./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec4_product19.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec4_product19.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 861f07fa59cb0cfcece09c1a4e6ddfbbabbcb5606dbdc5d8efc7c0dfaa196551 --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-17 15:08:45,817 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-17 15:08:45,819 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-17 15:08:45,850 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-17 15:08:45,851 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-17 15:08:45,852 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-17 15:08:45,853 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-17 15:08:45,854 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-17 15:08:45,855 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-17 15:08:45,856 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-17 15:08:45,857 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-17 15:08:45,858 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-17 15:08:45,858 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-17 15:08:45,859 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-17 15:08:45,860 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-17 15:08:45,861 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-17 15:08:45,862 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-17 15:08:45,862 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-17 15:08:45,864 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-17 15:08:45,865 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-17 15:08:45,867 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-17 15:08:45,868 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-17 15:08:45,869 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-17 15:08:45,870 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-17 15:08:45,872 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-17 15:08:45,872 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-17 15:08:45,873 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-17 15:08:45,873 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-17 15:08:45,874 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-17 15:08:45,875 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-17 15:08:45,875 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-17 15:08:45,876 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-17 15:08:45,876 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-17 15:08:45,877 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-17 15:08:45,878 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-17 15:08:45,878 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-17 15:08:45,879 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-17 15:08:45,879 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-17 15:08:45,879 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-17 15:08:45,880 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-17 15:08:45,880 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-17 15:08:45,881 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-17 15:08:45,899 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-17 15:08:45,899 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-17 15:08:45,899 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-17 15:08:45,900 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-17 15:08:45,900 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-17 15:08:45,900 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-17 15:08:45,901 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-17 15:08:45,901 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-17 15:08:45,901 INFO L138 SettingsManager]: * Use SBE=true [2021-12-17 15:08:45,901 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-17 15:08:45,902 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-17 15:08:45,902 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-17 15:08:45,902 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-17 15:08:45,902 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-17 15:08:45,902 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-17 15:08:45,902 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-17 15:08:45,903 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-17 15:08:45,903 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-17 15:08:45,903 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-17 15:08:45,903 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-17 15:08:45,903 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-17 15:08:45,903 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-17 15:08:45,904 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-17 15:08:45,904 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-17 15:08:45,904 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:08:45,904 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-17 15:08:45,904 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-17 15:08:45,905 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-17 15:08:45,905 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-17 15:08:45,905 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-17 15:08:45,905 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-17 15:08:45,905 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-17 15:08:45,905 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-17 15:08:45,906 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-17 15:08:45,906 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 861f07fa59cb0cfcece09c1a4e6ddfbbabbcb5606dbdc5d8efc7c0dfaa196551 [2021-12-17 15:08:46,152 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-17 15:08:46,186 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-17 15:08:46,189 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-17 15:08:46,190 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-17 15:08:46,190 INFO L275 PluginConnector]: CDTParser initialized [2021-12-17 15:08:46,191 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec4_product19.cil.c [2021-12-17 15:08:46,244 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/2b4e8a555/d9ece541178043e096d6a131facd5658/FLAG4bd167867 [2021-12-17 15:08:46,685 INFO L306 CDTParser]: Found 1 translation units. [2021-12-17 15:08:46,686 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product19.cil.c [2021-12-17 15:08:46,696 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/2b4e8a555/d9ece541178043e096d6a131facd5658/FLAG4bd167867 [2021-12-17 15:08:47,220 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/2b4e8a555/d9ece541178043e096d6a131facd5658 [2021-12-17 15:08:47,222 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-17 15:08:47,223 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-17 15:08:47,227 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-17 15:08:47,227 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-17 15:08:47,243 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-17 15:08:47,243 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,244 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@23aa62dc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47, skipping insertion in model container [2021-12-17 15:08:47,244 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,249 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-17 15:08:47,283 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-17 15:08:47,508 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product19.cil.c[14834,14847] [2021-12-17 15:08:47,521 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:08:47,538 INFO L203 MainTranslator]: Completed pre-run [2021-12-17 15:08:47,625 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product19.cil.c[14834,14847] [2021-12-17 15:08:47,636 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:08:47,654 INFO L208 MainTranslator]: Completed translation [2021-12-17 15:08:47,654 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47 WrapperNode [2021-12-17 15:08:47,654 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-17 15:08:47,656 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-17 15:08:47,656 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-17 15:08:47,656 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-17 15:08:47,662 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,682 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,703 INFO L137 Inliner]: procedures = 53, calls = 151, calls flagged for inlining = 21, calls inlined = 17, statements flattened = 222 [2021-12-17 15:08:47,704 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-17 15:08:47,705 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-17 15:08:47,705 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-17 15:08:47,705 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-17 15:08:47,712 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,714 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,715 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,719 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,724 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,733 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,734 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,736 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-17 15:08:47,737 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-17 15:08:47,737 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-17 15:08:47,737 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-17 15:08:47,738 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (1/1) ... [2021-12-17 15:08:47,751 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:08:47,767 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:08:47,779 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-17 15:08:47,789 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-17 15:08:47,815 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-17 15:08:47,816 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-17 15:08:47,816 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-17 15:08:47,816 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-17 15:08:47,816 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-17 15:08:47,816 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-17 15:08:47,816 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-17 15:08:47,818 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-17 15:08:47,818 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-17 15:08:47,818 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-17 15:08:47,818 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-17 15:08:47,818 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-17 15:08:47,819 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-17 15:08:47,819 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-17 15:08:47,819 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-17 15:08:47,819 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-17 15:08:47,902 INFO L236 CfgBuilder]: Building ICFG [2021-12-17 15:08:47,903 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-17 15:08:48,136 INFO L277 CfgBuilder]: Performing block encoding [2021-12-17 15:08:48,142 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-17 15:08:48,142 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-17 15:08:48,144 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:08:48 BoogieIcfgContainer [2021-12-17 15:08:48,144 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-17 15:08:48,145 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-17 15:08:48,145 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-17 15:08:48,148 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-17 15:08:48,148 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 17.12 03:08:47" (1/3) ... [2021-12-17 15:08:48,149 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@d20ddaf and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:08:48, skipping insertion in model container [2021-12-17 15:08:48,149 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:47" (2/3) ... [2021-12-17 15:08:48,150 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@d20ddaf and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:08:48, skipping insertion in model container [2021-12-17 15:08:48,150 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:08:48" (3/3) ... [2021-12-17 15:08:48,151 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product19.cil.c [2021-12-17 15:08:48,155 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-17 15:08:48,156 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-17 15:08:48,252 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-17 15:08:48,258 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-17 15:08:48,258 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-17 15:08:48,277 INFO L276 IsEmpty]: Start isEmpty. Operand has 76 states, 58 states have (on average 1.396551724137931) internal successors, (81), 65 states have internal predecessors, (81), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2021-12-17 15:08:48,282 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-12-17 15:08:48,283 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:48,283 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:48,284 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:48,292 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:48,292 INFO L85 PathProgramCache]: Analyzing trace with hash 1265450001, now seen corresponding path program 1 times [2021-12-17 15:08:48,301 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:48,302 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [6460933] [2021-12-17 15:08:48,302 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:48,303 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:48,458 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:48,536 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:48,537 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:48,537 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [6460933] [2021-12-17 15:08:48,537 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [6460933] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:48,538 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:48,538 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:08:48,540 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1177375212] [2021-12-17 15:08:48,540 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:48,546 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-17 15:08:48,546 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:48,577 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-17 15:08:48,579 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:08:48,581 INFO L87 Difference]: Start difference. First operand has 76 states, 58 states have (on average 1.396551724137931) internal successors, (81), 65 states have internal predecessors, (81), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:48,621 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:48,622 INFO L93 Difference]: Finished difference Result 144 states and 197 transitions. [2021-12-17 15:08:48,623 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-17 15:08:48,624 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-12-17 15:08:48,624 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:48,635 INFO L225 Difference]: With dead ends: 144 [2021-12-17 15:08:48,636 INFO L226 Difference]: Without dead ends: 67 [2021-12-17 15:08:48,640 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:08:48,643 INFO L933 BasicCegarLoop]: 95 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 95 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:48,644 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 95 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:48,658 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 67 states. [2021-12-17 15:08:48,692 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 67 to 67. [2021-12-17 15:08:48,694 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 67 states, 51 states have (on average 1.3137254901960784) internal successors, (67), 57 states have internal predecessors, (67), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-17 15:08:48,699 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 67 states to 67 states and 86 transitions. [2021-12-17 15:08:48,701 INFO L78 Accepts]: Start accepts. Automaton has 67 states and 86 transitions. Word has length 19 [2021-12-17 15:08:48,702 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:48,702 INFO L470 AbstractCegarLoop]: Abstraction has 67 states and 86 transitions. [2021-12-17 15:08:48,702 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:48,703 INFO L276 IsEmpty]: Start isEmpty. Operand 67 states and 86 transitions. [2021-12-17 15:08:48,705 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2021-12-17 15:08:48,705 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:48,705 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:48,706 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-17 15:08:48,706 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:48,709 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:48,710 INFO L85 PathProgramCache]: Analyzing trace with hash 179493032, now seen corresponding path program 1 times [2021-12-17 15:08:48,710 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:48,710 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [261576871] [2021-12-17 15:08:48,710 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:48,711 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:48,743 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:48,801 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:48,802 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:48,802 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [261576871] [2021-12-17 15:08:48,802 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [261576871] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:48,803 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:48,803 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-17 15:08:48,803 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2013229319] [2021-12-17 15:08:48,803 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:48,804 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:08:48,805 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:48,806 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:08:48,807 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:48,807 INFO L87 Difference]: Start difference. First operand 67 states and 86 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:48,828 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:48,829 INFO L93 Difference]: Finished difference Result 96 states and 122 transitions. [2021-12-17 15:08:48,829 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:08:48,829 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2021-12-17 15:08:48,830 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:48,835 INFO L225 Difference]: With dead ends: 96 [2021-12-17 15:08:48,835 INFO L226 Difference]: Without dead ends: 58 [2021-12-17 15:08:48,839 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:48,841 INFO L933 BasicCegarLoop]: 73 mSDtfsCounter, 16 mSDsluCounter, 52 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 125 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:48,842 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [20 Valid, 125 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:48,846 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2021-12-17 15:08:48,857 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 58. [2021-12-17 15:08:48,858 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 45 states have (on average 1.3333333333333333) internal successors, (60), 51 states have internal predecessors, (60), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 5 states have call predecessors, (7), 7 states have call successors, (7) [2021-12-17 15:08:48,860 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 74 transitions. [2021-12-17 15:08:48,860 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 74 transitions. Word has length 20 [2021-12-17 15:08:48,860 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:48,862 INFO L470 AbstractCegarLoop]: Abstraction has 58 states and 74 transitions. [2021-12-17 15:08:48,862 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:48,862 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 74 transitions. [2021-12-17 15:08:48,865 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-17 15:08:48,866 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:48,866 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:48,866 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-17 15:08:48,866 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:48,867 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:48,867 INFO L85 PathProgramCache]: Analyzing trace with hash -2144024677, now seen corresponding path program 1 times [2021-12-17 15:08:48,868 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:48,868 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1940278692] [2021-12-17 15:08:48,868 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:48,869 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:48,885 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:48,932 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:48,933 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:48,933 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1940278692] [2021-12-17 15:08:48,933 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1940278692] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:48,933 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:48,933 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-17 15:08:48,934 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1105700757] [2021-12-17 15:08:48,934 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:48,934 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-17 15:08:48,934 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:48,935 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-17 15:08:48,935 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-12-17 15:08:48,935 INFO L87 Difference]: Start difference. First operand 58 states and 74 transitions. Second operand has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:49,102 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:49,103 INFO L93 Difference]: Finished difference Result 197 states and 259 transitions. [2021-12-17 15:08:49,104 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-12-17 15:08:49,104 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-12-17 15:08:49,104 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:49,106 INFO L225 Difference]: With dead ends: 197 [2021-12-17 15:08:49,106 INFO L226 Difference]: Without dead ends: 146 [2021-12-17 15:08:49,107 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-12-17 15:08:49,108 INFO L933 BasicCegarLoop]: 89 mSDtfsCounter, 155 mSDsluCounter, 303 mSDsCounter, 0 mSdLazyCounter, 73 mSolverCounterSat, 14 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 155 SdHoareTripleChecker+Valid, 392 SdHoareTripleChecker+Invalid, 87 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 73 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:49,108 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [155 Valid, 392 Invalid, 87 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 73 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:08:49,111 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 146 states. [2021-12-17 15:08:49,154 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 146 to 140. [2021-12-17 15:08:49,155 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 140 states, 107 states have (on average 1.3738317757009346) internal successors, (147), 121 states have internal predecessors, (147), 18 states have call successors, (18), 14 states have call predecessors, (18), 14 states have return successors, (19), 12 states have call predecessors, (19), 18 states have call successors, (19) [2021-12-17 15:08:49,156 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 140 states to 140 states and 184 transitions. [2021-12-17 15:08:49,156 INFO L78 Accepts]: Start accepts. Automaton has 140 states and 184 transitions. Word has length 24 [2021-12-17 15:08:49,156 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:49,156 INFO L470 AbstractCegarLoop]: Abstraction has 140 states and 184 transitions. [2021-12-17 15:08:49,156 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:49,157 INFO L276 IsEmpty]: Start isEmpty. Operand 140 states and 184 transitions. [2021-12-17 15:08:49,157 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2021-12-17 15:08:49,158 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:49,158 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:49,158 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-17 15:08:49,158 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:49,159 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:49,159 INFO L85 PathProgramCache]: Analyzing trace with hash -1279070703, now seen corresponding path program 1 times [2021-12-17 15:08:49,159 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:49,159 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [545985120] [2021-12-17 15:08:49,159 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:49,160 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:49,174 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:49,229 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:49,230 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:49,230 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [545985120] [2021-12-17 15:08:49,230 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [545985120] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:49,230 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:49,230 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:08:49,231 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1499135969] [2021-12-17 15:08:49,231 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:49,231 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-17 15:08:49,231 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:49,232 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-17 15:08:49,232 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2021-12-17 15:08:49,232 INFO L87 Difference]: Start difference. First operand 140 states and 184 transitions. Second operand has 8 states, 8 states have (on average 3.375) internal successors, (27), 7 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:49,388 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:49,388 INFO L93 Difference]: Finished difference Result 523 states and 732 transitions. [2021-12-17 15:08:49,388 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-12-17 15:08:49,389 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.375) internal successors, (27), 7 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2021-12-17 15:08:49,389 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:49,393 INFO L225 Difference]: With dead ends: 523 [2021-12-17 15:08:49,393 INFO L226 Difference]: Without dead ends: 390 [2021-12-17 15:08:49,395 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=51, Invalid=131, Unknown=0, NotChecked=0, Total=182 [2021-12-17 15:08:49,396 INFO L933 BasicCegarLoop]: 79 mSDtfsCounter, 153 mSDsluCounter, 421 mSDsCounter, 0 mSdLazyCounter, 129 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 153 SdHoareTripleChecker+Valid, 500 SdHoareTripleChecker+Invalid, 147 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 129 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:49,396 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [153 Valid, 500 Invalid, 147 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 129 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:08:49,397 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 390 states. [2021-12-17 15:08:49,429 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 390 to 375. [2021-12-17 15:08:49,434 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 375 states, 284 states have (on average 1.3485915492957747) internal successors, (383), 321 states have internal predecessors, (383), 51 states have call successors, (51), 39 states have call predecessors, (51), 39 states have return successors, (65), 33 states have call predecessors, (65), 51 states have call successors, (65) [2021-12-17 15:08:49,436 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 375 states to 375 states and 499 transitions. [2021-12-17 15:08:49,438 INFO L78 Accepts]: Start accepts. Automaton has 375 states and 499 transitions. Word has length 28 [2021-12-17 15:08:49,438 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:49,439 INFO L470 AbstractCegarLoop]: Abstraction has 375 states and 499 transitions. [2021-12-17 15:08:49,439 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.375) internal successors, (27), 7 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:49,439 INFO L276 IsEmpty]: Start isEmpty. Operand 375 states and 499 transitions. [2021-12-17 15:08:49,441 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2021-12-17 15:08:49,442 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:49,443 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:49,443 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-17 15:08:49,443 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:49,443 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:49,444 INFO L85 PathProgramCache]: Analyzing trace with hash 1024780246, now seen corresponding path program 1 times [2021-12-17 15:08:49,444 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:49,444 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [790670038] [2021-12-17 15:08:49,444 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:49,445 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:49,456 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:49,495 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:49,495 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:49,495 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [790670038] [2021-12-17 15:08:49,496 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [790670038] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:49,496 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:49,496 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:08:49,496 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [26459550] [2021-12-17 15:08:49,496 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:49,497 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:08:49,497 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:49,497 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:08:49,497 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:49,498 INFO L87 Difference]: Start difference. First operand 375 states and 499 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:49,514 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:49,514 INFO L93 Difference]: Finished difference Result 650 states and 879 transitions. [2021-12-17 15:08:49,515 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:08:49,515 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2021-12-17 15:08:49,515 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:49,517 INFO L225 Difference]: With dead ends: 650 [2021-12-17 15:08:49,517 INFO L226 Difference]: Without dead ends: 282 [2021-12-17 15:08:49,519 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:49,520 INFO L933 BasicCegarLoop]: 49 mSDtfsCounter, 33 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 49 SdHoareTripleChecker+Invalid, 6 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:49,520 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [33 Valid, 49 Invalid, 6 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:49,521 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 282 states. [2021-12-17 15:08:49,536 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 282 to 276. [2021-12-17 15:08:49,537 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 276 states, 215 states have (on average 1.2651162790697674) internal successors, (272), 231 states have internal predecessors, (272), 30 states have call successors, (30), 30 states have call predecessors, (30), 30 states have return successors, (36), 30 states have call predecessors, (36), 30 states have call successors, (36) [2021-12-17 15:08:49,538 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 276 states to 276 states and 338 transitions. [2021-12-17 15:08:49,538 INFO L78 Accepts]: Start accepts. Automaton has 276 states and 338 transitions. Word has length 30 [2021-12-17 15:08:49,538 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:49,539 INFO L470 AbstractCegarLoop]: Abstraction has 276 states and 338 transitions. [2021-12-17 15:08:49,539 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:49,539 INFO L276 IsEmpty]: Start isEmpty. Operand 276 states and 338 transitions. [2021-12-17 15:08:49,541 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-12-17 15:08:49,541 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:49,541 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:49,541 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-17 15:08:49,542 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:49,542 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:49,542 INFO L85 PathProgramCache]: Analyzing trace with hash -471568720, now seen corresponding path program 1 times [2021-12-17 15:08:49,542 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:49,543 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1026094546] [2021-12-17 15:08:49,543 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:49,543 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:49,557 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:49,596 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:08:49,598 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:49,606 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-17 15:08:49,608 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:49,612 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2021-12-17 15:08:49,614 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:49,617 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2021-12-17 15:08:49,617 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:49,617 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1026094546] [2021-12-17 15:08:49,617 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1026094546] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-17 15:08:49,617 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1725294017] [2021-12-17 15:08:49,618 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:49,618 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-17 15:08:49,618 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:08:49,620 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-17 15:08:49,641 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-17 15:08:49,714 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:49,724 INFO L263 TraceCheckSpWp]: Trace formula consists of 363 conjuncts, 9 conjunts are in the unsatisfiable core [2021-12-17 15:08:49,730 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-17 15:08:49,941 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 15 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2021-12-17 15:08:49,942 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-17 15:08:50,208 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 15 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:50,209 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1725294017] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-17 15:08:50,209 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-17 15:08:50,209 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 7] total 15 [2021-12-17 15:08:50,209 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [536312414] [2021-12-17 15:08:50,209 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-17 15:08:50,210 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2021-12-17 15:08:50,211 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:50,211 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2021-12-17 15:08:50,212 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=48, Invalid=162, Unknown=0, NotChecked=0, Total=210 [2021-12-17 15:08:50,212 INFO L87 Difference]: Start difference. First operand 276 states and 338 transitions. Second operand has 15 states, 15 states have (on average 5.933333333333334) internal successors, (89), 12 states have internal predecessors, (89), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-17 15:08:50,381 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:50,382 INFO L93 Difference]: Finished difference Result 373 states and 455 transitions. [2021-12-17 15:08:50,382 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-17 15:08:50,382 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 5.933333333333334) internal successors, (89), 12 states have internal predecessors, (89), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 53 [2021-12-17 15:08:50,384 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:50,384 INFO L225 Difference]: With dead ends: 373 [2021-12-17 15:08:50,385 INFO L226 Difference]: Without dead ends: 0 [2021-12-17 15:08:50,386 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 122 GetRequests, 104 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 40 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=99, Invalid=281, Unknown=0, NotChecked=0, Total=380 [2021-12-17 15:08:50,393 INFO L933 BasicCegarLoop]: 69 mSDtfsCounter, 128 mSDsluCounter, 244 mSDsCounter, 0 mSdLazyCounter, 175 mSolverCounterSat, 52 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 128 SdHoareTripleChecker+Valid, 313 SdHoareTripleChecker+Invalid, 227 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 52 IncrementalHoareTripleChecker+Valid, 175 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:50,394 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [128 Valid, 313 Invalid, 227 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [52 Valid, 175 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:08:50,394 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-17 15:08:50,394 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-17 15:08:50,394 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:50,395 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-17 15:08:50,395 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 53 [2021-12-17 15:08:50,395 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:50,395 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-17 15:08:50,395 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 5.933333333333334) internal successors, (89), 12 states have internal predecessors, (89), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-17 15:08:50,396 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-17 15:08:50,396 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-17 15:08:50,398 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-17 15:08:50,418 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-17 15:08:50,603 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2021-12-17 15:08:50,605 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-17 15:08:51,400 INFO L861 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 587 594) the Hoare annotation is: true [2021-12-17 15:08:51,400 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 587 594) no Hoare annotation was computed. [2021-12-17 15:08:51,400 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 587 594) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 546 552) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 546 552) the Hoare annotation is: true [2021-12-17 15:08:51,401 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 449 460) the Hoare annotation is: true [2021-12-17 15:08:51,401 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 449 460) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L858 garLoopResultBuilder]: For program point L453-1(lines 449 460) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L858 garLoopResultBuilder]: For program point L770-1(line 770) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 764 793) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 764 793) the Hoare annotation is: true [2021-12-17 15:08:51,401 INFO L861 garLoopResultBuilder]: At program point L789(lines 764 793) the Hoare annotation is: true [2021-12-17 15:08:51,401 INFO L858 garLoopResultBuilder]: For program point L785(line 785) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L858 garLoopResultBuilder]: For program point L778(lines 778 782) no Hoare annotation was computed. [2021-12-17 15:08:51,401 INFO L861 garLoopResultBuilder]: At program point L778-1(lines 778 782) the Hoare annotation is: true [2021-12-17 15:08:51,402 INFO L858 garLoopResultBuilder]: For program point L775(line 775) no Hoare annotation was computed. [2021-12-17 15:08:51,402 INFO L861 garLoopResultBuilder]: At program point L774-2(lines 774 788) the Hoare annotation is: true [2021-12-17 15:08:51,402 INFO L861 garLoopResultBuilder]: At program point L770(line 770) the Hoare annotation is: true [2021-12-17 15:08:51,402 INFO L854 garLoopResultBuilder]: At program point L568(line 568) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,402 INFO L854 garLoopResultBuilder]: At program point L564(line 564) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,402 INFO L854 garLoopResultBuilder]: At program point L498(lines 493 501) the Hoare annotation is: (or (and (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 |timeShift_getWaterLevel_#res#1|)) (= ~pumpRunning~0 0)) (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,402 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 522 545) no Hoare annotation was computed. [2021-12-17 15:08:51,402 INFO L854 garLoopResultBuilder]: At program point L573(line 573) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 0)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1))) [2021-12-17 15:08:51,402 INFO L854 garLoopResultBuilder]: At program point L573-1(lines 554 578) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 0)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1))) [2021-12-17 15:08:51,403 INFO L854 garLoopResultBuilder]: At program point L507(lines 502 510) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L660(lines 660 664) no Hoare annotation was computed. [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L660-2(lines 660 664) no Hoare annotation was computed. [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L429(lines 429 433) no Hoare annotation was computed. [2021-12-17 15:08:51,403 INFO L854 garLoopResultBuilder]: At program point L429-2(lines 425 436) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,403 INFO L854 garLoopResultBuilder]: At program point L611(lines 606 614) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L533-1(lines 533 539) no Hoare annotation was computed. [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L562(lines 562 570) no Hoare annotation was computed. [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L690(line 690) no Hoare annotation was computed. [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L558(lines 558 575) no Hoare annotation was computed. [2021-12-17 15:08:51,403 INFO L858 garLoopResultBuilder]: For program point L909(lines 909 915) no Hoare annotation was computed. [2021-12-17 15:08:51,404 INFO L858 garLoopResultBuilder]: For program point L905(lines 905 918) no Hoare annotation was computed. [2021-12-17 15:08:51,404 INFO L854 garLoopResultBuilder]: At program point L905-1(lines 897 921) the Hoare annotation is: (let ((.cse0 (and (not (= 0 |timeShift___utac_acc__Specification4_spec__1_~tmp~7#1|)) (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 |timeShift_getWaterLevel_#res#1|)) (= ~pumpRunning~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1))) [2021-12-17 15:08:51,404 INFO L854 garLoopResultBuilder]: At program point L666(lines 651 669) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,404 INFO L854 garLoopResultBuilder]: At program point L691(lines 686 693) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:51,404 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 522 545) the Hoare annotation is: (let ((.cse0 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-17 15:08:51,404 INFO L858 garLoopResultBuilder]: For program point L526-1(lines 525 544) no Hoare annotation was computed. [2021-12-17 15:08:51,404 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 522 545) no Hoare annotation was computed. [2021-12-17 15:08:51,404 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 690) no Hoare annotation was computed. [2021-12-17 15:08:51,404 INFO L861 garLoopResultBuilder]: At program point L832(lines 825 834) the Hoare annotation is: true [2021-12-17 15:08:51,404 INFO L861 garLoopResultBuilder]: At program point L857(lines 838 860) the Hoare annotation is: true [2021-12-17 15:08:51,405 INFO L854 garLoopResultBuilder]: At program point L754(lines 705 755) the Hoare annotation is: false [2021-12-17 15:08:51,405 INFO L858 garLoopResultBuilder]: For program point L742(lines 742 748) no Hoare annotation was computed. [2021-12-17 15:08:51,405 INFO L854 garLoopResultBuilder]: At program point L676(line 676) the Hoare annotation is: false [2021-12-17 15:08:51,405 INFO L854 garLoopResultBuilder]: At program point L742-2(lines 736 749) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-17 15:08:51,405 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-17 15:08:51,405 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-17 15:08:51,405 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-17 15:08:51,405 INFO L858 garLoopResultBuilder]: For program point L726(lines 726 732) no Hoare annotation was computed. [2021-12-17 15:08:51,405 INFO L858 garLoopResultBuilder]: For program point L726-1(lines 726 732) no Hoare annotation was computed. [2021-12-17 15:08:51,405 INFO L854 garLoopResultBuilder]: At program point L751(lines 706 753) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-17 15:08:51,405 INFO L854 garLoopResultBuilder]: At program point L718(line 718) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-17 15:08:51,406 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-17 15:08:51,406 INFO L854 garLoopResultBuilder]: At program point L892(lines 887 895) the Hoare annotation is: (and (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:51,406 INFO L854 garLoopResultBuilder]: At program point L822(lines 818 824) the Hoare annotation is: (and (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) (= ~systemActive~0 |ULTIMATE.start_main_~tmp~6#1|) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:51,406 INFO L854 garLoopResultBuilder]: At program point L884(lines 880 886) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:51,406 INFO L854 garLoopResultBuilder]: At program point L682(lines 670 684) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-17 15:08:51,406 INFO L858 garLoopResultBuilder]: For program point L707(lines 706 753) no Hoare annotation was computed. [2021-12-17 15:08:51,406 INFO L858 garLoopResultBuilder]: For program point L674(lines 674 680) no Hoare annotation was computed. [2021-12-17 15:08:51,406 INFO L858 garLoopResultBuilder]: For program point L674-1(lines 674 680) no Hoare annotation was computed. [2021-12-17 15:08:51,406 INFO L858 garLoopResultBuilder]: For program point L736(lines 736 749) no Hoare annotation was computed. [2021-12-17 15:08:51,406 INFO L854 garLoopResultBuilder]: At program point L728(line 728) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-17 15:08:51,407 INFO L861 garLoopResultBuilder]: At program point L757(lines 696 761) the Hoare annotation is: true [2021-12-17 15:08:51,407 INFO L858 garLoopResultBuilder]: For program point L848(lines 848 855) no Hoare annotation was computed. [2021-12-17 15:08:51,407 INFO L858 garLoopResultBuilder]: For program point L848-2(lines 848 855) no Hoare annotation was computed. [2021-12-17 15:08:51,412 INFO L854 garLoopResultBuilder]: At program point L877(lines 873 879) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:51,412 INFO L858 garLoopResultBuilder]: For program point L716(lines 716 722) no Hoare annotation was computed. [2021-12-17 15:08:51,413 INFO L858 garLoopResultBuilder]: For program point L716-1(lines 716 722) no Hoare annotation was computed. [2021-12-17 15:08:51,413 INFO L858 garLoopResultBuilder]: For program point L708(lines 708 712) no Hoare annotation was computed. [2021-12-17 15:08:51,413 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 437 448) no Hoare annotation was computed. [2021-12-17 15:08:51,413 INFO L858 garLoopResultBuilder]: For program point L441-1(lines 437 448) no Hoare annotation was computed. [2021-12-17 15:08:51,413 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 437 448) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-17 15:08:51,416 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1] [2021-12-17 15:08:51,418 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-17 15:08:51,449 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 17.12 03:08:51 BoogieIcfgContainer [2021-12-17 15:08:51,450 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-17 15:08:51,451 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-17 15:08:51,451 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-17 15:08:51,451 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-17 15:08:51,452 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:08:48" (3/4) ... [2021-12-17 15:08:51,454 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-17 15:08:51,472 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-17 15:08:51,472 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-17 15:08:51,472 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-17 15:08:51,472 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-17 15:08:51,473 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-17 15:08:51,473 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-17 15:08:51,483 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 49 nodes and edges [2021-12-17 15:08:51,484 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-17 15:08:51,485 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-17 15:08:51,485 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-17 15:08:51,485 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-17 15:08:51,486 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:08:51,486 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:08:51,505 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((waterLevel == \result && waterLevel == 1) && systemActive == 1) && pumpRunning == 0 [2021-12-17 15:08:51,505 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((waterLevel == \result && waterLevel == tmp) && systemActive == tmp) && systemActive == 1) && pumpRunning == 0 [2021-12-17 15:08:51,506 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) [2021-12-17 15:08:51,506 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:51,507 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) [2021-12-17 15:08:51,507 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((waterLevel == \old(waterLevel) && !(0 == \result)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:51,507 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) [2021-12-17 15:08:51,508 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(waterLevel) == 1) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) && ((!(2 <= \old(waterLevel)) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) [2021-12-17 15:08:51,508 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:51,508 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:51,508 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:51,509 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:51,527 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-17 15:08:51,527 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-17 15:08:51,528 INFO L158 Benchmark]: Toolchain (without parser) took 4304.60ms. Allocated memory was 96.5MB in the beginning and 121.6MB in the end (delta: 25.2MB). Free memory was 68.6MB in the beginning and 39.9MB in the end (delta: 28.7MB). Peak memory consumption was 53.8MB. Max. memory is 16.1GB. [2021-12-17 15:08:51,528 INFO L158 Benchmark]: CDTParser took 0.21ms. Allocated memory is still 77.6MB. Free memory is still 40.8MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-17 15:08:51,528 INFO L158 Benchmark]: CACSL2BoogieTranslator took 428.16ms. Allocated memory is still 96.5MB. Free memory was 68.3MB in the beginning and 65.2MB in the end (delta: 3.1MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2021-12-17 15:08:51,529 INFO L158 Benchmark]: Boogie Procedure Inliner took 48.50ms. Allocated memory is still 96.5MB. Free memory was 65.2MB in the beginning and 62.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:08:51,529 INFO L158 Benchmark]: Boogie Preprocessor took 31.48ms. Allocated memory is still 96.5MB. Free memory was 62.9MB in the beginning and 61.1MB in the end (delta: 1.8MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:08:51,529 INFO L158 Benchmark]: RCFGBuilder took 407.38ms. Allocated memory is still 96.5MB. Free memory was 61.1MB in the beginning and 46.4MB in the end (delta: 14.7MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2021-12-17 15:08:51,530 INFO L158 Benchmark]: TraceAbstraction took 3304.94ms. Allocated memory was 96.5MB in the beginning and 121.6MB in the end (delta: 25.2MB). Free memory was 45.7MB in the beginning and 46.1MB in the end (delta: -408.0kB). Peak memory consumption was 38.8MB. Max. memory is 16.1GB. [2021-12-17 15:08:51,530 INFO L158 Benchmark]: Witness Printer took 76.66ms. Allocated memory is still 121.6MB. Free memory was 46.1MB in the beginning and 39.9MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-17 15:08:51,531 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21ms. Allocated memory is still 77.6MB. Free memory is still 40.8MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 428.16ms. Allocated memory is still 96.5MB. Free memory was 68.3MB in the beginning and 65.2MB in the end (delta: 3.1MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 48.50ms. Allocated memory is still 96.5MB. Free memory was 65.2MB in the beginning and 62.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 31.48ms. Allocated memory is still 96.5MB. Free memory was 62.9MB in the beginning and 61.1MB in the end (delta: 1.8MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 407.38ms. Allocated memory is still 96.5MB. Free memory was 61.1MB in the beginning and 46.4MB in the end (delta: 14.7MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * TraceAbstraction took 3304.94ms. Allocated memory was 96.5MB in the beginning and 121.6MB in the end (delta: 25.2MB). Free memory was 45.7MB in the beginning and 46.1MB in the end (delta: -408.0kB). Peak memory consumption was 38.8MB. Max. memory is 16.1GB. * Witness Printer took 76.66ms. Allocated memory is still 121.6MB. Free memory was 46.1MB in the beginning and 39.9MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 690]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 76 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 3.2s, OverallIterations: 6, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.8s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 489 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 485 mSDsluCounter, 1474 SdHoareTripleChecker+Invalid, 0.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1020 mSDsCounter, 86 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 382 IncrementalHoareTripleChecker+Invalid, 468 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 86 mSolverCounterUnsat, 454 mSDtfsCounter, 382 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 151 GetRequests, 113 SyntacticMatches, 0 SemanticMatches, 38 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 55 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=375occurred in iteration=4, InterpolantAutomatonStates: 32, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 6 MinimizatonAttempts, 27 StatesRemovedByMinimization, 3 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 35 LocationsWithAnnotation, 485 PreInvPairs, 543 NumberOfFragments, 469 HoareAnnotationTreeSize, 485 FomulaSimplifications, 282 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 35 FomulaSimplificationsInter, 2303 FormulaSimplificationTreeSizeReductionInter, 0.7s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 0.8s InterpolantComputationTime, 227 NumberOfCodeBlocks, 227 NumberOfCodeBlocksAsserted, 7 NumberOfCheckSat, 272 ConstructedInterpolants, 0 QuantifiedInterpolants, 735 SizeOfPredicates, 0 NumberOfNonLiveVariables, 363 ConjunctsInSsa, 9 ConjunctsInUnsatCore, 8 InterpolantComputations, 5 PerfectInterpolantSequences, 48/54 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 774]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 873]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 825]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 606]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 705]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 670]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) - InvariantResult [Line: 686]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 502]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 706]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) - InvariantResult [Line: 696]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 818]: Loop Invariant Derived loop invariant: (((waterLevel == \result && waterLevel == tmp) && systemActive == tmp) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 651]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 493]: Loop Invariant Derived loop invariant: (((waterLevel == \old(waterLevel) && !(0 == \result)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 554]: Loop Invariant Derived loop invariant: ((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) - InvariantResult [Line: 764]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 838]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 887]: Loop Invariant Derived loop invariant: ((waterLevel == \result && waterLevel == 1) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 425]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 897]: Loop Invariant Derived loop invariant: ((!(\old(waterLevel) == 1) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) && ((!(2 <= \old(waterLevel)) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) RESULT: Ultimate proved your program to be correct! [2021-12-17 15:08:51,572 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE