719 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@42fc462f and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:07:09, skipping insertion in model container [2021-12-17 15:07:09,719 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:07:09" (2/3) ... [2021-12-17 15:07:09,720 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@42fc462f and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:07:09, skipping insertion in model container [2021-12-17 15:07:09,720 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:07:09" (3/3) ... [2021-12-17 15:07:09,721 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product62.cil.c [2021-12-17 15:07:09,724 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-17 15:07:09,724 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-17 15:07:09,754 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-17 15:07:09,759 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-17 15:07:09,767 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-17 15:07:09,778 INFO L276 IsEmpty]: Start isEmpty. Operand has 109 states, 79 states have (on average 1.3670886075949367) internal successors, (108), 89 states have internal predecessors, (108), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2021-12-17 15:07:09,783 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2021-12-17 15:07:09,783 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:09,784 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:09,784 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:09,787 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:09,790 INFO L85 PathProgramCache]: Analyzing trace with hash 1689838058, now seen corresponding path program 1 times [2021-12-17 15:07:09,796 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:09,797 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1022956805] [2021-12-17 15:07:09,797 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:09,798 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:09,882 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:09,946 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2021-12-17 15:07:09,948 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:09,957 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:07:09,957 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:09,958 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1022956805] [2021-12-17 15:07:09,958 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1022956805] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:09,958 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:09,959 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:07:09,960 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1972003867] [2021-12-17 15:07:09,960 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:09,963 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-17 15:07:09,963 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:09,982 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-17 15:07:09,982 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:07:09,984 INFO L87 Difference]: Start difference. First operand has 109 states, 79 states have (on average 1.3670886075949367) internal successors, (108), 89 states have internal predecessors, (108), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) Second operand has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:07:10,022 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:10,023 INFO L93 Difference]: Finished difference Result 210 states and 283 transitions. [2021-12-17 15:07:10,024 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-17 15:07:10,025 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23 [2021-12-17 15:07:10,025 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:10,033 INFO L225 Difference]: With dead ends: 210 [2021-12-17 15:07:10,034 INFO L226 Difference]: Without dead ends: 100 [2021-12-17 15:07:10,039 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:07:10,052 INFO L933 BasicCegarLoop]: 138 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 138 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:10,053 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 138 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:07:10,065 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2021-12-17 15:07:10,093 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 100. [2021-12-17 15:07:10,097 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 72 states have (on average 1.3055555555555556) internal successors, (94), 81 states have internal predecessors, (94), 18 states have call successors, (18), 10 states have call predecessors, (18), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2021-12-17 15:07:10,099 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 129 transitions. [2021-12-17 15:07:10,103 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 129 transitions. Word has length 23 [2021-12-17 15:07:10,103 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:10,104 INFO L470 AbstractCegarLoop]: Abstraction has 100 states and 129 transitions. [2021-12-17 15:07:10,104 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:07:10,104 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 129 transitions. [2021-12-17 15:07:10,106 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-17 15:07:10,107 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:10,107 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:10,107 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-17 15:07:10,108 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:10,109 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:10,109 INFO L85 PathProgramCache]: Analyzing trace with hash 1112714422, now seen corresponding path program 1 times [2021-12-17 15:07:10,109 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:10,110 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [209614508] [2021-12-17 15:07:10,110 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:10,110 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:10,140 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,168 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2021-12-17 15:07:10,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,176 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:07:10,176 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:10,177 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [209614508] [2021-12-17 15:07:10,177 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [209614508] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:10,177 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:10,177 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-17 15:07:10,177 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1958403400] [2021-12-17 15:07:10,178 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:10,179 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:07:10,179 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:10,179 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:07:10,180 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:07:10,180 INFO L87 Difference]: Start difference. First operand 100 states and 129 transitions. Second operand has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:07:10,197 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:10,201 INFO L93 Difference]: Finished difference Result 165 states and 213 transitions. [2021-12-17 15:07:10,202 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:07:10,203 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2021-12-17 15:07:10,203 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:10,205 INFO L225 Difference]: With dead ends: 165 [2021-12-17 15:07:10,206 INFO L226 Difference]: Without dead ends: 91 [2021-12-17 15:07:10,207 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:07:10,209 INFO L933 BasicCegarLoop]: 116 mSDtfsCounter, 13 mSDsluCounter, 99 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 215 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:10,210 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [16 Valid, 215 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:07:10,211 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2021-12-17 15:07:10,218 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 91. [2021-12-17 15:07:10,224 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 91 states, 66 states have (on average 1.3181818181818181) internal successors, (87), 75 states have internal predecessors, (87), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2021-12-17 15:07:10,226 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 91 states to 91 states and 117 transitions. [2021-12-17 15:07:10,232 INFO L78 Accepts]: Start accepts. Automaton has 91 states and 117 transitions. Word has length 24 [2021-12-17 15:07:10,232 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:10,232 INFO L470 AbstractCegarLoop]: Abstraction has 91 states and 117 transitions. [2021-12-17 15:07:10,232 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:07:10,232 INFO L276 IsEmpty]: Start isEmpty. Operand 91 states and 117 transitions. [2021-12-17 15:07:10,233 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2021-12-17 15:07:10,233 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:10,233 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:10,233 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-17 15:07:10,234 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:10,234 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:10,234 INFO L85 PathProgramCache]: Analyzing trace with hash -1697557311, now seen corresponding path program 1 times [2021-12-17 15:07:10,234 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:10,234 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [212182472] [2021-12-17 15:07:10,235 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:10,235 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:10,270 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,328 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-17 15:07:10,330 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,335 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:07:10,335 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:10,335 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [212182472] [2021-12-17 15:07:10,335 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [212182472] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:10,336 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:10,336 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-17 15:07:10,336 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [17100879] [2021-12-17 15:07:10,336 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:10,336 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:07:10,336 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:10,337 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:07:10,337 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:07:10,337 INFO L87 Difference]: Start difference. First operand 91 states and 117 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:07:10,367 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:10,367 INFO L93 Difference]: Finished difference Result 175 states and 228 transitions. [2021-12-17 15:07:10,367 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:07:10,368 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 29 [2021-12-17 15:07:10,368 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:10,369 INFO L225 Difference]: With dead ends: 175 [2021-12-17 15:07:10,369 INFO L226 Difference]: Without dead ends: 91 [2021-12-17 15:07:10,371 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:07:10,372 INFO L933 BasicCegarLoop]: 115 mSDtfsCounter, 111 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 111 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:10,372 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [111 Valid, 115 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:07:10,373 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2021-12-17 15:07:10,381 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 91. [2021-12-17 15:07:10,382 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 91 states, 66 states have (on average 1.303030303030303) internal successors, (86), 75 states have internal predecessors, (86), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2021-12-17 15:07:10,382 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 91 states to 91 states and 116 transitions. [2021-12-17 15:07:10,383 INFO L78 Accepts]: Start accepts. Automaton has 91 states and 116 transitions. Word has length 29 [2021-12-17 15:07:10,383 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:10,383 INFO L470 AbstractCegarLoop]: Abstraction has 91 states and 116 transitions. [2021-12-17 15:07:10,383 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:07:10,383 INFO L276 IsEmpty]: Start isEmpty. Operand 91 states and 116 transitions. [2021-12-17 15:07:10,384 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2021-12-17 15:07:10,384 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:10,384 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:10,384 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-17 15:07:10,385 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:10,385 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:10,385 INFO L85 PathProgramCache]: Analyzing trace with hash -189961352, now seen corresponding path program 1 times [2021-12-17 15:07:10,385 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:10,385 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2017350782] [2021-12-17 15:07:10,385 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:10,385 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:10,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,441 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-17 15:07:10,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,449 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:10,451 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,461 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:10,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,464 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2021-12-17 15:07:10,465 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,473 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:07:10,473 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:10,473 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2017350782] [2021-12-17 15:07:10,474 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2017350782] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:10,474 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:10,474 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-17 15:07:10,474 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1320960295] [2021-12-17 15:07:10,474 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:10,474 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-17 15:07:10,474 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:10,475 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-17 15:07:10,475 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-17 15:07:10,475 INFO L87 Difference]: Start difference. First operand 91 states and 116 transitions. Second operand has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 3 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-17 15:07:10,685 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:10,685 INFO L93 Difference]: Finished difference Result 261 states and 330 transitions. [2021-12-17 15:07:10,685 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-17 15:07:10,685 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 3 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) Word has length 44 [2021-12-17 15:07:10,686 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:10,690 INFO L225 Difference]: With dead ends: 261 [2021-12-17 15:07:10,691 INFO L226 Difference]: Without dead ends: 177 [2021-12-17 15:07:10,692 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 12 SyntacticMatches, 1 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2021-12-17 15:07:10,692 INFO L933 BasicCegarLoop]: 143 mSDtfsCounter, 198 mSDsluCounter, 176 mSDsCounter, 0 mSdLazyCounter, 125 mSolverCounterSat, 77 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 200 SdHoareTripleChecker+Valid, 319 SdHoareTripleChecker+Invalid, 202 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 77 IncrementalHoareTripleChecker+Valid, 125 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:10,694 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [200 Valid, 319 Invalid, 202 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [77 Valid, 125 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-17 15:07:10,696 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 177 states. [2021-12-17 15:07:10,710 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 177 to 171. [2021-12-17 15:07:10,710 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 171 states, 125 states have (on average 1.232) internal successors, (154), 134 states have internal predecessors, (154), 22 states have call successors, (22), 18 states have call predecessors, (22), 23 states have return successors, (29), 24 states have call predecessors, (29), 22 states have call successors, (29) [2021-12-17 15:07:10,715 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 171 states to 171 states and 205 transitions. [2021-12-17 15:07:10,716 INFO L78 Accepts]: Start accepts. Automaton has 171 states and 205 transitions. Word has length 44 [2021-12-17 15:07:10,716 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:10,716 INFO L470 AbstractCegarLoop]: Abstraction has 171 states and 205 transitions. [2021-12-17 15:07:10,716 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 3 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-17 15:07:10,716 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 205 transitions. [2021-12-17 15:07:10,717 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2021-12-17 15:07:10,717 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:10,717 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:10,718 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-17 15:07:10,718 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:10,718 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:10,718 INFO L85 PathProgramCache]: Analyzing trace with hash 963666416, now seen corresponding path program 1 times [2021-12-17 15:07:10,718 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:10,719 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1936358922] [2021-12-17 15:07:10,719 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:10,719 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:10,735 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,778 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-17 15:07:10,782 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,785 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:10,787 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,793 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-17 15:07:10,793 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,812 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2021-12-17 15:07:10,814 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:10,822 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:07:10,823 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:10,823 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1936358922] [2021-12-17 15:07:10,823 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1936358922] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:10,823 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:10,823 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:07:10,824 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [147636316] [2021-12-17 15:07:10,824 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:10,825 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-17 15:07:10,825 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:10,826 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-17 15:07:10,826 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:07:10,826 INFO L87 Difference]: Start difference. First operand 171 states and 205 transitions. Second operand has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-17 15:07:11,074 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:11,074 INFO L93 Difference]: Finished difference Result 503 states and 613 transitions. [2021-12-17 15:07:11,074 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-12-17 15:07:11,075 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) Word has length 50 [2021-12-17 15:07:11,075 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:11,077 INFO L225 Difference]: With dead ends: 503 [2021-12-17 15:07:11,077 INFO L226 Difference]: Without dead ends: 339 [2021-12-17 15:07:11,078 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 23 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=53, Invalid=157, Unknown=0, NotChecked=0, Total=210 [2021-12-17 15:07:11,084 INFO L933 BasicCegarLoop]: 108 mSDtfsCounter, 187 mSDsluCounter, 388 mSDsCounter, 0 mSdLazyCounter, 257 mSolverCounterSat, 71 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 196 SdHoareTripleChecker+Valid, 496 SdHoareTripleChecker+Invalid, 328 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 71 IncrementalHoareTripleChecker+Valid, 257 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:11,085 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [196 Valid, 496 Invalid, 328 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [71 Valid, 257 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-17 15:07:11,086 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 339 states. [2021-12-17 15:07:11,112 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 339 to 325. [2021-12-17 15:07:11,112 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 325 states, 234 states have (on average 1.205128205128205) internal successors, (282), 251 states have internal predecessors, (282), 44 states have call successors, (44), 36 states have call predecessors, (44), 46 states have return successors, (60), 48 states have call predecessors, (60), 44 states have call successors, (60) [2021-12-17 15:07:11,114 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 325 states to 325 states and 386 transitions. [2021-12-17 15:07:11,114 INFO L78 Accepts]: Start accepts. Automaton has 325 states and 386 transitions. Word has length 50 [2021-12-17 15:07:11,115 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:11,115 INFO L470 AbstractCegarLoop]: Abstraction has 325 states and 386 transitions. [2021-12-17 15:07:11,115 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-17 15:07:11,115 INFO L276 IsEmpty]: Start isEmpty. Operand 325 states and 386 transitions. [2021-12-17 15:07:11,116 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2021-12-17 15:07:11,116 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:11,116 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:11,116 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-17 15:07:11,116 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:11,117 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:11,117 INFO L85 PathProgramCache]: Analyzing trace with hash -1159869580, now seen corresponding path program 1 times [2021-12-17 15:07:11,117 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:11,117 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1757365494] [2021-12-17 15:07:11,117 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:11,117 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:11,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,162 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-17 15:07:11,163 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,170 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-17 15:07:11,176 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,183 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:11,186 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,201 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-17 15:07:11,202 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,206 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 45 [2021-12-17 15:07:11,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,210 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:07:11,210 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:11,211 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1757365494] [2021-12-17 15:07:11,211 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1757365494] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:11,211 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:11,211 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:07:11,211 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1733501123] [2021-12-17 15:07:11,211 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:11,213 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-17 15:07:11,213 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:11,213 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-17 15:07:11,213 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:07:11,214 INFO L87 Difference]: Start difference. First operand 325 states and 386 transitions. Second operand has 7 states, 7 states have (on average 6.142857142857143) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 1 states have call predecessors, (5), 2 states have call successors, (5) [2021-12-17 15:07:11,510 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:11,510 INFO L93 Difference]: Finished difference Result 341 states and 402 transitions. [2021-12-17 15:07:11,510 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2021-12-17 15:07:11,510 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.142857142857143) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 1 states have call predecessors, (5), 2 states have call successors, (5) Word has length 54 [2021-12-17 15:07:11,512 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:11,514 INFO L225 Difference]: With dead ends: 341 [2021-12-17 15:07:11,514 INFO L226 Difference]: Without dead ends: 339 [2021-12-17 15:07:11,515 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 31 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 32 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=84, Invalid=188, Unknown=0, NotChecked=0, Total=272 [2021-12-17 15:07:11,515 INFO L933 BasicCegarLoop]: 112 mSDtfsCounter, 206 mSDsluCounter, 155 mSDsCounter, 0 mSdLazyCounter, 390 mSolverCounterSat, 89 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 208 SdHoareTripleChecker+Valid, 267 SdHoareTripleChecker+Invalid, 479 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 89 IncrementalHoareTripleChecker+Valid, 390 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:11,517 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [208 Valid, 267 Invalid, 479 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [89 Valid, 390 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-17 15:07:11,517 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 339 states. [2021-12-17 15:07:11,554 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 339 to 325. [2021-12-17 15:07:11,555 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 325 states, 234 states have (on average 1.1965811965811965) internal successors, (280), 251 states have internal predecessors, (280), 44 states have call successors, (44), 36 states have call predecessors, (44), 46 states have return successors, (60), 48 states have call predecessors, (60), 44 states have call successors, (60) [2021-12-17 15:07:11,558 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 325 states to 325 states and 384 transitions. [2021-12-17 15:07:11,558 INFO L78 Accepts]: Start accepts. Automaton has 325 states and 384 transitions. Word has length 54 [2021-12-17 15:07:11,560 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:11,560 INFO L470 AbstractCegarLoop]: Abstraction has 325 states and 384 transitions. [2021-12-17 15:07:11,560 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.142857142857143) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 1 states have call predecessors, (5), 2 states have call successors, (5) [2021-12-17 15:07:11,560 INFO L276 IsEmpty]: Start isEmpty. Operand 325 states and 384 transitions. [2021-12-17 15:07:11,566 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2021-12-17 15:07:11,566 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:11,566 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:11,566 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-17 15:07:11,566 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:11,567 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:11,567 INFO L85 PathProgramCache]: Analyzing trace with hash -420356574, now seen corresponding path program 1 times [2021-12-17 15:07:11,567 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:11,567 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [922076350] [2021-12-17 15:07:11,567 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:11,567 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:11,584 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,613 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-17 15:07:11,615 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,620 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-17 15:07:11,623 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,633 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:11,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,654 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-17 15:07:11,655 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,657 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2021-12-17 15:07:11,657 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,662 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2021-12-17 15:07:11,663 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,670 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-17 15:07:11,670 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:11,670 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [922076350] [2021-12-17 15:07:11,670 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [922076350] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:11,670 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:11,670 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:07:11,671 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [620261831] [2021-12-17 15:07:11,672 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:11,673 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-17 15:07:11,673 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:11,674 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-17 15:07:11,674 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:07:11,674 INFO L87 Difference]: Start difference. First operand 325 states and 384 transitions. Second operand has 7 states, 7 states have (on average 7.0) internal successors, (49), 5 states have internal predecessors, (49), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-17 15:07:11,876 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:11,876 INFO L93 Difference]: Finished difference Result 661 states and 798 transitions. [2021-12-17 15:07:11,876 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-17 15:07:11,877 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 7.0) internal successors, (49), 5 states have internal predecessors, (49), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 64 [2021-12-17 15:07:11,878 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:11,880 INFO L225 Difference]: With dead ends: 661 [2021-12-17 15:07:11,880 INFO L226 Difference]: Without dead ends: 343 [2021-12-17 15:07:11,880 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 15 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-12-17 15:07:11,881 INFO L933 BasicCegarLoop]: 100 mSDtfsCounter, 143 mSDsluCounter, 162 mSDsCounter, 0 mSdLazyCounter, 326 mSolverCounterSat, 67 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 144 SdHoareTripleChecker+Valid, 262 SdHoareTripleChecker+Invalid, 393 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 67 IncrementalHoareTripleChecker+Valid, 326 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:11,881 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [144 Valid, 262 Invalid, 393 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [67 Valid, 326 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:07:11,882 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 343 states. [2021-12-17 15:07:11,892 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 343 to 331. [2021-12-17 15:07:11,892 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 331 states, 240 states have (on average 1.1916666666666667) internal successors, (286), 257 states have internal predecessors, (286), 44 states have call successors, (44), 36 states have call predecessors, (44), 46 states have return successors, (60), 48 states have call predecessors, (60), 44 states have call successors, (60) [2021-12-17 15:07:11,893 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 331 states to 331 states and 390 transitions. [2021-12-17 15:07:11,894 INFO L78 Accepts]: Start accepts. Automaton has 331 states and 390 transitions. Word has length 64 [2021-12-17 15:07:11,894 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:11,894 INFO L470 AbstractCegarLoop]: Abstraction has 331 states and 390 transitions. [2021-12-17 15:07:11,894 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 7.0) internal successors, (49), 5 states have internal predecessors, (49), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-17 15:07:11,894 INFO L276 IsEmpty]: Start isEmpty. Operand 331 states and 390 transitions. [2021-12-17 15:07:11,895 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2021-12-17 15:07:11,895 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:11,895 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:11,895 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-17 15:07:11,895 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:11,895 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:11,895 INFO L85 PathProgramCache]: Analyzing trace with hash -145596960, now seen corresponding path program 1 times [2021-12-17 15:07:11,895 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:11,895 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2011973507] [2021-12-17 15:07:11,896 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:11,896 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:11,903 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,918 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-17 15:07:11,919 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,922 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-17 15:07:11,925 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,934 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:11,936 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,959 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-17 15:07:11,960 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,968 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2021-12-17 15:07:11,970 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,977 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2021-12-17 15:07:11,978 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:11,980 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-17 15:07:11,981 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:11,981 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2011973507] [2021-12-17 15:07:11,981 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2011973507] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:11,981 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:11,981 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:07:11,981 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1267401107] [2021-12-17 15:07:11,981 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:11,982 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-17 15:07:11,982 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:11,982 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-17 15:07:11,983 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:07:11,983 INFO L87 Difference]: Start difference. First operand 331 states and 390 transitions. Second operand has 7 states, 7 states have (on average 7.0) internal successors, (49), 5 states have internal predecessors, (49), 3 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-17 15:07:12,172 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:12,172 INFO L93 Difference]: Finished difference Result 679 states and 818 transitions. [2021-12-17 15:07:12,173 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-17 15:07:12,173 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 7.0) internal successors, (49), 5 states have internal predecessors, (49), 3 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 64 [2021-12-17 15:07:12,173 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:12,175 INFO L225 Difference]: With dead ends: 679 [2021-12-17 15:07:12,175 INFO L226 Difference]: Without dead ends: 355 [2021-12-17 15:07:12,176 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=56, Invalid=100, Unknown=0, NotChecked=0, Total=156 [2021-12-17 15:07:12,176 INFO L933 BasicCegarLoop]: 100 mSDtfsCounter, 254 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 241 mSolverCounterSat, 108 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 257 SdHoareTripleChecker+Valid, 222 SdHoareTripleChecker+Invalid, 349 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 108 IncrementalHoareTripleChecker+Valid, 241 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:12,176 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [257 Valid, 222 Invalid, 349 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [108 Valid, 241 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:07:12,177 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 355 states. [2021-12-17 15:07:12,187 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 355 to 335. [2021-12-17 15:07:12,200 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 335 states, 244 states have (on average 1.1885245901639345) internal successors, (290), 261 states have internal predecessors, (290), 44 states have call successors, (44), 36 states have call predecessors, (44), 46 states have return successors, (60), 48 states have call predecessors, (60), 44 states have call successors, (60) [2021-12-17 15:07:12,201 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 335 states to 335 states and 394 transitions. [2021-12-17 15:07:12,201 INFO L78 Accepts]: Start accepts. Automaton has 335 states and 394 transitions. Word has length 64 [2021-12-17 15:07:12,201 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:12,201 INFO L470 AbstractCegarLoop]: Abstraction has 335 states and 394 transitions. [2021-12-17 15:07:12,201 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 7.0) internal successors, (49), 5 states have internal predecessors, (49), 3 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-17 15:07:12,202 INFO L276 IsEmpty]: Start isEmpty. Operand 335 states and 394 transitions. [2021-12-17 15:07:12,202 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2021-12-17 15:07:12,202 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:12,202 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:12,202 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-17 15:07:12,202 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:12,203 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:12,203 INFO L85 PathProgramCache]: Analyzing trace with hash 1905387038, now seen corresponding path program 1 times [2021-12-17 15:07:12,203 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:12,203 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1188238212] [2021-12-17 15:07:12,203 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:12,203 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:12,211 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,228 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-17 15:07:12,229 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,233 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-17 15:07:12,235 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,245 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:12,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,257 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-17 15:07:12,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,259 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2021-12-17 15:07:12,260 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,261 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2021-12-17 15:07:12,261 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,262 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-17 15:07:12,262 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:12,263 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1188238212] [2021-12-17 15:07:12,263 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1188238212] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:12,263 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:07:12,263 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-17 15:07:12,263 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1574418000] [2021-12-17 15:07:12,263 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:12,263 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-17 15:07:12,263 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:12,264 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-17 15:07:12,264 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-17 15:07:12,264 INFO L87 Difference]: Start difference. First operand 335 states and 394 transitions. Second operand has 6 states, 6 states have (on average 8.166666666666666) internal successors, (49), 4 states have internal predecessors, (49), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 4 states have call predecessors, (6), 4 states have call successors, (6) [2021-12-17 15:07:12,515 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:12,515 INFO L93 Difference]: Finished difference Result 911 states and 1132 transitions. [2021-12-17 15:07:12,515 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2021-12-17 15:07:12,516 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.166666666666666) internal successors, (49), 4 states have internal predecessors, (49), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 4 states have call predecessors, (6), 4 states have call successors, (6) Word has length 64 [2021-12-17 15:07:12,516 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:12,519 INFO L225 Difference]: With dead ends: 911 [2021-12-17 15:07:12,519 INFO L226 Difference]: Without dead ends: 583 [2021-12-17 15:07:12,520 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 17 SyntacticMatches, 1 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2021-12-17 15:07:12,522 INFO L933 BasicCegarLoop]: 147 mSDtfsCounter, 333 mSDsluCounter, 127 mSDsCounter, 0 mSdLazyCounter, 298 mSolverCounterSat, 154 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 335 SdHoareTripleChecker+Valid, 274 SdHoareTripleChecker+Invalid, 452 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 154 IncrementalHoareTripleChecker+Valid, 298 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:12,522 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [335 Valid, 274 Invalid, 452 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [154 Valid, 298 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-17 15:07:12,523 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 583 states. [2021-12-17 15:07:12,546 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 583 to 581. [2021-12-17 15:07:12,547 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 581 states, 426 states have (on average 1.1807511737089202) internal successors, (503), 451 states have internal predecessors, (503), 78 states have call successors, (78), 70 states have call predecessors, (78), 76 states have return successors, (121), 80 states have call predecessors, (121), 78 states have call successors, (121) [2021-12-17 15:07:12,551 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 581 states to 581 states and 702 transitions. [2021-12-17 15:07:12,551 INFO L78 Accepts]: Start accepts. Automaton has 581 states and 702 transitions. Word has length 64 [2021-12-17 15:07:12,552 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:12,552 INFO L470 AbstractCegarLoop]: Abstraction has 581 states and 702 transitions. [2021-12-17 15:07:12,552 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.166666666666666) internal successors, (49), 4 states have internal predecessors, (49), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 4 states have call predecessors, (6), 4 states have call successors, (6) [2021-12-17 15:07:12,553 INFO L276 IsEmpty]: Start isEmpty. Operand 581 states and 702 transitions. [2021-12-17 15:07:12,553 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 69 [2021-12-17 15:07:12,554 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:12,554 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:12,554 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-17 15:07:12,554 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:12,554 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:12,554 INFO L85 PathProgramCache]: Analyzing trace with hash 2085614340, now seen corresponding path program 1 times [2021-12-17 15:07:12,555 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:12,555 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2142124904] [2021-12-17 15:07:12,555 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:12,555 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:12,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,604 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:07:12,605 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,610 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2021-12-17 15:07:12,611 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,617 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2021-12-17 15:07:12,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,634 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:12,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,668 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-17 15:07:12,669 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,686 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2021-12-17 15:07:12,688 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,696 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 59 [2021-12-17 15:07:12,697 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,698 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2021-12-17 15:07:12,699 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:12,699 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2142124904] [2021-12-17 15:07:12,699 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2142124904] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-17 15:07:12,699 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1166142407] [2021-12-17 15:07:12,699 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:12,700 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-17 15:07:12,700 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:07:12,701 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-17 15:07:12,746 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-17 15:07:12,787 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:12,789 INFO L263 TraceCheckSpWp]: Trace formula consists of 395 conjuncts, 9 conjunts are in the unsatisfiable core [2021-12-17 15:07:12,794 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-17 15:07:13,031 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:07:13,032 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-17 15:07:13,032 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1166142407] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:13,032 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-17 15:07:13,032 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [14] total 20 [2021-12-17 15:07:13,032 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [369862183] [2021-12-17 15:07:13,033 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:13,033 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-17 15:07:13,033 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:13,033 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-17 15:07:13,034 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=52, Invalid=328, Unknown=0, NotChecked=0, Total=380 [2021-12-17 15:07:13,034 INFO L87 Difference]: Start difference. First operand 581 states and 702 transitions. Second operand has 8 states, 8 states have (on average 6.625) internal successors, (53), 6 states have internal predecessors, (53), 3 states have call successors, (8), 3 states have call predecessors, (8), 5 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-17 15:07:13,160 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:13,160 INFO L93 Difference]: Finished difference Result 1132 states and 1374 transitions. [2021-12-17 15:07:13,161 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-17 15:07:13,161 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 6.625) internal successors, (53), 6 states have internal predecessors, (53), 3 states have call successors, (8), 3 states have call predecessors, (8), 5 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) Word has length 68 [2021-12-17 15:07:13,161 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:13,164 INFO L225 Difference]: With dead ends: 1132 [2021-12-17 15:07:13,164 INFO L226 Difference]: Without dead ends: 558 [2021-12-17 15:07:13,165 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 92 GetRequests, 73 SyntacticMatches, 1 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 40 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=52, Invalid=328, Unknown=0, NotChecked=0, Total=380 [2021-12-17 15:07:13,165 INFO L933 BasicCegarLoop]: 212 mSDtfsCounter, 76 mSDsluCounter, 773 mSDsCounter, 0 mSdLazyCounter, 199 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 80 SdHoareTripleChecker+Valid, 985 SdHoareTripleChecker+Invalid, 202 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 199 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:13,166 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [80 Valid, 985 Invalid, 202 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 199 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:07:13,167 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 558 states. [2021-12-17 15:07:13,190 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 558 to 556. [2021-12-17 15:07:13,191 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 556 states, 407 states have (on average 1.1670761670761671) internal successors, (475), 431 states have internal predecessors, (475), 76 states have call successors, (76), 68 states have call predecessors, (76), 72 states have return successors, (106), 76 states have call predecessors, (106), 76 states have call successors, (106) [2021-12-17 15:07:13,193 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 556 states to 556 states and 657 transitions. [2021-12-17 15:07:13,193 INFO L78 Accepts]: Start accepts. Automaton has 556 states and 657 transitions. Word has length 68 [2021-12-17 15:07:13,194 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:13,194 INFO L470 AbstractCegarLoop]: Abstraction has 556 states and 657 transitions. [2021-12-17 15:07:13,194 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 6.625) internal successors, (53), 6 states have internal predecessors, (53), 3 states have call successors, (8), 3 states have call predecessors, (8), 5 states have return successors, (7), 5 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-17 15:07:13,195 INFO L276 IsEmpty]: Start isEmpty. Operand 556 states and 657 transitions. [2021-12-17 15:07:13,200 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 124 [2021-12-17 15:07:13,200 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:07:13,201 INFO L514 BasicCegarLoop]: trace histogram [4, 4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:13,222 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-17 15:07:13,415 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2021-12-17 15:07:13,415 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:07:13,415 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:07:13,415 INFO L85 PathProgramCache]: Analyzing trace with hash 971206854, now seen corresponding path program 1 times [2021-12-17 15:07:13,415 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:07:13,416 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [692041372] [2021-12-17 15:07:13,416 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:13,416 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:07:13,426 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,452 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:07:13,452 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,466 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-17 15:07:13,468 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,475 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-17 15:07:13,476 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,478 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:13,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,481 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-17 15:07:13,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,483 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2021-12-17 15:07:13,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,484 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2021-12-17 15:07:13,484 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,490 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 70 [2021-12-17 15:07:13,491 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,499 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 83 [2021-12-17 15:07:13,500 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,540 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2021-12-17 15:07:13,542 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,551 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 94 [2021-12-17 15:07:13,554 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,556 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2021-12-17 15:07:13,557 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,559 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:07:13,559 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,561 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 114 [2021-12-17 15:07:13,561 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,562 INFO L134 CoverageAnalysis]: Checked inductivity of 49 backedges. 16 proven. 5 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2021-12-17 15:07:13,562 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:07:13,563 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [692041372] [2021-12-17 15:07:13,563 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [692041372] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-17 15:07:13,563 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1720160312] [2021-12-17 15:07:13,563 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:07:13,563 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-17 15:07:13,563 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:07:13,567 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-17 15:07:13,579 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-12-17 15:07:13,653 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:07:13,655 INFO L263 TraceCheckSpWp]: Trace formula consists of 527 conjuncts, 9 conjunts are in the unsatisfiable core [2021-12-17 15:07:13,658 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-17 15:07:13,881 INFO L134 CoverageAnalysis]: Checked inductivity of 49 backedges. 40 proven. 0 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2021-12-17 15:07:13,881 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-17 15:07:13,882 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1720160312] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:07:13,882 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-17 15:07:13,882 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [14] total 19 [2021-12-17 15:07:13,882 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1241800147] [2021-12-17 15:07:13,882 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:07:13,883 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-17 15:07:13,883 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:07:13,883 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-17 15:07:13,883 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=48, Invalid=294, Unknown=0, NotChecked=0, Total=342 [2021-12-17 15:07:13,884 INFO L87 Difference]: Start difference. First operand 556 states and 657 transitions. Second operand has 8 states, 8 states have (on average 11.0) internal successors, (88), 6 states have internal predecessors, (88), 3 states have call successors, (15), 3 states have call predecessors, (15), 5 states have return successors, (14), 5 states have call predecessors, (14), 3 states have call successors, (14) [2021-12-17 15:07:13,990 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:07:13,991 INFO L93 Difference]: Finished difference Result 948 states and 1133 transitions. [2021-12-17 15:07:13,991 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-17 15:07:13,991 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 11.0) internal successors, (88), 6 states have internal predecessors, (88), 3 states have call successors, (15), 3 states have call predecessors, (15), 5 states have return successors, (14), 5 states have call predecessors, (14), 3 states have call successors, (14) Word has length 123 [2021-12-17 15:07:13,991 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:07:13,992 INFO L225 Difference]: With dead ends: 948 [2021-12-17 15:07:13,992 INFO L226 Difference]: Without dead ends: 0 [2021-12-17 15:07:13,994 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 162 GetRequests, 143 SyntacticMatches, 0 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 43 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=60, Invalid=360, Unknown=0, NotChecked=0, Total=420 [2021-12-17 15:07:13,994 INFO L933 BasicCegarLoop]: 200 mSDtfsCounter, 74 mSDsluCounter, 1007 mSDsCounter, 0 mSdLazyCounter, 126 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 78 SdHoareTripleChecker+Valid, 1207 SdHoareTripleChecker+Invalid, 132 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 126 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:07:13,994 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [78 Valid, 1207 Invalid, 132 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 126 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:07:13,994 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-17 15:07:13,995 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-17 15:07:13,995 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:07:13,995 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-17 15:07:13,995 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 123 [2021-12-17 15:07:13,995 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:07:13,995 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-17 15:07:13,995 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 11.0) internal successors, (88), 6 states have internal predecessors, (88), 3 states have call successors, (15), 3 states have call predecessors, (15), 5 states have return successors, (14), 5 states have call predecessors, (14), 3 states have call successors, (14) [2021-12-17 15:07:13,995 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-17 15:07:13,995 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-17 15:07:13,997 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-17 15:07:14,015 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2021-12-17 15:07:14,211 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2021-12-17 15:07:14,213 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-17 15:07:17,220 INFO L854 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 199 206) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse2 (= 0 |old(~pumpRunning~0)|))) (and (or .cse0 .cse1 .cse2 (not (= ~methaneLevelCritical~0 0))) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1 .cse2))) [2021-12-17 15:07:17,221 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 199 206) no Hoare annotation was computed. [2021-12-17 15:07:17,221 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 199 206) no Hoare annotation was computed. [2021-12-17 15:07:17,221 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 89 95) no Hoare annotation was computed. [2021-12-17 15:07:17,221 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 89 95) the Hoare annotation is: true [2021-12-17 15:07:17,221 INFO L858 garLoopResultBuilder]: For program point L291-2(lines 291 295) no Hoare annotation was computed. [2021-12-17 15:07:17,222 INFO L854 garLoopResultBuilder]: At program point L979(lines 974 982) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1) (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2))) [2021-12-17 15:07:17,222 INFO L854 garLoopResultBuilder]: At program point L137(line 137) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1) (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2))) [2021-12-17 15:07:17,223 INFO L854 garLoopResultBuilder]: At program point L133(line 133) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1) (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2))) [2021-12-17 15:07:17,223 INFO L858 garLoopResultBuilder]: For program point L131(lines 131 139) no Hoare annotation was computed. [2021-12-17 15:07:17,223 INFO L858 garLoopResultBuilder]: For program point L127(lines 127 144) no Hoare annotation was computed. [2021-12-17 15:07:17,223 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryENTRY(lines 123 147) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= ~methaneLevelCritical~0 0))))) [2021-12-17 15:07:17,224 INFO L854 garLoopResultBuilder]: At program point L142(line 142) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0)) .cse2) (or .cse0 (= 0 |old(~pumpRunning~0)|) .cse1))) [2021-12-17 15:07:17,224 INFO L858 garLoopResultBuilder]: For program point L142-1(lines 123 147) no Hoare annotation was computed. [2021-12-17 15:07:17,224 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 123 147) no Hoare annotation was computed. [2021-12-17 15:07:17,224 INFO L854 garLoopResultBuilder]: At program point L297(lines 282 300) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1) (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2))) [2021-12-17 15:07:17,224 INFO L858 garLoopResultBuilder]: For program point L291(lines 291 295) no Hoare annotation was computed. [2021-12-17 15:07:17,224 INFO L858 garLoopResultBuilder]: For program point L911-1(lines 907 918) no Hoare annotation was computed. [2021-12-17 15:07:17,224 INFO L854 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 907 918) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (not (= |old(~methaneLevelCritical~0)| 0)) .cse0 (= ~methaneLevelCritical~0 0)) (or (not (= ~pumpRunning~0 0)) .cse0 (= ~methaneLevelCritical~0 |old(~methaneLevelCritical~0)|) (not (<= 1 |old(~methaneLevelCritical~0)|))))) [2021-12-17 15:07:17,224 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 907 918) no Hoare annotation was computed. [2021-12-17 15:07:17,225 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 785 814) no Hoare annotation was computed. [2021-12-17 15:07:17,225 INFO L858 garLoopResultBuilder]: For program point L799(lines 799 803) no Hoare annotation was computed. [2021-12-17 15:07:17,225 INFO L861 garLoopResultBuilder]: At program point L799-1(lines 799 803) the Hoare annotation is: true [2021-12-17 15:07:17,225 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 785 814) the Hoare annotation is: true [2021-12-17 15:07:17,225 INFO L858 garLoopResultBuilder]: For program point L796(line 796) no Hoare annotation was computed. [2021-12-17 15:07:17,225 INFO L861 garLoopResultBuilder]: At program point L795-2(lines 795 809) the Hoare annotation is: true [2021-12-17 15:07:17,226 INFO L861 garLoopResultBuilder]: At program point L791(line 791) the Hoare annotation is: true [2021-12-17 15:07:17,226 INFO L858 garLoopResultBuilder]: For program point L791-1(line 791) no Hoare annotation was computed. [2021-12-17 15:07:17,226 INFO L861 garLoopResultBuilder]: At program point L810(lines 785 814) the Hoare annotation is: true [2021-12-17 15:07:17,226 INFO L858 garLoopResultBuilder]: For program point L806(line 806) no Hoare annotation was computed. [2021-12-17 15:07:17,226 INFO L861 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 919 927) the Hoare annotation is: true [2021-12-17 15:07:17,227 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 919 927) no Hoare annotation was computed. [2021-12-17 15:07:17,227 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 919 927) no Hoare annotation was computed. [2021-12-17 15:07:17,227 INFO L858 garLoopResultBuilder]: For program point L993(lines 993 1006) no Hoare annotation was computed. [2021-12-17 15:07:17,227 INFO L854 garLoopResultBuilder]: At program point L993-1(lines 985 1009) the Hoare annotation is: (let ((.cse11 (= |timeShift___utac_acc__Specification1_spec__1_~tmp~11#1| 0)) (.cse12 (= ~methaneLevelCritical~0 0)) (.cse10 (<= 2 ~waterLevel~0))) (let ((.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (<= 1 ~methaneLevelCritical~0))) (.cse8 (and .cse11 .cse12 .cse10)) (.cse1 (= ~pumpRunning~0 0)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse4 (not (= |old(~waterLevel~0)| 1))) (.cse5 (= ~waterLevel~0 1)) (.cse2 (not (= 1 ~systemActive~0))) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (not .cse12))) (and (or (and .cse0 .cse1) .cse2 .cse3 (and (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse1)) (or .cse4 .cse5 .cse2 .cse3 .cse6) (or .cse7 .cse8 (not (= 0 |old(~pumpRunning~0)|)) .cse2 .cse9) (or .cse7 .cse2 .cse3 .cse6 .cse10) (or .cse8 (and .cse11 .cse1) (and .cse11 .cse0) .cse2 .cse9) (or .cse4 .cse5 .cse2 .cse6 .cse9)))) [2021-12-17 15:07:17,227 INFO L854 garLoopResultBuilder]: At program point L159(line 159) the Hoare annotation is: (let ((.cse1 (not (= 0 |old(~pumpRunning~0)|))) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) (and .cse1 .cse2)) (or (and .cse1 (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse2) .cse0 (not (<= 1 ~methaneLevelCritical~0))))) [2021-12-17 15:07:17,228 INFO L854 garLoopResultBuilder]: At program point L155(line 155) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (and (not (= 0 |old(~pumpRunning~0)|)) (= ~pumpRunning~0 |old(~pumpRunning~0)|)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) .cse1) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1))) [2021-12-17 15:07:17,228 INFO L858 garLoopResultBuilder]: For program point L155-1(line 155) no Hoare annotation was computed. [2021-12-17 15:07:17,228 INFO L854 garLoopResultBuilder]: At program point L168(line 168) the Hoare annotation is: (let ((.cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~pumpRunning~0 0))) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse6 (not (<= 2 |old(~waterLevel~0)|))) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (not (= |old(~waterLevel~0)| 1))) (.cse4 (= ~waterLevel~0 1)) (.cse1 (not (= 1 ~systemActive~0))) (.cse5 (not (<= 1 ~methaneLevelCritical~0)))) (and (or .cse0 .cse1 .cse2) (or .cse3 .cse4 .cse1 .cse2) (or .cse0 .cse1 .cse5) (or .cse6 .cse1 .cse7 .cse2) (or .cse6 .cse1 .cse5 .cse7) (or .cse3 .cse4 .cse1 .cse5))) [2021-12-17 15:07:17,228 INFO L854 garLoopResultBuilder]: At program point L168-1(lines 149 173) the Hoare annotation is: (let ((.cse11 (= ~methaneLevelCritical~0 0)) (.cse10 (<= 2 ~waterLevel~0))) (let ((.cse8 (and .cse11 .cse10)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0)) (.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= |old(~waterLevel~0)| 1))) (.cse5 (= ~waterLevel~0 1)) (.cse2 (not (= 1 ~systemActive~0))) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (not .cse11))) (and (or (and .cse0 .cse1) .cse2 .cse3 (and (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse1)) (or .cse4 .cse5 .cse2 .cse3 .cse6) (or .cse7 (not (= 0 |old(~pumpRunning~0)|)) .cse8 .cse2 .cse9) (or .cse8 .cse2 .cse0 .cse9 .cse1) (or .cse7 .cse2 .cse3 .cse6 .cse10) (or .cse4 .cse5 .cse2 .cse6 .cse9)))) [2021-12-17 15:07:17,228 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 65 88) no Hoare annotation was computed. [2021-12-17 15:07:17,228 INFO L858 garLoopResultBuilder]: For program point L69-1(lines 68 87) no Hoare annotation was computed. [2021-12-17 15:07:17,228 INFO L858 garLoopResultBuilder]: For program point L887(lines 887 891) no Hoare annotation was computed. [2021-12-17 15:07:17,228 INFO L858 garLoopResultBuilder]: For program point L1015(line 1015) no Hoare annotation was computed. [2021-12-17 15:07:17,229 INFO L854 garLoopResultBuilder]: At program point L887-2(lines 883 894) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (and (not (= 0 |old(~pumpRunning~0)|)) (= ~pumpRunning~0 |old(~pumpRunning~0)|)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) .cse1) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1))) [2021-12-17 15:07:17,229 INFO L854 garLoopResultBuilder]: At program point L991(line 991) the Hoare annotation is: (let ((.cse11 (= ~methaneLevelCritical~0 0)) (.cse10 (<= 2 ~waterLevel~0))) (let ((.cse8 (and .cse11 .cse10)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0)) (.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= |old(~waterLevel~0)| 1))) (.cse5 (= ~waterLevel~0 1)) (.cse2 (not (= 1 ~systemActive~0))) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (not .cse11))) (and (or (and .cse0 .cse1) .cse2 .cse3 (and (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse1)) (or .cse4 .cse5 .cse2 .cse3 .cse6) (or .cse7 (not (= 0 |old(~pumpRunning~0)|)) .cse8 .cse2 .cse9) (or .cse8 .cse2 .cse0 .cse9 .cse1) (or .cse7 .cse2 .cse3 .cse6 .cse10) (or .cse4 .cse5 .cse2 .cse6 .cse9)))) [2021-12-17 15:07:17,229 INFO L854 garLoopResultBuilder]: At program point L223(lines 218 226) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse2 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~waterLevel~0)| 1)) (= ~waterLevel~0 1) .cse0 .cse1 .cse2) (let ((.cse3 (= |timeShift_isPumpRunning_#res#1| 0)) (.cse4 (= ~pumpRunning~0 0))) (or .cse0 (and .cse3 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse4) .cse1 (and .cse3 (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse4))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0)))) [2021-12-17 15:07:17,229 INFO L858 garLoopResultBuilder]: For program point L991-1(line 991) no Hoare annotation was computed. [2021-12-17 15:07:17,229 INFO L858 garLoopResultBuilder]: For program point L157(lines 157 165) no Hoare annotation was computed. [2021-12-17 15:07:17,229 INFO L858 garLoopResultBuilder]: For program point L153(lines 153 170) no Hoare annotation was computed. [2021-12-17 15:07:17,229 INFO L854 garLoopResultBuilder]: At program point L1016(lines 1011 1018) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0))) (or .cse0 (not (<= 1 ~methaneLevelCritical~0))))) [2021-12-17 15:07:17,230 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 65 88) the Hoare annotation is: (let ((.cse8 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse5 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (<= 1 ~methaneLevelCritical~0))) (.cse6 (<= 2 ~waterLevel~0)) (.cse0 (not (= |old(~waterLevel~0)| 1))) (.cse1 (= ~waterLevel~0 1)) (.cse2 (not (= 1 ~systemActive~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse2 .cse6 .cse7) (or .cse2 .cse8 .cse7) (or .cse2 .cse3 .cse8) (or .cse5 .cse2 .cse3 .cse6) (or .cse0 .cse1 .cse2 .cse4 .cse7))) [2021-12-17 15:07:17,230 INFO L858 garLoopResultBuilder]: For program point L76-1(lines 76 82) no Hoare annotation was computed. [2021-12-17 15:07:17,230 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 65 88) no Hoare annotation was computed. [2021-12-17 15:07:17,230 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 1015) no Hoare annotation was computed. [2021-12-17 15:07:17,230 INFO L858 garLoopResultBuilder]: For program point L997(lines 997 1003) no Hoare annotation was computed. [2021-12-17 15:07:17,230 INFO L854 garLoopResultBuilder]: At program point L163(line 163) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) (and (not (= 0 |old(~pumpRunning~0)|)) (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (or .cse0 (not (<= 1 ~methaneLevelCritical~0))))) [2021-12-17 15:07:17,230 INFO L858 garLoopResultBuilder]: For program point L353(lines 353 366) no Hoare annotation was computed. [2021-12-17 15:07:17,231 INFO L854 garLoopResultBuilder]: At program point L345(line 345) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1))) (or (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse1 (= ~pumpRunning~0 0)) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1))) [2021-12-17 15:07:17,231 INFO L861 garLoopResultBuilder]: At program point L374(lines 313 378) the Hoare annotation is: true [2021-12-17 15:07:17,232 INFO L861 garLoopResultBuilder]: At program point L853(lines 846 855) the Hoare annotation is: true [2021-12-17 15:07:17,232 INFO L858 garLoopResultBuilder]: For program point L333(lines 333 339) no Hoare annotation was computed. [2021-12-17 15:07:17,232 INFO L858 garLoopResultBuilder]: For program point L333-1(lines 333 339) no Hoare annotation was computed. [2021-12-17 15:07:17,232 INFO L858 garLoopResultBuilder]: For program point L325(lines 325 329) no Hoare annotation was computed. [2021-12-17 15:07:17,232 INFO L858 garLoopResultBuilder]: For program point L866(lines 866 873) no Hoare annotation was computed. [2021-12-17 15:07:17,233 INFO L858 garLoopResultBuilder]: For program point L866-2(lines 866 873) no Hoare annotation was computed. [2021-12-17 15:07:17,233 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-17 15:07:17,233 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-17 15:07:17,233 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-17 15:07:17,234 INFO L854 garLoopResultBuilder]: At program point L371(lines 322 372) the Hoare annotation is: false [2021-12-17 15:07:17,234 INFO L861 garLoopResultBuilder]: At program point L875(lines 856 878) the Hoare annotation is: true [2021-12-17 15:07:17,234 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-17 15:07:17,234 INFO L854 garLoopResultBuilder]: At program point L413(lines 408 416) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:07:17,234 INFO L858 garLoopResultBuilder]: For program point L343(lines 343 349) no Hoare annotation was computed. [2021-12-17 15:07:17,234 INFO L858 garLoopResultBuilder]: For program point L343-1(lines 343 349) no Hoare annotation was computed. [2021-12-17 15:07:17,234 INFO L854 garLoopResultBuilder]: At program point L405(lines 401 407) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:07:17,234 INFO L854 garLoopResultBuilder]: At program point L306(lines 301 308) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1))) (or (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse1) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1))) [2021-12-17 15:07:17,235 INFO L854 garLoopResultBuilder]: At program point L368(lines 323 370) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1))) (or (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse1 (= ~pumpRunning~0 0)) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1))) [2021-12-17 15:07:17,235 INFO L854 garLoopResultBuilder]: At program point L335(line 335) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1))) (or (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse1 (= ~pumpRunning~0 0)) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1))) [2021-12-17 15:07:17,235 INFO L854 garLoopResultBuilder]: At program point L843(lines 839 845) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:07:17,235 INFO L854 garLoopResultBuilder]: At program point L398(lines 394 400) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:07:17,235 INFO L858 garLoopResultBuilder]: For program point L361(lines 361 365) no Hoare annotation was computed. [2021-12-17 15:07:17,235 INFO L854 garLoopResultBuilder]: At program point L361-2(lines 353 366) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1))) (or (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse1) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1))) [2021-12-17 15:07:17,235 INFO L858 garLoopResultBuilder]: For program point L324(lines 323 370) no Hoare annotation was computed. [2021-12-17 15:07:17,235 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 97 121) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= ~methaneLevelCritical~0 0))))) [2021-12-17 15:07:17,236 INFO L854 garLoopResultBuilder]: At program point L116(line 116) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1) (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2))) [2021-12-17 15:07:17,236 INFO L858 garLoopResultBuilder]: For program point L116-1(lines 97 121) no Hoare annotation was computed. [2021-12-17 15:07:17,236 INFO L854 garLoopResultBuilder]: At program point L969(lines 960 973) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0))) (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (and (<= 2 ~waterLevel~0) .cse4)) (.cse3 (and (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) .cse4)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (= 0 |old(~pumpRunning~0)|) .cse1) (or .cse2 .cse3 .cse0 .cse1) (or .cse2 .cse3 .cse0 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0)))))) [2021-12-17 15:07:17,236 INFO L858 garLoopResultBuilder]: For program point L189(lines 189 195) no Hoare annotation was computed. [2021-12-17 15:07:17,236 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 97 121) no Hoare annotation was computed. [2021-12-17 15:07:17,237 INFO L854 garLoopResultBuilder]: At program point L187(line 187) the Hoare annotation is: (let ((.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse0 (and (<= 2 ~waterLevel~0) (= ~pumpRunning~0 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2) (or .cse1 (= 0 |old(~pumpRunning~0)|) .cse2) (or .cse0 .cse1 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0))))) [2021-12-17 15:07:17,237 INFO L854 garLoopResultBuilder]: At program point L189-2(lines 182 198) the Hoare annotation is: (let ((.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (<= 2 ~waterLevel~0))) (and (or .cse0 .cse1 .cse2) (or .cse0 (= 0 |old(~pumpRunning~0)|) .cse2) (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0)) (and .cse1 (= ~pumpRunning~0 0) (<= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_activatePump_~tmp~3#1|))))) [2021-12-17 15:07:17,237 INFO L858 garLoopResultBuilder]: For program point L187-1(line 187) no Hoare annotation was computed. [2021-12-17 15:07:17,237 INFO L854 garLoopResultBuilder]: At program point L278(lines 263 281) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0))) (let ((.cse0 (and (<= 2 ~waterLevel~0) .cse4)) (.cse1 (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~0#1| 0) (not (= 0 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1|)) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) .cse4)) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0))) (or .cse2 (= 0 |old(~pumpRunning~0)|) .cse3) (or .cse0 .cse1 .cse2 .cse3)))) [2021-12-17 15:07:17,237 INFO L854 garLoopResultBuilder]: At program point L179(lines 174 181) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0))) (or .cse0 (<= 2 ~waterLevel~0) .cse1) (or .cse0 (= 0 |old(~pumpRunning~0)|) .cse1))) [2021-12-17 15:07:17,237 INFO L858 garLoopResultBuilder]: For program point L272(lines 272 276) no Hoare annotation was computed. [2021-12-17 15:07:17,237 INFO L854 garLoopResultBuilder]: At program point L111(line 111) the Hoare annotation is: (let ((.cse1 (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 (and .cse1 (= ~pumpRunning~0 0)) (not (<= 1 ~methaneLevelCritical~0)) (not (= |old(~pumpRunning~0)| 0))) (or .cse0 (= 0 |old(~pumpRunning~0)|) .cse2) (or (and .cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) .cse0 .cse2))) [2021-12-17 15:07:17,237 INFO L858 garLoopResultBuilder]: For program point L272-2(lines 272 276) no Hoare annotation was computed. [2021-12-17 15:07:17,238 INFO L858 garLoopResultBuilder]: For program point L105(lines 105 113) no Hoare annotation was computed. [2021-12-17 15:07:17,238 INFO L858 garLoopResultBuilder]: For program point L101(lines 101 118) no Hoare annotation was computed. [2021-12-17 15:07:17,238 INFO L858 garLoopResultBuilder]: For program point L964(lines 964 970) no Hoare annotation was computed. [2021-12-17 15:07:17,238 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 895 906) no Hoare annotation was computed. [2021-12-17 15:07:17,239 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 895 906) the Hoare annotation is: (let ((.cse5 (not (<= 2 |old(~waterLevel~0)|))) (.cse7 (<= 2 ~waterLevel~0)) (.cse4 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= |old(~waterLevel~0)| 1))) (.cse1 (= ~waterLevel~0 1)) (.cse2 (not (= ~pumpRunning~0 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse6 (not (<= 1 ~methaneLevelCritical~0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse2 .cse3 .cse6 .cse7) (or .cse5 .cse3 .cse7 .cse4) (or .cse0 .cse1 .cse2 .cse3 .cse6))) [2021-12-17 15:07:17,239 INFO L858 garLoopResultBuilder]: For program point L899-1(lines 895 906) no Hoare annotation was computed. [2021-12-17 15:07:17,239 INFO L861 garLoopResultBuilder]: At program point isMethaneAlarmENTRY(lines 207 217) the Hoare annotation is: true [2021-12-17 15:07:17,239 INFO L858 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 207 217) no Hoare annotation was computed. [2021-12-17 15:07:17,239 INFO L858 garLoopResultBuilder]: For program point isMethaneAlarmFINAL(lines 207 217) no Hoare annotation was computed. [2021-12-17 15:07:17,239 INFO L861 garLoopResultBuilder]: At program point L212(line 212) the Hoare annotation is: true [2021-12-17 15:07:17,239 INFO L858 garLoopResultBuilder]: For program point L212-1(line 212) no Hoare annotation was computed. [2021-12-17 15:07:17,242 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:07:17,243 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-17 15:07:17,271 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 17.12 03:07:17 BoogieIcfgContainer [2021-12-17 15:07:17,272 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-17 15:07:17,272 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-17 15:07:17,272 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-17 15:07:17,272 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-17 15:07:17,273 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:07:09" (3/4) ... [2021-12-17 15:07:17,275 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-17 15:07:17,279 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-17 15:07:17,279 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-17 15:07:17,279 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-17 15:07:17,279 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-17 15:07:17,279 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2021-12-17 15:07:17,279 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-17 15:07:17,280 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-17 15:07:17,280 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-17 15:07:17,280 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2021-12-17 15:07:17,280 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2021-12-17 15:07:17,284 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 52 nodes and edges [2021-12-17 15:07:17,285 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-17 15:07:17,285 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-17 15:07:17,285 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-17 15:07:17,286 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-17 15:07:17,286 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:07:17,286 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:07:17,309 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (!(0 == \old(pumpRunning)) && pumpRunning == \old(pumpRunning))) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || (!(0 == \old(pumpRunning)) && pumpRunning == \old(pumpRunning))) [2021-12-17 15:07:17,309 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || (1 <= tmp && pumpRunning == 0)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((((!(2 <= \old(waterLevel)) || !(0 == \old(pumpRunning))) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && (((((methaneLevelCritical == 0 && 2 <= waterLevel) || !(1 == systemActive)) || pumpRunning == \old(pumpRunning)) || !(methaneLevelCritical == 0)) || pumpRunning == 0)) && ((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) [2021-12-17 15:07:17,310 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || (1 <= tmp && pumpRunning == 0)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((((!(2 <= \old(waterLevel)) || ((tmp == 0 && methaneLevelCritical == 0) && 2 <= waterLevel)) || !(0 == \old(pumpRunning))) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && ((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel)) && ((((((tmp == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) || (tmp == 0 && pumpRunning == 0)) || (tmp == 0 && pumpRunning == \old(pumpRunning))) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) [2021-12-17 15:07:17,310 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || !(methaneLevelCritical == 0)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && (((!(1 == systemActive) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && pumpRunning == 0)) || !(1 <= methaneLevelCritical)) || ((\result == 0 && 1 <= tmp) && pumpRunning == 0))) && ((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) [2021-12-17 15:07:17,310 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0))) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && pumpRunning == 0) && methaneLevelCritical <= tmp)) [2021-12-17 15:07:17,310 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) && ((!(1 == systemActive) || 2 <= waterLevel) || !(methaneLevelCritical == 0))) && ((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0)) [2021-12-17 15:07:17,310 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((!(1 == systemActive) || pumpRunning == \old(pumpRunning)) || !(methaneLevelCritical == 0)) [2021-12-17 15:07:17,311 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0)) && ((((2 <= waterLevel && pumpRunning == 0) || (!(\result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && (((((2 <= waterLevel && pumpRunning == 0) || (!(\result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) [2021-12-17 15:07:17,311 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((!(1 == systemActive) || pumpRunning == \old(pumpRunning)) || !(methaneLevelCritical == 0)) [2021-12-17 15:07:17,311 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((2 <= waterLevel && pumpRunning == 0) || (((tmp___0 == 0 && !(0 == tmp)) && \result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) && ((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0))) && ((((2 <= waterLevel && pumpRunning == 0) || (((tmp___0 == 0 && !(0 == tmp)) && \result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) [2021-12-17 15:07:17,336 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-17 15:07:17,336 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-17 15:07:17,337 INFO L158 Benchmark]: Toolchain (without parser) took 8380.89ms. Allocated memory was 83.9MB in the beginning and 167.8MB in the end (delta: 83.9MB). Free memory was 61.9MB in the beginning and 114.7MB in the end (delta: -52.8MB). Peak memory consumption was 30.1MB. Max. memory is 16.1GB. [2021-12-17 15:07:17,337 INFO L158 Benchmark]: CDTParser took 0.18ms. Allocated memory is still 83.9MB. Free memory is still 58.9MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-17 15:07:17,337 INFO L158 Benchmark]: CACSL2BoogieTranslator took 330.31ms. Allocated memory is still 83.9MB. Free memory was 61.7MB in the beginning and 45.4MB in the end (delta: 16.3MB). Peak memory consumption was 18.0MB. Max. memory is 16.1GB. [2021-12-17 15:07:17,337 INFO L158 Benchmark]: Boogie Procedure Inliner took 44.14ms. Allocated memory is still 83.9MB. Free memory was 45.4MB in the beginning and 42.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:07:17,338 INFO L158 Benchmark]: Boogie Preprocessor took 29.30ms. Allocated memory is still 83.9MB. Free memory was 42.9MB in the beginning and 41.3MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:07:17,338 INFO L158 Benchmark]: RCFGBuilder took 353.22ms. Allocated memory is still 83.9MB. Free memory was 41.3MB in the beginning and 47.1MB in the end (delta: -5.8MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2021-12-17 15:07:17,338 INFO L158 Benchmark]: TraceAbstraction took 7555.35ms. Allocated memory was 83.9MB in the beginning and 167.8MB in the end (delta: 83.9MB). Free memory was 46.6MB in the beginning and 122.1MB in the end (delta: -75.5MB). Peak memory consumption was 92.1MB. Max. memory is 16.1GB. [2021-12-17 15:07:17,338 INFO L158 Benchmark]: Witness Printer took 64.25ms. Allocated memory is still 167.8MB. Free memory was 121.0MB in the beginning and 114.7MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-17 15:07:17,339 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.18ms. Allocated memory is still 83.9MB. Free memory is still 58.9MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 330.31ms. Allocated memory is still 83.9MB. Free memory was 61.7MB in the beginning and 45.4MB in the end (delta: 16.3MB). Peak memory consumption was 18.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 44.14ms. Allocated memory is still 83.9MB. Free memory was 45.4MB in the beginning and 42.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 29.30ms. Allocated memory is still 83.9MB. Free memory was 42.9MB in the beginning and 41.3MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 353.22ms. Allocated memory is still 83.9MB. Free memory was 41.3MB in the beginning and 47.1MB in the end (delta: -5.8MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * TraceAbstraction took 7555.35ms. Allocated memory was 83.9MB in the beginning and 167.8MB in the end (delta: 83.9MB). Free memory was 46.6MB in the beginning and 122.1MB in the end (delta: -75.5MB). Peak memory consumption was 92.1MB. Max. memory is 16.1GB. * Witness Printer took 64.25ms. Allocated memory is still 167.8MB. Free memory was 121.0MB in the beginning and 114.7MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 1015]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 109 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 7.5s, OverallIterations: 11, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.9s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.0s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1625 SdHoareTripleChecker+Valid, 1.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1595 mSDsluCounter, 4500 SdHoareTripleChecker+Invalid, 1.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 3009 mSDsCounter, 576 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1964 IncrementalHoareTripleChecker+Invalid, 2540 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 576 mSolverCounterUnsat, 1491 mSDtfsCounter, 1964 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 420 GetRequests, 313 SyntacticMatches, 3 SemanticMatches, 104 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 173 ImplicationChecksByTransitivity, 0.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=581occurred in iteration=9, InterpolantAutomatonStates: 89, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 11 MinimizatonAttempts, 70 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 50 LocationsWithAnnotation, 1486 PreInvPairs, 1675 NumberOfFragments, 1767 HoareAnnotationTreeSize, 1486 FomulaSimplifications, 801 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 50 FomulaSimplificationsInter, 9840 FormulaSimplificationTreeSizeReductionInter, 2.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 1.3s InterpolantComputationTime, 798 NumberOfCodeBlocks, 798 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 785 ConstructedInterpolants, 0 QuantifiedInterpolants, 1419 SizeOfPredicates, 6 NumberOfNonLiveVariables, 922 ConjunctsInSsa, 18 ConjunctsInUnsatCore, 13 InterpolantComputations, 11 PerfectInterpolantSequences, 106/113 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 149]: Loop Invariant Derived loop invariant: ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || (1 <= tmp && pumpRunning == 0)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((((!(2 <= \old(waterLevel)) || !(0 == \old(pumpRunning))) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && (((((methaneLevelCritical == 0 && 2 <= waterLevel) || !(1 == systemActive)) || pumpRunning == \old(pumpRunning)) || !(methaneLevelCritical == 0)) || pumpRunning == 0)) && ((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 218]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || !(methaneLevelCritical == 0)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && (((!(1 == systemActive) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && pumpRunning == 0)) || !(1 <= methaneLevelCritical)) || ((\result == 0 && 1 <= tmp) && pumpRunning == 0))) && ((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) - InvariantResult [Line: 785]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 263]: Loop Invariant Derived loop invariant: ((((((2 <= waterLevel && pumpRunning == 0) || (((tmp___0 == 0 && !(0 == tmp)) && \result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) && ((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0))) && ((((2 <= waterLevel && pumpRunning == 0) || (((tmp___0 == 0 && !(0 == tmp)) && \result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 839]: Loop Invariant Derived loop invariant: ((waterLevel == 1 && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 323]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && 1 <= methaneLevelCritical) && systemActive == 1) && pumpRunning == 0) || ((splverifierCounter == 0 && methaneLevelCritical == 0) && systemActive == 1) - InvariantResult [Line: 408]: Loop Invariant Derived loop invariant: ((waterLevel == 1 && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 282]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((!(1 == systemActive) || pumpRunning == \old(pumpRunning)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 795]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 846]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 985]: Loop Invariant Derived loop invariant: ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || (1 <= tmp && pumpRunning == 0)) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((((!(2 <= \old(waterLevel)) || ((tmp == 0 && methaneLevelCritical == 0) && 2 <= waterLevel)) || !(0 == \old(pumpRunning))) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && ((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel)) && ((((((tmp == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) || (tmp == 0 && pumpRunning == 0)) || (tmp == 0 && pumpRunning == \old(pumpRunning))) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 301]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && 1 <= methaneLevelCritical) && systemActive == 1) || ((splverifierCounter == 0 && methaneLevelCritical == 0) && systemActive == 1) - InvariantResult [Line: 960]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0)) && ((((2 <= waterLevel && pumpRunning == 0) || (!(\result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0))) && (((((2 <= waterLevel && pumpRunning == 0) || (!(\result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) - InvariantResult [Line: 182]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0))) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && pumpRunning == 0) && methaneLevelCritical <= tmp)) - InvariantResult [Line: 856]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 401]: Loop Invariant Derived loop invariant: ((waterLevel == 1 && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 322]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1011]: Loop Invariant Derived loop invariant: (!(1 == systemActive) || !(methaneLevelCritical == 0)) && (!(1 == systemActive) || !(1 <= methaneLevelCritical)) - InvariantResult [Line: 394]: Loop Invariant Derived loop invariant: ((waterLevel == 1 && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 974]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0))) && ((!(1 == systemActive) || pumpRunning == \old(pumpRunning)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 883]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (!(0 == \old(pumpRunning)) && pumpRunning == \old(pumpRunning))) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || (!(0 == \old(pumpRunning)) && pumpRunning == \old(pumpRunning))) - InvariantResult [Line: 174]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) && ((!(1 == systemActive) || 2 <= waterLevel) || !(methaneLevelCritical == 0))) && ((!(1 == systemActive) || 0 == \old(pumpRunning)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 313]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2021-12-17 15:07:17,381 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE