./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec4_product24.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec4_product24.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash a933c7098679a6972748d486040a9bdf507acce33a33e1309286157bdff8c762 --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-17 15:08:49,313 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-17 15:08:49,314 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-17 15:08:49,343 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-17 15:08:49,344 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-17 15:08:49,347 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-17 15:08:49,348 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-17 15:08:49,350 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-17 15:08:49,351 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-17 15:08:49,353 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-17 15:08:49,354 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-17 15:08:49,355 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-17 15:08:49,355 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-17 15:08:49,358 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-17 15:08:49,359 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-17 15:08:49,360 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-17 15:08:49,361 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-17 15:08:49,363 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-17 15:08:49,364 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-17 15:08:49,367 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-17 15:08:49,369 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-17 15:08:49,370 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-17 15:08:49,371 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-17 15:08:49,372 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-17 15:08:49,373 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-17 15:08:49,376 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-17 15:08:49,376 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-17 15:08:49,376 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-17 15:08:49,377 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-17 15:08:49,378 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-17 15:08:49,378 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-17 15:08:49,379 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-17 15:08:49,380 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-17 15:08:49,381 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-17 15:08:49,381 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-17 15:08:49,382 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-17 15:08:49,383 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-17 15:08:49,383 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-17 15:08:49,383 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-17 15:08:49,383 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-17 15:08:49,384 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-17 15:08:49,384 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-17 15:08:49,407 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-17 15:08:49,408 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-17 15:08:49,408 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-17 15:08:49,409 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-17 15:08:49,416 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-17 15:08:49,416 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-17 15:08:49,416 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-17 15:08:49,417 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-17 15:08:49,417 INFO L138 SettingsManager]: * Use SBE=true [2021-12-17 15:08:49,417 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-17 15:08:49,418 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-17 15:08:49,418 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-17 15:08:49,418 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-17 15:08:49,418 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-17 15:08:49,418 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-17 15:08:49,418 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-17 15:08:49,418 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-17 15:08:49,419 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-17 15:08:49,419 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-17 15:08:49,419 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-17 15:08:49,419 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-17 15:08:49,419 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-17 15:08:49,419 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-17 15:08:49,420 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-17 15:08:49,420 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:08:49,420 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-17 15:08:49,420 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-17 15:08:49,420 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-17 15:08:49,420 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-17 15:08:49,420 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-17 15:08:49,421 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-17 15:08:49,421 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-17 15:08:49,421 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-17 15:08:49,421 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-17 15:08:49,421 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> a933c7098679a6972748d486040a9bdf507acce33a33e1309286157bdff8c762 [2021-12-17 15:08:49,603 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-17 15:08:49,619 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-17 15:08:49,621 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-17 15:08:49,621 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-17 15:08:49,622 INFO L275 PluginConnector]: CDTParser initialized [2021-12-17 15:08:49,623 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec4_product24.cil.c [2021-12-17 15:08:49,667 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b414f9ef0/3828ff2939694c18bed285f13824cf9d/FLAG5ef7c62d8 [2021-12-17 15:08:50,104 INFO L306 CDTParser]: Found 1 translation units. [2021-12-17 15:08:50,104 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product24.cil.c [2021-12-17 15:08:50,138 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b414f9ef0/3828ff2939694c18bed285f13824cf9d/FLAG5ef7c62d8 [2021-12-17 15:08:50,444 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b414f9ef0/3828ff2939694c18bed285f13824cf9d [2021-12-17 15:08:50,446 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-17 15:08:50,447 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-17 15:08:50,448 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-17 15:08:50,448 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-17 15:08:50,450 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-17 15:08:50,451 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:50,451 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@32c08fc9 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50, skipping insertion in model container [2021-12-17 15:08:50,452 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:50,456 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-17 15:08:50,475 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-17 15:08:50,830 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product24.cil.c[18260,18273] [2021-12-17 15:08:50,833 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:08:50,855 INFO L203 MainTranslator]: Completed pre-run [2021-12-17 15:08:50,937 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product24.cil.c[18260,18273] [2021-12-17 15:08:50,938 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:08:50,978 INFO L208 MainTranslator]: Completed translation [2021-12-17 15:08:50,978 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50 WrapperNode [2021-12-17 15:08:50,979 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-17 15:08:50,979 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-17 15:08:50,979 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-17 15:08:50,979 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-17 15:08:50,984 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:50,994 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,012 INFO L137 Inliner]: procedures = 55, calls = 156, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 251 [2021-12-17 15:08:51,012 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-17 15:08:51,013 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-17 15:08:51,013 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-17 15:08:51,013 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-17 15:08:51,019 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,019 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,021 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,021 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,025 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,028 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,029 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,031 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-17 15:08:51,032 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-17 15:08:51,032 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-17 15:08:51,032 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-17 15:08:51,033 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (1/1) ... [2021-12-17 15:08:51,055 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:08:51,062 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:08:51,071 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-17 15:08:51,098 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-17 15:08:51,098 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-17 15:08:51,098 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-17 15:08:51,098 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-17 15:08:51,098 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-17 15:08:51,099 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-17 15:08:51,099 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-17 15:08:51,099 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-17 15:08:51,099 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-17 15:08:51,099 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2021-12-17 15:08:51,099 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2021-12-17 15:08:51,099 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-17 15:08:51,099 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-17 15:08:51,100 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-17 15:08:51,100 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-17 15:08:51,100 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-17 15:08:51,100 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-17 15:08:51,100 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-17 15:08:51,078 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-17 15:08:51,147 INFO L236 CfgBuilder]: Building ICFG [2021-12-17 15:08:51,148 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-17 15:08:51,329 INFO L277 CfgBuilder]: Performing block encoding [2021-12-17 15:08:51,334 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-17 15:08:51,334 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-17 15:08:51,335 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:08:51 BoogieIcfgContainer [2021-12-17 15:08:51,335 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-17 15:08:51,336 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-17 15:08:51,336 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-17 15:08:51,339 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-17 15:08:51,339 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 17.12 03:08:50" (1/3) ... [2021-12-17 15:08:51,339 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@11dda89f and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:08:51, skipping insertion in model container [2021-12-17 15:08:51,339 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:08:50" (2/3) ... [2021-12-17 15:08:51,340 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@11dda89f and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:08:51, skipping insertion in model container [2021-12-17 15:08:51,340 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:08:51" (3/3) ... [2021-12-17 15:08:51,341 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product24.cil.c [2021-12-17 15:08:51,346 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-17 15:08:51,346 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-17 15:08:51,375 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-17 15:08:51,380 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-17 15:08:51,380 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-17 15:08:51,391 INFO L276 IsEmpty]: Start isEmpty. Operand has 87 states, 65 states have (on average 1.3846153846153846) internal successors, (90), 74 states have internal predecessors, (90), 13 states have call successors, (13), 7 states have call predecessors, (13), 7 states have return successors, (13), 9 states have call predecessors, (13), 13 states have call successors, (13) [2021-12-17 15:08:51,395 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-12-17 15:08:51,395 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:51,396 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:51,396 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:51,400 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:51,400 INFO L85 PathProgramCache]: Analyzing trace with hash 488850844, now seen corresponding path program 1 times [2021-12-17 15:08:51,405 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:51,406 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1081523065] [2021-12-17 15:08:51,406 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:51,406 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:51,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:51,524 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:51,525 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:51,525 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1081523065] [2021-12-17 15:08:51,525 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1081523065] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:51,526 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:51,526 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:08:51,527 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [41121494] [2021-12-17 15:08:51,528 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:51,530 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-17 15:08:51,531 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:51,548 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-17 15:08:51,548 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:08:51,550 INFO L87 Difference]: Start difference. First operand has 87 states, 65 states have (on average 1.3846153846153846) internal successors, (90), 74 states have internal predecessors, (90), 13 states have call successors, (13), 7 states have call predecessors, (13), 7 states have return successors, (13), 9 states have call predecessors, (13), 13 states have call successors, (13) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:51,570 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:51,570 INFO L93 Difference]: Finished difference Result 166 states and 227 transitions. [2021-12-17 15:08:51,571 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-17 15:08:51,572 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-12-17 15:08:51,572 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:51,578 INFO L225 Difference]: With dead ends: 166 [2021-12-17 15:08:51,578 INFO L226 Difference]: Without dead ends: 78 [2021-12-17 15:08:51,580 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:08:51,582 INFO L933 BasicCegarLoop]: 110 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 110 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:51,583 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 110 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:51,593 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 78 states. [2021-12-17 15:08:51,607 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 78 to 78. [2021-12-17 15:08:51,608 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 78 states, 58 states have (on average 1.3103448275862069) internal successors, (76), 66 states have internal predecessors, (76), 13 states have call successors, (13), 7 states have call predecessors, (13), 6 states have return successors, (12), 8 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-17 15:08:51,610 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 78 states to 78 states and 101 transitions. [2021-12-17 15:08:51,611 INFO L78 Accepts]: Start accepts. Automaton has 78 states and 101 transitions. Word has length 19 [2021-12-17 15:08:51,611 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:51,611 INFO L470 AbstractCegarLoop]: Abstraction has 78 states and 101 transitions. [2021-12-17 15:08:51,611 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:51,611 INFO L276 IsEmpty]: Start isEmpty. Operand 78 states and 101 transitions. [2021-12-17 15:08:51,613 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2021-12-17 15:08:51,613 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:51,613 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:51,613 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-17 15:08:51,614 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:51,614 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:51,614 INFO L85 PathProgramCache]: Analyzing trace with hash -2030303846, now seen corresponding path program 1 times [2021-12-17 15:08:51,615 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:51,615 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [371931867] [2021-12-17 15:08:51,615 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:51,615 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:51,633 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:51,658 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:51,659 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:51,659 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [371931867] [2021-12-17 15:08:51,659 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [371931867] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:51,659 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:51,659 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-17 15:08:51,659 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [487516932] [2021-12-17 15:08:51,660 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:51,660 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:08:51,661 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:51,661 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:08:51,661 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:51,661 INFO L87 Difference]: Start difference. First operand 78 states and 101 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:51,672 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:51,672 INFO L93 Difference]: Finished difference Result 117 states and 151 transitions. [2021-12-17 15:08:51,672 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:08:51,673 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2021-12-17 15:08:51,673 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:51,674 INFO L225 Difference]: With dead ends: 117 [2021-12-17 15:08:51,674 INFO L226 Difference]: Without dead ends: 69 [2021-12-17 15:08:51,674 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:51,675 INFO L933 BasicCegarLoop]: 88 mSDtfsCounter, 17 mSDsluCounter, 66 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 154 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:51,676 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [21 Valid, 154 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:51,676 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2021-12-17 15:08:51,682 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 69. [2021-12-17 15:08:51,682 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 52 states have (on average 1.3269230769230769) internal successors, (69), 60 states have internal predecessors, (69), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 6 states have call predecessors, (10), 10 states have call successors, (10) [2021-12-17 15:08:51,683 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 89 transitions. [2021-12-17 15:08:51,685 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 89 transitions. Word has length 20 [2021-12-17 15:08:51,685 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:51,686 INFO L470 AbstractCegarLoop]: Abstraction has 69 states and 89 transitions. [2021-12-17 15:08:51,689 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:51,689 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 89 transitions. [2021-12-17 15:08:51,690 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-12-17 15:08:51,691 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:51,692 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:51,692 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-17 15:08:51,692 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:51,693 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:51,693 INFO L85 PathProgramCache]: Analyzing trace with hash -2108405867, now seen corresponding path program 1 times [2021-12-17 15:08:51,693 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:51,694 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1429724995] [2021-12-17 15:08:51,694 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:51,694 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:51,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:51,790 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:51,791 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:51,791 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1429724995] [2021-12-17 15:08:51,791 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1429724995] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:51,791 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:51,791 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-17 15:08:51,791 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [353394497] [2021-12-17 15:08:51,791 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:51,791 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:08:51,792 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:51,792 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:08:51,792 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:51,792 INFO L87 Difference]: Start difference. First operand 69 states and 89 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:51,829 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:51,829 INFO L93 Difference]: Finished difference Result 191 states and 252 transitions. [2021-12-17 15:08:51,833 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:08:51,833 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-12-17 15:08:51,833 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:51,838 INFO L225 Difference]: With dead ends: 191 [2021-12-17 15:08:51,838 INFO L226 Difference]: Without dead ends: 129 [2021-12-17 15:08:51,839 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:51,841 INFO L933 BasicCegarLoop]: 108 mSDtfsCounter, 81 mSDsluCounter, 77 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 185 SdHoareTripleChecker+Invalid, 5 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:51,841 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [81 Valid, 185 Invalid, 5 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:51,842 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 129 states. [2021-12-17 15:08:51,861 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 129 to 126. [2021-12-17 15:08:51,862 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 126 states, 93 states have (on average 1.3548387096774193) internal successors, (126), 108 states have internal predecessors, (126), 20 states have call successors, (20), 12 states have call predecessors, (20), 12 states have return successors, (20), 11 states have call predecessors, (20), 20 states have call successors, (20) [2021-12-17 15:08:51,868 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 126 states to 126 states and 166 transitions. [2021-12-17 15:08:51,868 INFO L78 Accepts]: Start accepts. Automaton has 126 states and 166 transitions. Word has length 25 [2021-12-17 15:08:51,868 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:51,868 INFO L470 AbstractCegarLoop]: Abstraction has 126 states and 166 transitions. [2021-12-17 15:08:51,869 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:51,869 INFO L276 IsEmpty]: Start isEmpty. Operand 126 states and 166 transitions. [2021-12-17 15:08:51,873 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2021-12-17 15:08:51,873 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:51,873 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:51,873 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-17 15:08:51,873 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:51,874 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:51,874 INFO L85 PathProgramCache]: Analyzing trace with hash -1698329658, now seen corresponding path program 1 times [2021-12-17 15:08:51,874 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:51,874 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1791307132] [2021-12-17 15:08:51,874 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:51,874 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:51,899 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:51,953 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:51,953 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:51,954 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1791307132] [2021-12-17 15:08:51,954 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1791307132] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:51,954 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:51,954 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-12-17 15:08:51,954 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1044140179] [2021-12-17 15:08:51,954 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:51,956 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-17 15:08:51,956 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:51,956 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-17 15:08:51,956 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-17 15:08:51,956 INFO L87 Difference]: Start difference. First operand 126 states and 166 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:52,030 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:52,031 INFO L93 Difference]: Finished difference Result 352 states and 479 transitions. [2021-12-17 15:08:52,032 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-17 15:08:52,032 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2021-12-17 15:08:52,033 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:52,034 INFO L225 Difference]: With dead ends: 352 [2021-12-17 15:08:52,034 INFO L226 Difference]: Without dead ends: 233 [2021-12-17 15:08:52,035 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:08:52,036 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 61 mSDsluCounter, 264 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 357 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:52,036 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [61 Valid, 357 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:52,037 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 233 states. [2021-12-17 15:08:52,069 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 233 to 233. [2021-12-17 15:08:52,069 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 233 states, 170 states have (on average 1.3411764705882352) internal successors, (228), 197 states have internal predecessors, (228), 40 states have call successors, (40), 24 states have call predecessors, (40), 22 states have return successors, (42), 20 states have call predecessors, (42), 40 states have call successors, (42) [2021-12-17 15:08:52,071 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 233 states to 233 states and 310 transitions. [2021-12-17 15:08:52,071 INFO L78 Accepts]: Start accepts. Automaton has 233 states and 310 transitions. Word has length 28 [2021-12-17 15:08:52,073 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:52,073 INFO L470 AbstractCegarLoop]: Abstraction has 233 states and 310 transitions. [2021-12-17 15:08:52,073 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:52,074 INFO L276 IsEmpty]: Start isEmpty. Operand 233 states and 310 transitions. [2021-12-17 15:08:52,076 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2021-12-17 15:08:52,076 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:52,076 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:52,077 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-17 15:08:52,077 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:52,079 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:52,080 INFO L85 PathProgramCache]: Analyzing trace with hash 1391340363, now seen corresponding path program 1 times [2021-12-17 15:08:52,080 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:52,080 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [273395286] [2021-12-17 15:08:52,080 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:52,081 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:52,103 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,137 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:52,137 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:52,137 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [273395286] [2021-12-17 15:08:52,137 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [273395286] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:52,138 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:52,138 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:08:52,138 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1740765651] [2021-12-17 15:08:52,138 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:52,138 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:08:52,138 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:52,138 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:08:52,139 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:52,139 INFO L87 Difference]: Start difference. First operand 233 states and 310 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:52,162 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:52,163 INFO L93 Difference]: Finished difference Result 389 states and 521 transitions. [2021-12-17 15:08:52,167 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:08:52,167 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2021-12-17 15:08:52,167 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:52,168 INFO L225 Difference]: With dead ends: 389 [2021-12-17 15:08:52,168 INFO L226 Difference]: Without dead ends: 163 [2021-12-17 15:08:52,170 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:08:52,170 INFO L933 BasicCegarLoop]: 54 mSDtfsCounter, 39 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 5 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 39 SdHoareTripleChecker+Valid, 54 SdHoareTripleChecker+Invalid, 8 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 5 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:52,171 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [39 Valid, 54 Invalid, 8 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 5 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:08:52,171 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 163 states. [2021-12-17 15:08:52,182 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 163 to 161. [2021-12-17 15:08:52,183 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 161 states, 122 states have (on average 1.2295081967213115) internal successors, (150), 129 states have internal predecessors, (150), 20 states have call successors, (20), 20 states have call predecessors, (20), 18 states have return successors, (20), 18 states have call predecessors, (20), 20 states have call successors, (20) [2021-12-17 15:08:52,183 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 161 states to 161 states and 190 transitions. [2021-12-17 15:08:52,183 INFO L78 Accepts]: Start accepts. Automaton has 161 states and 190 transitions. Word has length 30 [2021-12-17 15:08:52,183 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:52,184 INFO L470 AbstractCegarLoop]: Abstraction has 161 states and 190 transitions. [2021-12-17 15:08:52,184 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:52,184 INFO L276 IsEmpty]: Start isEmpty. Operand 161 states and 190 transitions. [2021-12-17 15:08:52,184 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-12-17 15:08:52,184 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:52,184 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:52,185 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-17 15:08:52,185 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:52,185 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:52,185 INFO L85 PathProgramCache]: Analyzing trace with hash -52551700, now seen corresponding path program 1 times [2021-12-17 15:08:52,185 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:52,185 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1240945314] [2021-12-17 15:08:52,185 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:52,185 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:52,213 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,257 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:08:52,263 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,278 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:52,278 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:52,278 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1240945314] [2021-12-17 15:08:52,278 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1240945314] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:08:52,278 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:08:52,278 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:08:52,279 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [610455033] [2021-12-17 15:08:52,279 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:08:52,279 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-17 15:08:52,279 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:52,279 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-17 15:08:52,280 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2021-12-17 15:08:52,280 INFO L87 Difference]: Start difference. First operand 161 states and 190 transitions. Second operand has 8 states, 8 states have (on average 3.625) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:08:52,430 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:52,430 INFO L93 Difference]: Finished difference Result 329 states and 393 transitions. [2021-12-17 15:08:52,431 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-12-17 15:08:52,431 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.625) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 32 [2021-12-17 15:08:52,431 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:52,432 INFO L225 Difference]: With dead ends: 329 [2021-12-17 15:08:52,432 INFO L226 Difference]: Without dead ends: 247 [2021-12-17 15:08:52,433 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 27 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=69, Invalid=171, Unknown=0, NotChecked=0, Total=240 [2021-12-17 15:08:52,433 INFO L933 BasicCegarLoop]: 54 mSDtfsCounter, 169 mSDsluCounter, 215 mSDsCounter, 0 mSdLazyCounter, 155 mSolverCounterSat, 42 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 173 SdHoareTripleChecker+Valid, 269 SdHoareTripleChecker+Invalid, 197 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 155 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:52,434 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [173 Valid, 269 Invalid, 197 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 155 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:08:52,434 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 247 states. [2021-12-17 15:08:52,441 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 247 to 237. [2021-12-17 15:08:52,442 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 237 states, 178 states have (on average 1.2191011235955056) internal successors, (217), 191 states have internal predecessors, (217), 28 states have call successors, (28), 28 states have call predecessors, (28), 30 states have return successors, (30), 28 states have call predecessors, (30), 28 states have call successors, (30) [2021-12-17 15:08:52,442 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 237 states to 237 states and 275 transitions. [2021-12-17 15:08:52,443 INFO L78 Accepts]: Start accepts. Automaton has 237 states and 275 transitions. Word has length 32 [2021-12-17 15:08:52,443 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:52,443 INFO L470 AbstractCegarLoop]: Abstraction has 237 states and 275 transitions. [2021-12-17 15:08:52,443 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.625) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:08:52,443 INFO L276 IsEmpty]: Start isEmpty. Operand 237 states and 275 transitions. [2021-12-17 15:08:52,444 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2021-12-17 15:08:52,444 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:08:52,444 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:52,444 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-17 15:08:52,444 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:08:52,445 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:08:52,445 INFO L85 PathProgramCache]: Analyzing trace with hash 563595655, now seen corresponding path program 1 times [2021-12-17 15:08:52,445 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:08:52,445 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1286118446] [2021-12-17 15:08:52,445 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:52,445 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:08:52,454 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,482 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:08:52,484 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,491 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-17 15:08:52,492 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,496 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2021-12-17 15:08:52,497 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,499 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2021-12-17 15:08:52,499 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:08:52,499 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1286118446] [2021-12-17 15:08:52,499 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1286118446] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-17 15:08:52,499 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [659797974] [2021-12-17 15:08:52,499 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:08:52,499 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-17 15:08:52,499 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:08:52,501 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-17 15:08:52,501 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-17 15:08:52,576 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:08:52,578 INFO L263 TraceCheckSpWp]: Trace formula consists of 370 conjuncts, 9 conjunts are in the unsatisfiable core [2021-12-17 15:08:52,582 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-17 15:08:52,720 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 16 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2021-12-17 15:08:52,721 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-17 15:08:52,899 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 16 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:08:52,900 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [659797974] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-17 15:08:52,900 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-17 15:08:52,900 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 7] total 15 [2021-12-17 15:08:52,900 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [208012623] [2021-12-17 15:08:52,900 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-17 15:08:52,900 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2021-12-17 15:08:52,900 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:08:52,901 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2021-12-17 15:08:52,901 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=48, Invalid=162, Unknown=0, NotChecked=0, Total=210 [2021-12-17 15:08:52,901 INFO L87 Difference]: Start difference. First operand 237 states and 275 transitions. Second operand has 15 states, 15 states have (on average 6.0) internal successors, (90), 12 states have internal predecessors, (90), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-17 15:08:53,097 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:08:53,097 INFO L93 Difference]: Finished difference Result 313 states and 366 transitions. [2021-12-17 15:08:53,097 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-17 15:08:53,098 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 6.0) internal successors, (90), 12 states have internal predecessors, (90), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 54 [2021-12-17 15:08:53,098 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:08:53,098 INFO L225 Difference]: With dead ends: 313 [2021-12-17 15:08:53,098 INFO L226 Difference]: Without dead ends: 0 [2021-12-17 15:08:53,099 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 124 GetRequests, 106 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 40 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=99, Invalid=281, Unknown=0, NotChecked=0, Total=380 [2021-12-17 15:08:53,099 INFO L933 BasicCegarLoop]: 77 mSDtfsCounter, 117 mSDsluCounter, 361 mSDsCounter, 0 mSdLazyCounter, 227 mSolverCounterSat, 52 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 117 SdHoareTripleChecker+Valid, 438 SdHoareTripleChecker+Invalid, 279 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 52 IncrementalHoareTripleChecker+Valid, 227 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:08:53,099 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [117 Valid, 438 Invalid, 279 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [52 Valid, 227 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:08:53,100 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-17 15:08:53,100 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-17 15:08:53,100 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:08:53,100 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-17 15:08:53,100 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 54 [2021-12-17 15:08:53,100 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:08:53,100 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-17 15:08:53,100 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 6.0) internal successors, (90), 12 states have internal predecessors, (90), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-17 15:08:53,101 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-17 15:08:53,101 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-17 15:08:53,103 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-17 15:08:53,123 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-17 15:08:53,322 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-17 15:08:53,324 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-17 15:08:53,978 INFO L861 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 693 700) the Hoare annotation is: true [2021-12-17 15:08:53,978 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 693 700) no Hoare annotation was computed. [2021-12-17 15:08:53,978 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 693 700) no Hoare annotation was computed. [2021-12-17 15:08:53,978 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 626 632) no Hoare annotation was computed. [2021-12-17 15:08:53,979 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 626 632) the Hoare annotation is: true [2021-12-17 15:08:53,979 INFO L858 garLoopResultBuilder]: For program point L831-1(lines 827 838) no Hoare annotation was computed. [2021-12-17 15:08:53,980 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 827 838) the Hoare annotation is: true [2021-12-17 15:08:53,980 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 827 838) no Hoare annotation was computed. [2021-12-17 15:08:53,982 INFO L858 garLoopResultBuilder]: For program point L956(line 956) no Hoare annotation was computed. [2021-12-17 15:08:53,983 INFO L854 garLoopResultBuilder]: At program point L717(lines 712 720) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:53,983 INFO L858 garLoopResultBuilder]: For program point L903(lines 903 909) no Hoare annotation was computed. [2021-12-17 15:08:53,983 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 602 625) no Hoare annotation was computed. [2021-12-17 15:08:53,983 INFO L858 garLoopResultBuilder]: For program point L899(lines 899 912) no Hoare annotation was computed. [2021-12-17 15:08:53,983 INFO L854 garLoopResultBuilder]: At program point L899-1(lines 891 915) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse1 (= ~pumpRunning~0 0))) (and (or (and (= |timeShift_getWaterLevel_#res#1| 1) .cse0 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~8#1| 1) .cse1) (not (= |old(~waterLevel~0)| 1)) .cse2) (or (not (<= 2 |old(~waterLevel~0)|)) .cse2 (and (not (= |timeShift_getWaterLevel_#res#1| 0)) .cse0 (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp~8#1| 0)) .cse1)))) [2021-12-17 15:08:53,983 INFO L858 garLoopResultBuilder]: For program point L606-1(lines 605 624) no Hoare annotation was computed. [2021-12-17 15:08:53,983 INFO L854 garLoopResultBuilder]: At program point L957(lines 952 959) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:53,983 INFO L858 garLoopResultBuilder]: For program point L668(lines 668 676) no Hoare annotation was computed. [2021-12-17 15:08:53,983 INFO L858 garLoopResultBuilder]: For program point L664(lines 664 681) no Hoare annotation was computed. [2021-12-17 15:08:53,984 INFO L854 garLoopResultBuilder]: At program point L876(lines 871 879) the Hoare annotation is: (let ((.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse2 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 (and (not (= |timeShift_getWaterLevel_#res#1| 0)) .cse1 .cse2)) (or (and (= |timeShift_getWaterLevel_#res#1| 1) .cse1 .cse2) (not (= |old(~waterLevel~0)| 1)) .cse0))) [2021-12-17 15:08:53,984 INFO L854 garLoopResultBuilder]: At program point L674(line 674) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:53,984 INFO L854 garLoopResultBuilder]: At program point L670(line 670) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:53,985 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 602 625) the Hoare annotation is: (let ((.cse0 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-17 15:08:53,985 INFO L854 garLoopResultBuilder]: At program point L844(lines 839 847) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:53,985 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 602 625) no Hoare annotation was computed. [2021-12-17 15:08:53,985 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 956) no Hoare annotation was computed. [2021-12-17 15:08:53,985 INFO L858 garLoopResultBuilder]: For program point L807(lines 807 811) no Hoare annotation was computed. [2021-12-17 15:08:53,985 INFO L854 garLoopResultBuilder]: At program point L679(line 679) the Hoare annotation is: (let ((.cse0 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-17 15:08:53,985 INFO L854 garLoopResultBuilder]: At program point L679-1(lines 660 684) the Hoare annotation is: (let ((.cse0 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-17 15:08:53,985 INFO L854 garLoopResultBuilder]: At program point L807-2(lines 803 814) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:53,985 INFO L854 garLoopResultBuilder]: At program point L708(lines 701 711) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-17 15:08:53,985 INFO L858 garLoopResultBuilder]: For program point L613-1(lines 613 619) no Hoare annotation was computed. [2021-12-17 15:08:53,985 INFO L861 garLoopResultBuilder]: At program point L66-1(lines 66 70) the Hoare annotation is: true [2021-12-17 15:08:53,986 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 52 81) no Hoare annotation was computed. [2021-12-17 15:08:53,986 INFO L858 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2021-12-17 15:08:53,986 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 52 81) the Hoare annotation is: true [2021-12-17 15:08:53,986 INFO L861 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: true [2021-12-17 15:08:53,986 INFO L861 garLoopResultBuilder]: At program point L58(line 58) the Hoare annotation is: true [2021-12-17 15:08:53,988 INFO L858 garLoopResultBuilder]: For program point L58-1(line 58) no Hoare annotation was computed. [2021-12-17 15:08:53,988 INFO L861 garLoopResultBuilder]: At program point L77(lines 52 81) the Hoare annotation is: true [2021-12-17 15:08:53,988 INFO L858 garLoopResultBuilder]: For program point L73(line 73) no Hoare annotation was computed. [2021-12-17 15:08:53,988 INFO L858 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2021-12-17 15:08:53,988 INFO L861 garLoopResultBuilder]: At program point L585(lines 522 589) the Hoare annotation is: true [2021-12-17 15:08:53,988 INFO L858 garLoopResultBuilder]: For program point L552(lines 552 558) no Hoare annotation was computed. [2021-12-17 15:08:53,988 INFO L858 garLoopResultBuilder]: For program point L552-1(lines 552 558) no Hoare annotation was computed. [2021-12-17 15:08:53,988 INFO L854 garLoopResultBuilder]: At program point L932(lines 928 934) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:53,988 INFO L854 garLoopResultBuilder]: At program point L544(line 544) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (= ~waterLevel~0 1) .cse1) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L854 garLoopResultBuilder]: At program point L796(lines 791 798) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (= ~waterLevel~0 1) .cse1 .cse2) (and .cse0 (<= 2 ~waterLevel~0) .cse1 .cse2))) [2021-12-17 15:08:53,990 INFO L854 garLoopResultBuilder]: At program point L788(lines 776 790) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (= ~waterLevel~0 1) .cse1) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point L780(lines 780 786) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point L780-1(lines 780 786) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point L140-2(lines 140 147) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L854 garLoopResultBuilder]: At program point L582(lines 531 583) the Hoare annotation is: false [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-17 15:08:53,990 INFO L861 garLoopResultBuilder]: At program point L124(lines 117 126) the Hoare annotation is: true [2021-12-17 15:08:53,990 INFO L858 garLoopResultBuilder]: For program point L570(lines 570 576) no Hoare annotation was computed. [2021-12-17 15:08:53,991 INFO L854 garLoopResultBuilder]: At program point L570-2(lines 562 577) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (= ~waterLevel~0 1) .cse1) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2021-12-17 15:08:53,991 INFO L858 garLoopResultBuilder]: For program point L533(lines 532 581) no Hoare annotation was computed. [2021-12-17 15:08:53,991 INFO L861 garLoopResultBuilder]: At program point L149(lines 130 152) the Hoare annotation is: true [2021-12-17 15:08:53,991 INFO L858 garLoopResultBuilder]: For program point L562(lines 562 577) no Hoare annotation was computed. [2021-12-17 15:08:53,991 INFO L854 garLoopResultBuilder]: At program point L554(line 554) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (= ~waterLevel~0 1) .cse1) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2021-12-17 15:08:53,991 INFO L854 garLoopResultBuilder]: At program point L579(lines 532 581) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (= ~waterLevel~0 1) .cse1) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2021-12-17 15:08:53,991 INFO L858 garLoopResultBuilder]: For program point L542(lines 542 548) no Hoare annotation was computed. [2021-12-17 15:08:53,991 INFO L858 garLoopResultBuilder]: For program point L542-1(lines 542 548) no Hoare annotation was computed. [2021-12-17 15:08:53,991 INFO L858 garLoopResultBuilder]: For program point L534(lines 534 538) no Hoare annotation was computed. [2021-12-17 15:08:53,991 INFO L854 garLoopResultBuilder]: At program point L947(lines 942 950) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:53,991 INFO L854 garLoopResultBuilder]: At program point L113(lines 109 115) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:53,991 INFO L854 garLoopResultBuilder]: At program point L782(line 782) the Hoare annotation is: false [2021-12-17 15:08:53,991 INFO L854 garLoopResultBuilder]: At program point L939(lines 935 941) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:08:53,992 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 815 826) no Hoare annotation was computed. [2021-12-17 15:08:53,992 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 815 826) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-17 15:08:53,992 INFO L858 garLoopResultBuilder]: For program point L819-1(lines 815 826) no Hoare annotation was computed. [2021-12-17 15:08:53,992 INFO L858 garLoopResultBuilder]: For program point L638(lines 638 655) no Hoare annotation was computed. [2021-12-17 15:08:53,992 INFO L858 garLoopResultBuilder]: For program point L766(lines 766 770) no Hoare annotation was computed. [2021-12-17 15:08:53,992 INFO L858 garLoopResultBuilder]: For program point L766-2(lines 766 770) no Hoare annotation was computed. [2021-12-17 15:08:53,992 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__lowWaterSensorENTRY(lines 634 658) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 (not (<= 2 ~waterLevel~0)) .cse1) (or (not (= ~waterLevel~0 1)) .cse0 .cse1))) [2021-12-17 15:08:53,993 INFO L854 garLoopResultBuilder]: At program point L653(line 653) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 (not (<= 2 ~waterLevel~0)) .cse1) (or (not (= ~waterLevel~0 1)) .cse0 .cse1))) [2021-12-17 15:08:53,993 INFO L858 garLoopResultBuilder]: For program point L653-1(lines 634 658) no Hoare annotation was computed. [2021-12-17 15:08:53,993 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 634 658) no Hoare annotation was computed. [2021-12-17 15:08:53,993 INFO L854 garLoopResultBuilder]: At program point L885(lines 880 888) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0))) [2021-12-17 15:08:53,993 INFO L854 garLoopResultBuilder]: At program point L648(line 648) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0))) [2021-12-17 15:08:53,993 INFO L854 garLoopResultBuilder]: At program point L772(lines 757 775) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0))) [2021-12-17 15:08:53,993 INFO L854 garLoopResultBuilder]: At program point L644(line 644) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0))) [2021-12-17 15:08:53,993 INFO L858 garLoopResultBuilder]: For program point L642(lines 642 650) no Hoare annotation was computed. [2021-12-17 15:08:53,996 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:08:53,997 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-17 15:08:54,021 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 17.12 03:08:54 BoogieIcfgContainer [2021-12-17 15:08:54,021 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-17 15:08:54,021 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-17 15:08:54,021 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-17 15:08:54,021 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-17 15:08:54,022 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:08:51" (3/4) ... [2021-12-17 15:08:54,024 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-17 15:08:54,028 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-17 15:08:54,028 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-17 15:08:54,028 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-17 15:08:54,028 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-17 15:08:54,028 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-17 15:08:54,028 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-17 15:08:54,028 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2021-12-17 15:08:54,037 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 53 nodes and edges [2021-12-17 15:08:54,037 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-17 15:08:54,037 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-17 15:08:54,038 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-17 15:08:54,038 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-17 15:08:54,038 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:08:54,038 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:08:54,055 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:54,055 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(2 <= \old(waterLevel)) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) && ((!(\old(waterLevel) == 1) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) [2021-12-17 15:08:54,056 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || ((!(\result == 0) && waterLevel == \old(waterLevel)) && pumpRunning == 0)) && ((((\result == 1 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(\old(pumpRunning) == 0)) [2021-12-17 15:08:54,056 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:54,056 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((\result == 1 && waterLevel == \old(waterLevel)) && tmp == 1) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(\old(pumpRunning) == 0)) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (((!(\result == 0) && waterLevel == \old(waterLevel)) && !(tmp == 0)) && pumpRunning == 0)) [2021-12-17 15:08:54,057 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:54,057 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(1 <= waterLevel) || !(\old(pumpRunning) == 0) [2021-12-17 15:08:54,057 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:54,057 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(1 <= waterLevel) || !(\old(pumpRunning) == 0) [2021-12-17 15:08:54,057 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-17 15:08:54,082 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-17 15:08:54,082 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-17 15:08:54,083 INFO L158 Benchmark]: Toolchain (without parser) took 3635.85ms. Allocated memory was 79.7MB in the beginning and 130.0MB in the end (delta: 50.3MB). Free memory was 53.7MB in the beginning and 41.0MB in the end (delta: 12.7MB). Peak memory consumption was 62.3MB. Max. memory is 16.1GB. [2021-12-17 15:08:54,083 INFO L158 Benchmark]: CDTParser took 0.19ms. Allocated memory is still 79.7MB. Free memory is still 55.7MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-17 15:08:54,083 INFO L158 Benchmark]: CACSL2BoogieTranslator took 530.98ms. Allocated memory was 79.7MB in the beginning and 100.7MB in the end (delta: 21.0MB). Free memory was 53.5MB in the beginning and 68.9MB in the end (delta: -15.4MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-12-17 15:08:54,083 INFO L158 Benchmark]: Boogie Procedure Inliner took 32.95ms. Allocated memory is still 100.7MB. Free memory was 68.9MB in the beginning and 66.4MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:08:54,084 INFO L158 Benchmark]: Boogie Preprocessor took 18.44ms. Allocated memory is still 100.7MB. Free memory was 66.4MB in the beginning and 65.0MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:08:54,084 INFO L158 Benchmark]: RCFGBuilder took 303.78ms. Allocated memory is still 100.7MB. Free memory was 65.0MB in the beginning and 75.6MB in the end (delta: -10.7MB). Peak memory consumption was 19.3MB. Max. memory is 16.1GB. [2021-12-17 15:08:54,084 INFO L158 Benchmark]: TraceAbstraction took 2684.43ms. Allocated memory was 100.7MB in the beginning and 130.0MB in the end (delta: 29.4MB). Free memory was 75.1MB in the beginning and 47.3MB in the end (delta: 27.9MB). Peak memory consumption was 56.7MB. Max. memory is 16.1GB. [2021-12-17 15:08:54,084 INFO L158 Benchmark]: Witness Printer took 61.18ms. Allocated memory is still 130.0MB. Free memory was 47.3MB in the beginning and 41.0MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-17 15:08:54,086 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19ms. Allocated memory is still 79.7MB. Free memory is still 55.7MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 530.98ms. Allocated memory was 79.7MB in the beginning and 100.7MB in the end (delta: 21.0MB). Free memory was 53.5MB in the beginning and 68.9MB in the end (delta: -15.4MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 32.95ms. Allocated memory is still 100.7MB. Free memory was 68.9MB in the beginning and 66.4MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 18.44ms. Allocated memory is still 100.7MB. Free memory was 66.4MB in the beginning and 65.0MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 303.78ms. Allocated memory is still 100.7MB. Free memory was 65.0MB in the beginning and 75.6MB in the end (delta: -10.7MB). Peak memory consumption was 19.3MB. Max. memory is 16.1GB. * TraceAbstraction took 2684.43ms. Allocated memory was 100.7MB in the beginning and 130.0MB in the end (delta: 29.4MB). Free memory was 75.1MB in the beginning and 47.3MB in the end (delta: 27.9MB). Peak memory consumption was 56.7MB. Max. memory is 16.1GB. * Witness Printer took 61.18ms. Allocated memory is still 130.0MB. Free memory was 47.3MB in the beginning and 41.0MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 956]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 87 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 2.6s, OverallIterations: 7, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.7s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 492 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 484 mSDsluCounter, 1567 SdHoareTripleChecker+Invalid, 0.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 983 mSDsCounter, 101 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 416 IncrementalHoareTripleChecker+Invalid, 517 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 101 mSolverCounterUnsat, 584 mSDtfsCounter, 416 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 158 GetRequests, 118 SyntacticMatches, 0 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 67 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=237occurred in iteration=6, InterpolantAutomatonStates: 37, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 7 MinimizatonAttempts, 15 StatesRemovedByMinimization, 3 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 42 LocationsWithAnnotation, 545 PreInvPairs, 585 NumberOfFragments, 545 HoareAnnotationTreeSize, 545 FomulaSimplifications, 230 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 42 FomulaSimplificationsInter, 1704 FormulaSimplificationTreeSizeReductionInter, 0.6s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 0.6s InterpolantComputationTime, 262 NumberOfCodeBlocks, 262 NumberOfCodeBlocksAsserted, 8 NumberOfCheckSat, 307 ConstructedInterpolants, 0 QuantifiedInterpolants, 789 SizeOfPredicates, 0 NumberOfNonLiveVariables, 370 ConjunctsInSsa, 9 ConjunctsInUnsatCore, 9 InterpolantComputations, 6 PerfectInterpolantSequences, 51/57 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 757]: Loop Invariant Derived loop invariant: !(1 <= waterLevel) || !(\old(pumpRunning) == 0) - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: !(1 <= waterLevel) || !(\old(pumpRunning) == 0) - InvariantResult [Line: 791]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && waterLevel == 1) && systemActive == 1) && pumpRunning == 0) || (((splverifierCounter == 0 && 2 <= waterLevel) && systemActive == 1) && pumpRunning == 0) - InvariantResult [Line: 52]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 839]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 952]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 803]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 522]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 532]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && waterLevel == 1) && pumpRunning == 0) || ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 531]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 891]: Loop Invariant Derived loop invariant: (((((\result == 1 && waterLevel == \old(waterLevel)) && tmp == 1) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(\old(pumpRunning) == 0)) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (((!(\result == 0) && waterLevel == \old(waterLevel)) && !(tmp == 0)) && pumpRunning == 0)) - InvariantResult [Line: 660]: Loop Invariant Derived loop invariant: ((!(2 <= \old(waterLevel)) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) && ((!(\old(waterLevel) == 1) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 117]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 928]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 701]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 776]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && waterLevel == 1) && pumpRunning == 0) || ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) - InvariantResult [Line: 871]: Loop Invariant Derived loop invariant: ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || ((!(\result == 0) && waterLevel == \old(waterLevel)) && pumpRunning == 0)) && ((((\result == 1 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(\old(pumpRunning) == 0)) - InvariantResult [Line: 712]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 935]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 942]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 RESULT: Ultimate proved your program to be correct! [2021-12-17 15:08:54,134 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE