./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version ff03de63 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 5ed8e4dea18b15d78522f05bcbacefb8bf743c0552ef5a7415602905a04fdc4c --- Real Ultimate output --- This is Ultimate 0.2.2-dev-ff03de6 [2021-12-21 13:14:17,336 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-21 13:14:17,338 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-21 13:14:17,401 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-21 13:14:17,402 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-21 13:14:17,416 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-21 13:14:17,417 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-21 13:14:17,421 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-21 13:14:17,423 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-21 13:14:17,424 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-21 13:14:17,424 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-21 13:14:17,425 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-21 13:14:17,426 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-21 13:14:17,428 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-21 13:14:17,430 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-21 13:14:17,431 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-21 13:14:17,432 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-21 13:14:17,436 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-21 13:14:17,437 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-21 13:14:17,441 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-21 13:14:17,446 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-21 13:14:17,447 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-21 13:14:17,447 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-21 13:14:17,448 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-21 13:14:17,449 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-21 13:14:17,450 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-21 13:14:17,450 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-21 13:14:17,450 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-21 13:14:17,451 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-21 13:14:17,451 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-21 13:14:17,451 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-21 13:14:17,452 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-21 13:14:17,453 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-21 13:14:17,453 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-21 13:14:17,454 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-21 13:14:17,454 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-21 13:14:17,454 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-21 13:14:17,455 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-21 13:14:17,455 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-21 13:14:17,455 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-21 13:14:17,456 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-21 13:14:17,457 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-21 13:14:17,471 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-21 13:14:17,471 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-21 13:14:17,471 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-21 13:14:17,472 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-21 13:14:17,472 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-21 13:14:17,472 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-21 13:14:17,473 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-21 13:14:17,473 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-21 13:14:17,473 INFO L138 SettingsManager]: * Use SBE=true [2021-12-21 13:14:17,473 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-21 13:14:17,473 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-21 13:14:17,474 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-21 13:14:17,474 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-21 13:14:17,474 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-21 13:14:17,474 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-21 13:14:17,474 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-21 13:14:17,475 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-21 13:14:17,475 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-21 13:14:17,475 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-21 13:14:17,475 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-21 13:14:17,475 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-21 13:14:17,476 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-21 13:14:17,476 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-21 13:14:17,476 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-21 13:14:17,476 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-21 13:14:17,476 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-21 13:14:17,476 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-21 13:14:17,477 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-21 13:14:17,477 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-21 13:14:17,477 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-21 13:14:17,477 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-21 13:14:17,477 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-21 13:14:17,478 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-21 13:14:17,478 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-21 13:14:17,478 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 5ed8e4dea18b15d78522f05bcbacefb8bf743c0552ef5a7415602905a04fdc4c [2021-12-21 13:14:17,654 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-21 13:14:17,683 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-21 13:14:17,685 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-21 13:14:17,686 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-21 13:14:17,687 INFO L275 PluginConnector]: CDTParser initialized [2021-12-21 13:14:17,688 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c [2021-12-21 13:14:17,738 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/0028bf4c7/f942aac2c8354d9d8d52e5606f540a6b/FLAG64d1972f0 [2021-12-21 13:14:18,147 INFO L306 CDTParser]: Found 1 translation units. [2021-12-21 13:14:18,148 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c [2021-12-21 13:14:18,154 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/0028bf4c7/f942aac2c8354d9d8d52e5606f540a6b/FLAG64d1972f0 [2021-12-21 13:14:18,162 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/0028bf4c7/f942aac2c8354d9d8d52e5606f540a6b [2021-12-21 13:14:18,164 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-21 13:14:18,165 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-21 13:14:18,166 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-21 13:14:18,166 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-21 13:14:18,169 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-21 13:14:18,169 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,170 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@7be4e1b2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18, skipping insertion in model container [2021-12-21 13:14:18,170 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,174 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-21 13:14:18,197 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-21 13:14:18,330 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c[1605,1618] [2021-12-21 13:14:18,397 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-21 13:14:18,403 INFO L203 MainTranslator]: Completed pre-run [2021-12-21 13:14:18,411 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c[1605,1618] [2021-12-21 13:14:18,445 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-21 13:14:18,456 INFO L208 MainTranslator]: Completed translation [2021-12-21 13:14:18,456 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18 WrapperNode [2021-12-21 13:14:18,457 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-21 13:14:18,457 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-21 13:14:18,458 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-21 13:14:18,458 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-21 13:14:18,464 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,486 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,524 INFO L137 Inliner]: procedures = 57, calls = 157, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 271 [2021-12-21 13:14:18,525 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-21 13:14:18,526 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-21 13:14:18,526 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-21 13:14:18,526 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-21 13:14:18,532 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,532 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,542 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,546 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,550 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,566 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,567 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,569 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-21 13:14:18,569 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-21 13:14:18,570 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-21 13:14:18,570 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-21 13:14:18,570 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (1/1) ... [2021-12-21 13:14:18,580 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-21 13:14:18,590 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-21 13:14:18,683 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-21 13:14:18,713 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-21 13:14:18,729 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-21 13:14:18,730 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-21 13:14:18,730 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-21 13:14:18,730 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-21 13:14:18,730 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-21 13:14:18,730 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-21 13:14:18,730 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-21 13:14:18,730 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2021-12-21 13:14:18,730 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2021-12-21 13:14:18,731 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-21 13:14:18,731 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-21 13:14:18,731 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-21 13:14:18,731 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-21 13:14:18,731 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-21 13:14:18,731 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-21 13:14:18,732 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-21 13:14:18,732 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-21 13:14:18,732 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-21 13:14:18,784 INFO L234 CfgBuilder]: Building ICFG [2021-12-21 13:14:18,786 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-21 13:14:19,044 INFO L275 CfgBuilder]: Performing block encoding [2021-12-21 13:14:19,050 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-21 13:14:19,051 INFO L299 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-21 13:14:19,052 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 01:14:19 BoogieIcfgContainer [2021-12-21 13:14:19,053 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-21 13:14:19,054 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-21 13:14:19,054 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-21 13:14:19,068 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-21 13:14:19,068 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.12 01:14:18" (1/3) ... [2021-12-21 13:14:19,069 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@74097d43 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 01:14:19, skipping insertion in model container [2021-12-21 13:14:19,069 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:14:18" (2/3) ... [2021-12-21 13:14:19,069 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@74097d43 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 01:14:19, skipping insertion in model container [2021-12-21 13:14:19,069 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 01:14:19" (3/3) ... [2021-12-21 13:14:19,070 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product58.cil.c [2021-12-21 13:14:19,074 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-21 13:14:19,074 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-21 13:14:19,109 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-21 13:14:19,114 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-21 13:14:19,114 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-21 13:14:19,127 INFO L276 IsEmpty]: Start isEmpty. Operand has 92 states, 71 states have (on average 1.380281690140845) internal successors, (98), 79 states have internal predecessors, (98), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-21 13:14:19,139 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2021-12-21 13:14:19,139 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:19,140 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:19,141 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:19,145 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:19,146 INFO L85 PathProgramCache]: Analyzing trace with hash 528843452, now seen corresponding path program 1 times [2021-12-21 13:14:19,153 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:19,153 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1338600033] [2021-12-21 13:14:19,153 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:19,154 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:19,237 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,282 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2021-12-21 13:14:19,317 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,321 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:14:19,322 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:19,322 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1338600033] [2021-12-21 13:14:19,322 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1338600033] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:19,322 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:19,323 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-21 13:14:19,324 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1105900907] [2021-12-21 13:14:19,324 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:19,327 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-21 13:14:19,328 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:19,345 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-21 13:14:19,346 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-21 13:14:19,348 INFO L87 Difference]: Start difference. First operand has 92 states, 71 states have (on average 1.380281690140845) internal successors, (98), 79 states have internal predecessors, (98), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:14:19,383 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:19,383 INFO L93 Difference]: Finished difference Result 176 states and 239 transitions. [2021-12-21 13:14:19,384 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-21 13:14:19,385 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23 [2021-12-21 13:14:19,385 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:19,393 INFO L225 Difference]: With dead ends: 176 [2021-12-21 13:14:19,393 INFO L226 Difference]: Without dead ends: 83 [2021-12-21 13:14:19,396 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-21 13:14:19,400 INFO L933 BasicCegarLoop]: 116 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 116 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:19,401 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 116 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:14:19,412 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 83 states. [2021-12-21 13:14:19,431 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 83 to 83. [2021-12-21 13:14:19,433 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 83 states, 64 states have (on average 1.3125) internal successors, (84), 71 states have internal predecessors, (84), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2021-12-21 13:14:19,439 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 83 states to 83 states and 107 transitions. [2021-12-21 13:14:19,440 INFO L78 Accepts]: Start accepts. Automaton has 83 states and 107 transitions. Word has length 23 [2021-12-21 13:14:19,441 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:19,441 INFO L470 AbstractCegarLoop]: Abstraction has 83 states and 107 transitions. [2021-12-21 13:14:19,441 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:14:19,441 INFO L276 IsEmpty]: Start isEmpty. Operand 83 states and 107 transitions. [2021-12-21 13:14:19,443 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-21 13:14:19,443 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:19,443 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:19,443 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-21 13:14:19,443 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:19,444 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:19,444 INFO L85 PathProgramCache]: Analyzing trace with hash 1324255922, now seen corresponding path program 1 times [2021-12-21 13:14:19,444 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:19,444 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1698303038] [2021-12-21 13:14:19,444 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:19,445 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:19,463 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,492 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2021-12-21 13:14:19,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,497 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:14:19,497 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:19,497 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1698303038] [2021-12-21 13:14:19,498 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1698303038] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:19,498 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:19,498 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-21 13:14:19,498 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [576730445] [2021-12-21 13:14:19,498 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:19,499 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-21 13:14:19,500 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:19,500 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-21 13:14:19,500 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:14:19,500 INFO L87 Difference]: Start difference. First operand 83 states and 107 transitions. Second operand has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:14:19,525 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:19,525 INFO L93 Difference]: Finished difference Result 131 states and 169 transitions. [2021-12-21 13:14:19,525 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-21 13:14:19,526 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2021-12-21 13:14:19,526 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:19,527 INFO L225 Difference]: With dead ends: 131 [2021-12-21 13:14:19,527 INFO L226 Difference]: Without dead ends: 74 [2021-12-21 13:14:19,528 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:14:19,529 INFO L933 BasicCegarLoop]: 94 mSDtfsCounter, 13 mSDsluCounter, 77 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 171 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:19,530 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [16 Valid, 171 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:14:19,531 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 74 states. [2021-12-21 13:14:19,536 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 74 to 74. [2021-12-21 13:14:19,538 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 58 states have (on average 1.3275862068965518) internal successors, (77), 65 states have internal predecessors, (77), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-21 13:14:19,542 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 95 transitions. [2021-12-21 13:14:19,543 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 95 transitions. Word has length 24 [2021-12-21 13:14:19,543 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:19,544 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 95 transitions. [2021-12-21 13:14:19,544 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:14:19,544 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 95 transitions. [2021-12-21 13:14:19,546 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2021-12-21 13:14:19,546 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:19,547 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:19,547 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-21 13:14:19,547 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:19,548 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:19,549 INFO L85 PathProgramCache]: Analyzing trace with hash -398467318, now seen corresponding path program 1 times [2021-12-21 13:14:19,549 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:19,549 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [510286007] [2021-12-21 13:14:19,549 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:19,550 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:19,584 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,618 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-21 13:14:19,620 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,622 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:14:19,622 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:19,622 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [510286007] [2021-12-21 13:14:19,623 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [510286007] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:19,623 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:19,623 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-21 13:14:19,623 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [39701428] [2021-12-21 13:14:19,623 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:19,624 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-21 13:14:19,624 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:19,624 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-21 13:14:19,624 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:14:19,625 INFO L87 Difference]: Start difference. First operand 74 states and 95 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:14:19,634 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:19,634 INFO L93 Difference]: Finished difference Result 141 states and 184 transitions. [2021-12-21 13:14:19,634 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-21 13:14:19,635 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 29 [2021-12-21 13:14:19,635 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:19,636 INFO L225 Difference]: With dead ends: 141 [2021-12-21 13:14:19,636 INFO L226 Difference]: Without dead ends: 74 [2021-12-21 13:14:19,636 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:14:19,637 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 75 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 75 SdHoareTripleChecker+Valid, 93 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:19,638 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [75 Valid, 93 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:14:19,638 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 74 states. [2021-12-21 13:14:19,643 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 74 to 74. [2021-12-21 13:14:19,643 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 58 states have (on average 1.3103448275862069) internal successors, (76), 65 states have internal predecessors, (76), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-21 13:14:19,644 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 94 transitions. [2021-12-21 13:14:19,644 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 94 transitions. Word has length 29 [2021-12-21 13:14:19,644 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:19,644 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 94 transitions. [2021-12-21 13:14:19,645 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:14:19,645 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 94 transitions. [2021-12-21 13:14:19,646 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2021-12-21 13:14:19,646 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:19,646 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:19,646 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-21 13:14:19,646 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:19,647 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:19,647 INFO L85 PathProgramCache]: Analyzing trace with hash 1454809844, now seen corresponding path program 1 times [2021-12-21 13:14:19,647 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:19,648 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [83268960] [2021-12-21 13:14:19,648 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:19,648 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:19,665 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,692 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-21 13:14:19,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,704 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-21 13:14:19,705 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,708 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-21 13:14:19,709 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,711 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:14:19,711 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:19,712 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [83268960] [2021-12-21 13:14:19,712 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [83268960] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:19,712 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:19,712 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-21 13:14:19,712 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1995093952] [2021-12-21 13:14:19,712 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:19,713 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-21 13:14:19,713 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:19,713 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-21 13:14:19,713 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-21 13:14:19,714 INFO L87 Difference]: Start difference. First operand 74 states and 94 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-21 13:14:19,867 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:19,867 INFO L93 Difference]: Finished difference Result 214 states and 271 transitions. [2021-12-21 13:14:19,868 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-21 13:14:19,868 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 39 [2021-12-21 13:14:19,868 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:19,869 INFO L225 Difference]: With dead ends: 214 [2021-12-21 13:14:19,869 INFO L226 Difference]: Without dead ends: 147 [2021-12-21 13:14:19,885 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2021-12-21 13:14:19,886 INFO L933 BasicCegarLoop]: 122 mSDtfsCounter, 167 mSDsluCounter, 165 mSDsCounter, 0 mSdLazyCounter, 91 mSolverCounterSat, 46 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 169 SdHoareTripleChecker+Valid, 287 SdHoareTripleChecker+Invalid, 137 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 46 IncrementalHoareTripleChecker+Valid, 91 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:19,886 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [169 Valid, 287 Invalid, 137 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [46 Valid, 91 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:14:19,887 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 147 states. [2021-12-21 13:14:19,897 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 147 to 141. [2021-12-21 13:14:19,902 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 141 states, 109 states have (on average 1.2568807339449541) internal successors, (137), 117 states have internal predecessors, (137), 15 states have call successors, (15), 13 states have call predecessors, (15), 16 states have return successors, (20), 16 states have call predecessors, (20), 15 states have call successors, (20) [2021-12-21 13:14:19,903 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 141 states to 141 states and 172 transitions. [2021-12-21 13:14:19,903 INFO L78 Accepts]: Start accepts. Automaton has 141 states and 172 transitions. Word has length 39 [2021-12-21 13:14:19,903 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:19,903 INFO L470 AbstractCegarLoop]: Abstraction has 141 states and 172 transitions. [2021-12-21 13:14:19,903 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-21 13:14:19,904 INFO L276 IsEmpty]: Start isEmpty. Operand 141 states and 172 transitions. [2021-12-21 13:14:19,908 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2021-12-21 13:14:19,909 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:19,909 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:19,909 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-21 13:14:19,909 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:19,910 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:19,910 INFO L85 PathProgramCache]: Analyzing trace with hash 2113308012, now seen corresponding path program 1 times [2021-12-21 13:14:19,910 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:19,910 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [267177024] [2021-12-21 13:14:19,910 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:19,910 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:19,936 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:19,997 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-21 13:14:20,000 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,004 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:20,005 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,007 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2021-12-21 13:14:20,008 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,015 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:14:20,015 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:20,016 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [267177024] [2021-12-21 13:14:20,016 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [267177024] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:20,017 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:20,017 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-21 13:14:20,017 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [924329407] [2021-12-21 13:14:20,018 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:20,018 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-21 13:14:20,018 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:20,018 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-21 13:14:20,021 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:14:20,021 INFO L87 Difference]: Start difference. First operand 141 states and 172 transitions. Second operand has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:14:20,205 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:20,206 INFO L93 Difference]: Finished difference Result 413 states and 514 transitions. [2021-12-21 13:14:20,206 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-12-21 13:14:20,206 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) Word has length 45 [2021-12-21 13:14:20,206 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:20,208 INFO L225 Difference]: With dead ends: 413 [2021-12-21 13:14:20,208 INFO L226 Difference]: Without dead ends: 279 [2021-12-21 13:14:20,209 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 23 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=53, Invalid=157, Unknown=0, NotChecked=0, Total=210 [2021-12-21 13:14:20,210 INFO L933 BasicCegarLoop]: 92 mSDtfsCounter, 152 mSDsluCounter, 341 mSDsCounter, 0 mSdLazyCounter, 177 mSolverCounterSat, 45 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 159 SdHoareTripleChecker+Valid, 433 SdHoareTripleChecker+Invalid, 222 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 45 IncrementalHoareTripleChecker+Valid, 177 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:20,210 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [159 Valid, 433 Invalid, 222 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [45 Valid, 177 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:14:20,211 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 279 states. [2021-12-21 13:14:20,249 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 279 to 265. [2021-12-21 13:14:20,250 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 265 states, 202 states have (on average 1.2277227722772277) internal successors, (248), 217 states have internal predecessors, (248), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-21 13:14:20,251 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 265 states to 265 states and 320 transitions. [2021-12-21 13:14:20,251 INFO L78 Accepts]: Start accepts. Automaton has 265 states and 320 transitions. Word has length 45 [2021-12-21 13:14:20,251 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:20,252 INFO L470 AbstractCegarLoop]: Abstraction has 265 states and 320 transitions. [2021-12-21 13:14:20,252 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:14:20,252 INFO L276 IsEmpty]: Start isEmpty. Operand 265 states and 320 transitions. [2021-12-21 13:14:20,253 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2021-12-21 13:14:20,253 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:20,253 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:20,253 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-21 13:14:20,253 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:20,254 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:20,254 INFO L85 PathProgramCache]: Analyzing trace with hash 1160176424, now seen corresponding path program 1 times [2021-12-21 13:14:20,254 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:20,254 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1237465224] [2021-12-21 13:14:20,254 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:20,254 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:20,265 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,294 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-21 13:14:20,296 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,302 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-21 13:14:20,304 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,310 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:20,311 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,313 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2021-12-21 13:14:20,314 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,316 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:14:20,316 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:20,316 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1237465224] [2021-12-21 13:14:20,316 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1237465224] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:20,317 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:20,317 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-21 13:14:20,317 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2074301542] [2021-12-21 13:14:20,317 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:20,317 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-21 13:14:20,317 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:20,318 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-21 13:14:20,318 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:14:20,318 INFO L87 Difference]: Start difference. First operand 265 states and 320 transitions. Second operand has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2021-12-21 13:14:20,617 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:20,617 INFO L93 Difference]: Finished difference Result 281 states and 336 transitions. [2021-12-21 13:14:20,617 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2021-12-21 13:14:20,618 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) Word has length 49 [2021-12-21 13:14:20,618 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:20,619 INFO L225 Difference]: With dead ends: 281 [2021-12-21 13:14:20,619 INFO L226 Difference]: Without dead ends: 279 [2021-12-21 13:14:20,620 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 34 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=84, Invalid=188, Unknown=0, NotChecked=0, Total=272 [2021-12-21 13:14:20,621 INFO L933 BasicCegarLoop]: 104 mSDtfsCounter, 172 mSDsluCounter, 143 mSDsCounter, 0 mSdLazyCounter, 324 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 174 SdHoareTripleChecker+Valid, 247 SdHoareTripleChecker+Invalid, 380 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 324 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:20,621 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [174 Valid, 247 Invalid, 380 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 324 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-21 13:14:20,621 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 279 states. [2021-12-21 13:14:20,635 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 279 to 265. [2021-12-21 13:14:20,636 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 265 states, 202 states have (on average 1.2178217821782178) internal successors, (246), 217 states have internal predecessors, (246), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-21 13:14:20,637 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 265 states to 265 states and 318 transitions. [2021-12-21 13:14:20,637 INFO L78 Accepts]: Start accepts. Automaton has 265 states and 318 transitions. Word has length 49 [2021-12-21 13:14:20,637 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:20,638 INFO L470 AbstractCegarLoop]: Abstraction has 265 states and 318 transitions. [2021-12-21 13:14:20,638 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2021-12-21 13:14:20,638 INFO L276 IsEmpty]: Start isEmpty. Operand 265 states and 318 transitions. [2021-12-21 13:14:20,639 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-12-21 13:14:20,639 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:20,639 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:20,639 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-21 13:14:20,639 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:20,640 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:20,640 INFO L85 PathProgramCache]: Analyzing trace with hash -1517229435, now seen corresponding path program 1 times [2021-12-21 13:14:20,640 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:20,640 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1778710001] [2021-12-21 13:14:20,640 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:20,640 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:20,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,662 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-21 13:14:20,663 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,667 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-21 13:14:20,670 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,687 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:20,688 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,690 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2021-12-21 13:14:20,691 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,693 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-21 13:14:20,693 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:20,693 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1778710001] [2021-12-21 13:14:20,693 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1778710001] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:20,693 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:20,693 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-21 13:14:20,693 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1603363603] [2021-12-21 13:14:20,694 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:20,694 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-21 13:14:20,694 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:20,694 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-21 13:14:20,694 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:14:20,695 INFO L87 Difference]: Start difference. First operand 265 states and 318 transitions. Second operand has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-21 13:14:20,887 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:20,887 INFO L93 Difference]: Finished difference Result 541 states and 662 transitions. [2021-12-21 13:14:20,887 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-21 13:14:20,887 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 55 [2021-12-21 13:14:20,888 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:20,889 INFO L225 Difference]: With dead ends: 541 [2021-12-21 13:14:20,889 INFO L226 Difference]: Without dead ends: 283 [2021-12-21 13:14:20,890 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-12-21 13:14:20,890 INFO L933 BasicCegarLoop]: 86 mSDtfsCounter, 122 mSDsluCounter, 144 mSDsCounter, 0 mSdLazyCounter, 265 mSolverCounterSat, 44 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 230 SdHoareTripleChecker+Invalid, 309 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 44 IncrementalHoareTripleChecker+Valid, 265 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:20,891 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [123 Valid, 230 Invalid, 309 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [44 Valid, 265 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:14:20,891 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 283 states. [2021-12-21 13:14:20,901 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 283 to 271. [2021-12-21 13:14:20,902 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 271 states, 208 states have (on average 1.2115384615384615) internal successors, (252), 223 states have internal predecessors, (252), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-21 13:14:20,903 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 271 states to 271 states and 324 transitions. [2021-12-21 13:14:20,903 INFO L78 Accepts]: Start accepts. Automaton has 271 states and 324 transitions. Word has length 55 [2021-12-21 13:14:20,903 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:20,903 INFO L470 AbstractCegarLoop]: Abstraction has 271 states and 324 transitions. [2021-12-21 13:14:20,903 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-21 13:14:20,904 INFO L276 IsEmpty]: Start isEmpty. Operand 271 states and 324 transitions. [2021-12-21 13:14:20,904 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-12-21 13:14:20,904 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:20,905 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:20,905 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-21 13:14:20,905 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:20,905 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:20,905 INFO L85 PathProgramCache]: Analyzing trace with hash -1455189821, now seen corresponding path program 1 times [2021-12-21 13:14:20,905 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:20,906 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [270299726] [2021-12-21 13:14:20,906 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:20,906 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:20,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,931 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-21 13:14:20,932 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,936 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-21 13:14:20,938 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,956 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:20,958 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,959 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2021-12-21 13:14:20,960 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:20,961 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-21 13:14:20,961 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:20,961 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [270299726] [2021-12-21 13:14:20,962 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [270299726] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:20,962 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:20,962 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-21 13:14:20,962 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2124266403] [2021-12-21 13:14:20,962 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:20,962 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-21 13:14:20,963 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:20,963 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-21 13:14:20,963 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:14:20,963 INFO L87 Difference]: Start difference. First operand 271 states and 324 transitions. Second operand has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-21 13:14:21,141 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:21,141 INFO L93 Difference]: Finished difference Result 559 states and 682 transitions. [2021-12-21 13:14:21,141 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-21 13:14:21,144 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) Word has length 55 [2021-12-21 13:14:21,144 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:21,146 INFO L225 Difference]: With dead ends: 559 [2021-12-21 13:14:21,147 INFO L226 Difference]: Without dead ends: 295 [2021-12-21 13:14:21,147 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=56, Invalid=100, Unknown=0, NotChecked=0, Total=156 [2021-12-21 13:14:21,148 INFO L933 BasicCegarLoop]: 86 mSDtfsCounter, 208 mSDsluCounter, 110 mSDsCounter, 0 mSdLazyCounter, 196 mSolverCounterSat, 71 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 210 SdHoareTripleChecker+Valid, 196 SdHoareTripleChecker+Invalid, 267 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 71 IncrementalHoareTripleChecker+Valid, 196 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:21,148 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [210 Valid, 196 Invalid, 267 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [71 Valid, 196 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:14:21,149 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 295 states. [2021-12-21 13:14:21,160 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 295 to 275. [2021-12-21 13:14:21,160 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 275 states, 212 states have (on average 1.2075471698113207) internal successors, (256), 227 states have internal predecessors, (256), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-21 13:14:21,161 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 275 states to 275 states and 328 transitions. [2021-12-21 13:14:21,162 INFO L78 Accepts]: Start accepts. Automaton has 275 states and 328 transitions. Word has length 55 [2021-12-21 13:14:21,162 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:21,162 INFO L470 AbstractCegarLoop]: Abstraction has 275 states and 328 transitions. [2021-12-21 13:14:21,162 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-21 13:14:21,162 INFO L276 IsEmpty]: Start isEmpty. Operand 275 states and 328 transitions. [2021-12-21 13:14:21,163 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-12-21 13:14:21,163 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:21,163 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:21,163 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-21 13:14:21,164 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:21,164 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:21,164 INFO L85 PathProgramCache]: Analyzing trace with hash -1964662911, now seen corresponding path program 1 times [2021-12-21 13:14:21,164 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:21,164 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [831320416] [2021-12-21 13:14:21,164 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:21,164 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:21,175 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,208 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-21 13:14:21,209 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,214 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-21 13:14:21,216 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,225 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:21,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,228 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2021-12-21 13:14:21,229 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,230 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-21 13:14:21,230 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:21,230 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [831320416] [2021-12-21 13:14:21,231 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [831320416] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:21,231 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:14:21,231 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-21 13:14:21,231 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [994409594] [2021-12-21 13:14:21,231 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:21,231 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-21 13:14:21,232 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:21,232 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-21 13:14:21,232 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-21 13:14:21,232 INFO L87 Difference]: Start difference. First operand 275 states and 328 transitions. Second operand has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-21 13:14:21,472 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:21,472 INFO L93 Difference]: Finished difference Result 771 states and 970 transitions. [2021-12-21 13:14:21,472 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2021-12-21 13:14:21,472 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 55 [2021-12-21 13:14:21,473 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:21,474 INFO L225 Difference]: With dead ends: 771 [2021-12-21 13:14:21,475 INFO L226 Difference]: Without dead ends: 503 [2021-12-21 13:14:21,475 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 12 SyntacticMatches, 1 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2021-12-21 13:14:21,476 INFO L933 BasicCegarLoop]: 131 mSDtfsCounter, 278 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 248 mSolverCounterSat, 115 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 280 SdHoareTripleChecker+Valid, 250 SdHoareTripleChecker+Invalid, 363 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 115 IncrementalHoareTripleChecker+Valid, 248 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:21,476 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [280 Valid, 250 Invalid, 363 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [115 Valid, 248 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-21 13:14:21,477 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 503 states. [2021-12-21 13:14:21,517 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 503 to 501. [2021-12-21 13:14:21,518 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 501 states, 382 states have (on average 1.1963350785340314) internal successors, (457), 405 states have internal predecessors, (457), 60 states have call successors, (60), 56 states have call predecessors, (60), 58 states have return successors, (95), 60 states have call predecessors, (95), 60 states have call successors, (95) [2021-12-21 13:14:21,520 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 501 states to 501 states and 612 transitions. [2021-12-21 13:14:21,520 INFO L78 Accepts]: Start accepts. Automaton has 501 states and 612 transitions. Word has length 55 [2021-12-21 13:14:21,521 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:21,522 INFO L470 AbstractCegarLoop]: Abstraction has 501 states and 612 transitions. [2021-12-21 13:14:21,522 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-21 13:14:21,522 INFO L276 IsEmpty]: Start isEmpty. Operand 501 states and 612 transitions. [2021-12-21 13:14:21,523 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2021-12-21 13:14:21,523 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:21,523 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:21,523 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-21 13:14:21,523 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:21,524 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:21,524 INFO L85 PathProgramCache]: Analyzing trace with hash -1847980005, now seen corresponding path program 1 times [2021-12-21 13:14:21,524 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:21,524 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1201343286] [2021-12-21 13:14:21,524 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:21,524 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:21,554 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,596 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-21 13:14:21,597 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,603 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2021-12-21 13:14:21,604 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,615 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2021-12-21 13:14:21,618 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,648 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:21,649 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,658 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2021-12-21 13:14:21,659 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,661 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2021-12-21 13:14:21,661 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:21,661 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1201343286] [2021-12-21 13:14:21,661 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1201343286] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-21 13:14:21,661 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1582424368] [2021-12-21 13:14:21,661 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:21,661 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-21 13:14:21,661 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-21 13:14:21,663 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-21 13:14:21,698 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-21 13:14:21,734 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:21,737 INFO L263 TraceCheckSpWp]: Trace formula consists of 381 conjuncts, 8 conjunts are in the unsatisfiable core [2021-12-21 13:14:21,741 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-21 13:14:21,922 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:14:21,922 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-21 13:14:21,922 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1582424368] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:21,923 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-21 13:14:21,923 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [14] total 19 [2021-12-21 13:14:21,923 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1834550210] [2021-12-21 13:14:21,923 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:21,923 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-21 13:14:21,923 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:21,924 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-21 13:14:21,924 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=46, Invalid=296, Unknown=0, NotChecked=0, Total=342 [2021-12-21 13:14:21,924 INFO L87 Difference]: Start difference. First operand 501 states and 612 transitions. Second operand has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 3 states have call successors, (6), 3 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2021-12-21 13:14:22,009 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:22,009 INFO L93 Difference]: Finished difference Result 974 states and 1195 transitions. [2021-12-21 13:14:22,010 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-21 13:14:22,010 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 3 states have call successors, (6), 3 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) Word has length 59 [2021-12-21 13:14:22,010 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:22,012 INFO L225 Difference]: With dead ends: 974 [2021-12-21 13:14:22,012 INFO L226 Difference]: Without dead ends: 480 [2021-12-21 13:14:22,013 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 77 GetRequests, 59 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=52, Invalid=328, Unknown=0, NotChecked=0, Total=380 [2021-12-21 13:14:22,014 INFO L933 BasicCegarLoop]: 168 mSDtfsCounter, 65 mSDsluCounter, 488 mSDsCounter, 0 mSdLazyCounter, 111 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 67 SdHoareTripleChecker+Valid, 656 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 111 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:22,014 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [67 Valid, 656 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 111 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:14:22,015 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 480 states. [2021-12-21 13:14:22,029 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 480 to 478. [2021-12-21 13:14:22,029 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 478 states, 364 states have (on average 1.1813186813186813) internal successors, (430), 386 states have internal predecessors, (430), 58 states have call successors, (58), 54 states have call predecessors, (58), 55 states have return successors, (82), 57 states have call predecessors, (82), 58 states have call successors, (82) [2021-12-21 13:14:22,031 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 478 states to 478 states and 570 transitions. [2021-12-21 13:14:22,032 INFO L78 Accepts]: Start accepts. Automaton has 478 states and 570 transitions. Word has length 59 [2021-12-21 13:14:22,032 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:22,032 INFO L470 AbstractCegarLoop]: Abstraction has 478 states and 570 transitions. [2021-12-21 13:14:22,032 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 3 states have call successors, (6), 3 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2021-12-21 13:14:22,033 INFO L276 IsEmpty]: Start isEmpty. Operand 478 states and 570 transitions. [2021-12-21 13:14:22,034 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 99 [2021-12-21 13:14:22,034 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:22,034 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:22,054 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-21 13:14:22,249 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2021-12-21 13:14:22,250 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:22,250 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:22,250 INFO L85 PathProgramCache]: Analyzing trace with hash 1135855989, now seen corresponding path program 1 times [2021-12-21 13:14:22,250 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:22,250 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1736021576] [2021-12-21 13:14:22,250 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:22,250 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:22,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,331 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-21 13:14:22,332 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,339 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-21 13:14:22,342 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,352 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-21 13:14:22,354 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,359 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:22,361 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,362 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2021-12-21 13:14:22,363 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,369 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2021-12-21 13:14:22,370 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,372 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2021-12-21 13:14:22,373 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,374 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-21 13:14:22,375 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,376 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 89 [2021-12-21 13:14:22,377 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,378 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 17 proven. 3 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-12-21 13:14:22,378 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:22,379 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1736021576] [2021-12-21 13:14:22,379 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1736021576] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-21 13:14:22,379 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1718864005] [2021-12-21 13:14:22,379 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:22,379 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-21 13:14:22,379 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-21 13:14:22,380 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-21 13:14:22,381 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-12-21 13:14:22,453 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,455 INFO L263 TraceCheckSpWp]: Trace formula consists of 478 conjuncts, 11 conjunts are in the unsatisfiable core [2021-12-21 13:14:22,457 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-21 13:14:22,598 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-21 13:14:22,599 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-21 13:14:22,599 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1718864005] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:22,599 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-21 13:14:22,599 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10] total 10 [2021-12-21 13:14:22,599 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [625174570] [2021-12-21 13:14:22,599 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:22,600 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-21 13:14:22,600 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:22,600 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-21 13:14:22,600 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=70, Unknown=0, NotChecked=0, Total=90 [2021-12-21 13:14:22,601 INFO L87 Difference]: Start difference. First operand 478 states and 570 transitions. Second operand has 6 states, 6 states have (on average 12.833333333333334) internal successors, (77), 6 states have internal predecessors, (77), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2021-12-21 13:14:22,695 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:22,695 INFO L93 Difference]: Finished difference Result 1183 states and 1469 transitions. [2021-12-21 13:14:22,695 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-21 13:14:22,696 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 12.833333333333334) internal successors, (77), 6 states have internal predecessors, (77), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) Word has length 98 [2021-12-21 13:14:22,696 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:22,699 INFO L225 Difference]: With dead ends: 1183 [2021-12-21 13:14:22,699 INFO L226 Difference]: Without dead ends: 804 [2021-12-21 13:14:22,700 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 126 GetRequests, 111 SyntacticMatches, 5 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=30, Invalid=102, Unknown=0, NotChecked=0, Total=132 [2021-12-21 13:14:22,701 INFO L933 BasicCegarLoop]: 163 mSDtfsCounter, 167 mSDsluCounter, 476 mSDsCounter, 0 mSdLazyCounter, 54 mSolverCounterSat, 28 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 169 SdHoareTripleChecker+Valid, 639 SdHoareTripleChecker+Invalid, 82 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 28 IncrementalHoareTripleChecker+Valid, 54 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:22,701 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [169 Valid, 639 Invalid, 82 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [28 Valid, 54 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:14:22,702 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 804 states. [2021-12-21 13:14:22,727 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 804 to 692. [2021-12-21 13:14:22,728 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 692 states, 526 states have (on average 1.182509505703422) internal successors, (622), 558 states have internal predecessors, (622), 84 states have call successors, (84), 78 states have call predecessors, (84), 81 states have return successors, (125), 79 states have call predecessors, (125), 84 states have call successors, (125) [2021-12-21 13:14:22,731 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 692 states to 692 states and 831 transitions. [2021-12-21 13:14:22,731 INFO L78 Accepts]: Start accepts. Automaton has 692 states and 831 transitions. Word has length 98 [2021-12-21 13:14:22,732 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:22,732 INFO L470 AbstractCegarLoop]: Abstraction has 692 states and 831 transitions. [2021-12-21 13:14:22,732 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 12.833333333333334) internal successors, (77), 6 states have internal predecessors, (77), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2021-12-21 13:14:22,732 INFO L276 IsEmpty]: Start isEmpty. Operand 692 states and 831 transitions. [2021-12-21 13:14:22,733 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 99 [2021-12-21 13:14:22,733 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:14:22,734 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:22,754 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2021-12-21 13:14:22,952 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2021-12-21 13:14:22,952 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:14:22,952 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:14:22,953 INFO L85 PathProgramCache]: Analyzing trace with hash -669582345, now seen corresponding path program 1 times [2021-12-21 13:14:22,953 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:14:22,953 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [628439218] [2021-12-21 13:14:22,953 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:22,953 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:14:22,963 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,990 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-21 13:14:22,991 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:22,999 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-21 13:14:23,001 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,008 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-21 13:14:23,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,012 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-21 13:14:23,012 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,014 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2021-12-21 13:14:23,014 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,020 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2021-12-21 13:14:23,021 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,023 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2021-12-21 13:14:23,023 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,025 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-21 13:14:23,025 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,027 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 89 [2021-12-21 13:14:23,027 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,029 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 5 proven. 11 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2021-12-21 13:14:23,029 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:14:23,029 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [628439218] [2021-12-21 13:14:23,029 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [628439218] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-21 13:14:23,029 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1172124120] [2021-12-21 13:14:23,029 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:14:23,029 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-21 13:14:23,030 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-21 13:14:23,030 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-21 13:14:23,032 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2021-12-21 13:14:23,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:14:23,104 INFO L263 TraceCheckSpWp]: Trace formula consists of 479 conjuncts, 5 conjunts are in the unsatisfiable core [2021-12-21 13:14:23,106 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-21 13:14:23,247 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 15 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2021-12-21 13:14:23,248 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-21 13:14:23,248 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1172124120] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:14:23,248 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-21 13:14:23,248 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [10] total 13 [2021-12-21 13:14:23,248 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1062207275] [2021-12-21 13:14:23,249 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:14:23,249 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-21 13:14:23,249 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:14:23,249 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-21 13:14:23,250 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=128, Unknown=0, NotChecked=0, Total=156 [2021-12-21 13:14:23,250 INFO L87 Difference]: Start difference. First operand 692 states and 831 transitions. Second operand has 5 states, 5 states have (on average 13.8) internal successors, (69), 5 states have internal predecessors, (69), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2021-12-21 13:14:23,283 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:14:23,283 INFO L93 Difference]: Finished difference Result 979 states and 1173 transitions. [2021-12-21 13:14:23,284 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-21 13:14:23,284 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 13.8) internal successors, (69), 5 states have internal predecessors, (69), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) Word has length 98 [2021-12-21 13:14:23,284 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:14:23,285 INFO L225 Difference]: With dead ends: 979 [2021-12-21 13:14:23,285 INFO L226 Difference]: Without dead ends: 0 [2021-12-21 13:14:23,287 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 124 GetRequests, 111 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=43, Invalid=167, Unknown=0, NotChecked=0, Total=210 [2021-12-21 13:14:23,287 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 36 mSDsluCounter, 242 mSDsCounter, 0 mSdLazyCounter, 7 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 36 SdHoareTripleChecker+Valid, 335 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 7 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:14:23,287 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [36 Valid, 335 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 7 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:14:23,288 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-21 13:14:23,288 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-21 13:14:23,288 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-21 13:14:23,288 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-21 13:14:23,288 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 98 [2021-12-21 13:14:23,289 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:14:23,289 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-21 13:14:23,289 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 13.8) internal successors, (69), 5 states have internal predecessors, (69), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2021-12-21 13:14:23,289 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-21 13:14:23,289 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-21 13:14:23,291 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-21 13:14:23,311 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2021-12-21 13:14:23,506 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-21 13:14:23,508 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-21 13:14:26,129 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 304 310) no Hoare annotation was computed. [2021-12-21 13:14:26,129 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 304 310) the Hoare annotation is: true [2021-12-21 13:14:26,129 INFO L858 garLoopResultBuilder]: For program point L97-1(lines 93 104) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L854 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 93 104) the Hoare annotation is: (let ((.cse1 (not (= ~pumpRunning~0 0))) (.cse0 (not (= |old(~methaneLevelCritical~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse2 (not (<= 1 ~waterLevel~0)) .cse3 (not (<= 1 |old(~methaneLevelCritical~0)|))) (or .cse0 .cse2 .cse3 (not (<= 2 ~waterLevel~0))))) [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 93 104) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point L481(lines 481 485) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point L481-2(lines 481 485) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L854 garLoopResultBuilder]: At program point L506(line 506) the Hoare annotation is: (let ((.cse11 (<= 2 ~waterLevel~0)) (.cse6 (= ~pumpRunning~0 0))) (let ((.cse1 (not (= |old(~waterLevel~0)| 1))) (.cse4 (= ~waterLevel~0 1)) (.cse9 (and (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse6 (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0))) (.cse8 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse6 .cse11)) (.cse3 (not (<= 1 ~methaneLevelCritical~0))) (.cse10 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse7 (not (<= 1 |old(~waterLevel~0)|))) (.cse5 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse2 .cse5 .cse4) (or .cse0 .cse6 .cse2 .cse7 .cse3) (or .cse2 .cse8 .cse3 .cse9 .cse10) (or .cse2 .cse11 .cse5 .cse9 .cse10) (or .cse0 .cse2 .cse8 .cse3 .cse10) (or .cse0 .cse2 .cse11 .cse5 .cse10) (or .cse0 .cse6 .cse2 .cse11 .cse7 .cse5)))) [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point L506-1(line 506) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point L73(lines 73 77) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L854 garLoopResultBuilder]: At program point L73-2(lines 69 80) the Hoare annotation is: (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (<= 1 |old(~waterLevel~0)|))) (.cse0 (not (= 1 ~systemActive~0))) (.cse6 (not (<= 1 ~methaneLevelCritical~0))) (.cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))) (.cse3 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse0 .cse5 .cse1) (or .cse4 .cse0 .cse5 .cse6) (or .cse0 .cse6 .cse2 .cse3))) [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 280 303) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point L284-1(lines 283 302) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point L346(lines 346 354) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L858 garLoopResultBuilder]: For program point L342(lines 342 359) no Hoare annotation was computed. [2021-12-21 13:14:26,130 INFO L854 garLoopResultBuilder]: At program point L487(lines 472 490) the Hoare annotation is: (let ((.cse4 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0))) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse6 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (<= 1 |old(~waterLevel~0)|))) (.cse5 (not (<= 1 ~methaneLevelCritical~0)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse1 .cse5 .cse6) (or .cse4 .cse1 .cse3 .cse6) (or .cse0 .cse1 .cse2 .cse5))) [2021-12-21 13:14:26,130 INFO L854 garLoopResultBuilder]: At program point L165(lines 160 168) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (<= 1 |old(~waterLevel~0)|))) (.cse4 (not (<= 1 ~methaneLevelCritical~0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse5 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 ~waterLevel~0))) (.cse6 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse4 .cse5 .cse6) (or .cse0 .cse1 .cse2 .cse4) (or .cse1 .cse3 .cse5 .cse6))) [2021-12-21 13:14:26,131 INFO L858 garLoopResultBuilder]: For program point L512(lines 512 518) no Hoare annotation was computed. [2021-12-21 13:14:26,131 INFO L854 garLoopResultBuilder]: At program point L413(lines 408 416) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse9 (<= 1 ~methaneLevelCritical~0)) (.cse10 (= 1 ~systemActive~0))) (let ((.cse7 (not (<= 1 |old(~waterLevel~0)|))) (.cse5 (= |timeShift_isPumpRunning_#res#1| 0)) (.cse8 (not (= ~methaneLevelCritical~0 0))) (.cse3 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse4 .cse9 (<= 2 ~waterLevel~0) .cse10)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not .cse10)) (.cse2 (not .cse9)) (.cse6 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 .cse2 (= ~waterLevel~0 1)) (or .cse3 .cse1 .cse2 (and (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse4 (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) .cse5 (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0)) .cse6) (or .cse0 .cse1 .cse7 .cse8) (or .cse0 .cse1 .cse7 (and .cse4 .cse5) .cse2) (or .cse1 .cse8 .cse6) (or .cse3 .cse0 .cse1 .cse2 .cse6)))) [2021-12-21 13:14:26,131 INFO L858 garLoopResultBuilder]: For program point L508(lines 508 521) no Hoare annotation was computed. [2021-12-21 13:14:26,131 INFO L854 garLoopResultBuilder]: At program point L508-1(lines 500 524) the Hoare annotation is: (let ((.cse4 (<= 1 |timeShift_processEnvironment_~tmp~2#1|)) (.cse6 (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1))) (.cse7 (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0)) (.cse8 (<= 0 |timeShift_isLowWaterSensorDry_#res#1|)) (.cse9 (<= |timeShift_isLowWaterSensorDry_#res#1| 0)) (.cse10 (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|)) (.cse11 (<= 1 |timeShift_isLowWaterLevel_#res#1|)) (.cse12 (<= 1 ~waterLevel~0)) (.cse3 (<= 2 ~waterLevel~0)) (.cse14 (not (<= 2 |old(~waterLevel~0)|))) (.cse13 (not (<= 1 ~methaneLevelCritical~0))) (.cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse17 (not (= |old(~waterLevel~0)| 1))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (= ~pumpRunning~0 0)) (.cse16 (= |timeShift___utac_acc__Specification1_spec__1_~tmp~6#1| 0)) (.cse18 (= ~waterLevel~0 1)) (.cse15 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 (and .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse2 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse12) .cse13 .cse14) (or .cse0 .cse15 (and .cse4 .cse5 .cse2 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse16 .cse12) (and .cse3 .cse16) .cse14) (or .cse5 .cse17 .cse0 .cse13 (and .cse1 .cse2 .cse18)) (or .cse5 .cse17 .cse0 (and .cse2 .cse16 .cse18) .cse15))) [2021-12-21 13:14:26,131 INFO L858 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2021-12-21 13:14:26,131 INFO L854 garLoopResultBuilder]: At program point L352(line 352) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (<= 1 |old(~waterLevel~0)|))) (.cse4 (not (<= 1 ~methaneLevelCritical~0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse5 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse4 .cse5) (or .cse0 .cse1 .cse2 .cse4) (or .cse1 .cse3 .cse5))) [2021-12-21 13:14:26,131 INFO L854 garLoopResultBuilder]: At program point L55(lines 50 57) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (<= 1 |old(~waterLevel~0)|))) (.cse4 (not (<= 1 ~methaneLevelCritical~0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse5 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse4 .cse5) (or .cse0 .cse1 .cse2 .cse4) (or .cse1 .cse3 .cse5))) [2021-12-21 13:14:26,131 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 280 303) the Hoare annotation is: (let ((.cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 2 ~waterLevel~0))) (.cse6 (not (= ~methaneLevelCritical~0 0))) (.cse3 (not (<= 2 |old(~waterLevel~0)|))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (= |old(~waterLevel~0)| 1))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (<= 1 ~methaneLevelCritical~0))) (.cse7 (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse0 .cse6 .cse7) (or .cse0 .cse1 .cse6 .cse3) (or .cse4 .cse5 .cse0 .cse2 .cse7))) [2021-12-21 13:14:26,131 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 280 303) no Hoare annotation was computed. [2021-12-21 13:14:26,131 INFO L854 garLoopResultBuilder]: At program point L394(lines 389 396) the Hoare annotation is: (let ((.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (<= 1 |old(~waterLevel~0)|))) (.cse1 (not (= 1 ~systemActive~0))) (.cse6 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (and (<= 1 |timeShift_processEnvironment_~tmp~2#1|) (= ~pumpRunning~0 0) (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0))) (.cse5 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse3 .cse4 .cse5) (or .cse0 .cse1 .cse2 .cse6) (or .cse1 .cse6 .cse4 .cse5))) [2021-12-21 13:14:26,131 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2021-12-21 13:14:26,131 INFO L854 garLoopResultBuilder]: At program point L357(line 357) the Hoare annotation is: (let ((.cse8 (= ~pumpRunning~0 0))) (let ((.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (= |old(~waterLevel~0)| 1))) (.cse6 (and .cse8 (= ~waterLevel~0 1))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse8 (<= 2 ~waterLevel~0))) (.cse7 (not (<= 1 ~methaneLevelCritical~0))) (.cse3 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse0 .cse2 .cse6) (or .cse4 .cse5 .cse0 .cse7 .cse6) (or .cse0 .cse1 .cse7 .cse3)))) [2021-12-21 13:14:26,132 INFO L854 garLoopResultBuilder]: At program point L357-1(lines 338 362) the Hoare annotation is: (let ((.cse11 (<= 2 ~waterLevel~0)) (.cse6 (= ~pumpRunning~0 0))) (let ((.cse1 (not (= |old(~waterLevel~0)| 1))) (.cse4 (= ~waterLevel~0 1)) (.cse9 (and (<= 1 |timeShift_processEnvironment_~tmp~2#1|) .cse6 (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0))) (.cse8 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse6 .cse11)) (.cse3 (not (<= 1 ~methaneLevelCritical~0))) (.cse10 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse7 (not (<= 1 |old(~waterLevel~0)|))) (.cse5 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse2 .cse5 .cse4) (or .cse0 .cse6 .cse2 .cse7 .cse3) (or .cse2 .cse8 .cse3 .cse9 .cse10) (or .cse2 .cse11 .cse5 .cse9 .cse10) (or .cse0 .cse2 .cse8 .cse3 .cse10) (or .cse0 .cse2 .cse11 .cse5 .cse10) (or .cse0 .cse6 .cse2 .cse11 .cse7 .cse5)))) [2021-12-21 13:14:26,132 INFO L858 garLoopResultBuilder]: For program point L291-1(lines 291 297) no Hoare annotation was computed. [2021-12-21 13:14:26,132 INFO L858 garLoopResultBuilder]: For program point L193(line 193) no Hoare annotation was computed. [2021-12-21 13:14:26,132 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 172 201) no Hoare annotation was computed. [2021-12-21 13:14:26,132 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 172 201) the Hoare annotation is: true [2021-12-21 13:14:26,132 INFO L858 garLoopResultBuilder]: For program point L186(lines 186 190) no Hoare annotation was computed. [2021-12-21 13:14:26,132 INFO L861 garLoopResultBuilder]: At program point L186-1(lines 186 190) the Hoare annotation is: true [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point L183(line 183) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L861 garLoopResultBuilder]: At program point L182-2(lines 182 196) the Hoare annotation is: true [2021-12-21 13:14:26,133 INFO L861 garLoopResultBuilder]: At program point L178(line 178) the Hoare annotation is: true [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point L178-1(line 178) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L861 garLoopResultBuilder]: At program point L197(lines 172 201) the Hoare annotation is: true [2021-12-21 13:14:26,133 INFO L861 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 105 113) the Hoare annotation is: true [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 105 113) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 105 113) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point L258-2(lines 258 265) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L861 garLoopResultBuilder]: At program point L242(lines 235 244) the Hoare annotation is: true [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point L556(lines 556 562) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point L556-1(lines 556 562) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L861 garLoopResultBuilder]: At program point L267(lines 248 270) the Hoare annotation is: true [2021-12-21 13:14:26,133 INFO L854 garLoopResultBuilder]: At program point L581(lines 536 583) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= 1 ~waterLevel~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse2 .cse3 .cse4) (and .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3))) [2021-12-21 13:14:26,133 INFO L854 garLoopResultBuilder]: At program point L548(line 548) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= 1 ~waterLevel~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse2 .cse3 .cse4) (and .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3))) [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-21 13:14:26,133 INFO L854 garLoopResultBuilder]: At program point L623(lines 618 626) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-21 13:14:26,133 INFO L854 garLoopResultBuilder]: At program point L615(lines 611 617) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-21 13:14:26,134 INFO L854 garLoopResultBuilder]: At program point L231(lines 227 233) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L574(lines 574 578) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L854 garLoopResultBuilder]: At program point L574-2(lines 566 579) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (<= 1 ~methaneLevelCritical~0)) (.cse6 (<= 1 ~waterLevel~0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse1 (<= 2 ~waterLevel~0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse2 .cse3 .cse6) (and .cse4 .cse0 .cse2 .cse3 .cse6) (and .cse5 .cse1 .cse2 .cse3))) [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L537(lines 536 583) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L566(lines 566 579) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L854 garLoopResultBuilder]: At program point L496(lines 491 498) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (<= 1 ~methaneLevelCritical~0)) (.cse6 (<= 1 ~waterLevel~0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse1 (<= 2 ~waterLevel~0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse2 .cse3 .cse6) (and .cse4 .cse0 .cse2 .cse3 .cse6) (and .cse5 .cse1 .cse2 .cse3))) [2021-12-21 13:14:26,134 INFO L854 garLoopResultBuilder]: At program point L558(line 558) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= 1 ~waterLevel~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse2 .cse3 .cse4) (and .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3))) [2021-12-21 13:14:26,134 INFO L861 garLoopResultBuilder]: At program point L587(lines 526 591) the Hoare annotation is: true [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L546(lines 546 552) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L546-1(lines 546 552) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L854 garLoopResultBuilder]: At program point L608(lines 604 610) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L538(lines 538 542) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L854 garLoopResultBuilder]: At program point L584(lines 535 585) the Hoare annotation is: false [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L258(lines 258 265) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 312 336) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (not (<= 1 ~waterLevel~0)))) (and (or .cse0 .cse1 .cse2 .cse3 (not (= ~methaneLevelCritical~0 0))) (or .cse0 .cse1 .cse2 .cse3 (not (<= 1 ~methaneLevelCritical~0))))) [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L320(lines 320 328) no Hoare annotation was computed. [2021-12-21 13:14:26,134 INFO L858 garLoopResultBuilder]: For program point L316(lines 316 333) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L155(lines 146 159) the Hoare annotation is: (let ((.cse3 (= ~pumpRunning~0 0)) (.cse2 (not (<= 1 ~waterLevel~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse4 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0))) (.cse5 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 (and .cse3 .cse4) (not (<= 1 ~methaneLevelCritical~0)) (and .cse3 (<= 2 ~waterLevel~0))) (or .cse0 .cse3 .cse1 .cse2 .cse5) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse4 .cse5))) [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L368(lines 363 370) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (<= 1 ~waterLevel~0)) (not (<= 1 ~methaneLevelCritical~0))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))))) [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L331(line 331) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (<= 1 ~waterLevel~0)))) (and (or .cse0 .cse1 .cse2 (not (= ~methaneLevelCritical~0 0))) (or .cse0 .cse1 .cse2 (not (<= 1 ~methaneLevelCritical~0))))) [2021-12-21 13:14:26,135 INFO L858 garLoopResultBuilder]: For program point L331-1(lines 312 336) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 312 336) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L858 garLoopResultBuilder]: For program point L379(lines 379 385) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L379-2(lines 372 388) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))) (or .cse0 .cse1 (not (<= 1 ~waterLevel~0)) (and (= ~pumpRunning~0 0) (<= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_activatePump_~tmp~3#1|) (<= 2 ~waterLevel~0) (<= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_isMethaneAlarm_#res#1|)) (not (<= 1 ~methaneLevelCritical~0))))) [2021-12-21 13:14:26,135 INFO L858 garLoopResultBuilder]: For program point L150(lines 150 156) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L468(lines 453 471) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and .cse5 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1| 0)) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~0#1| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (not (<= 1 ~waterLevel~0))) (.cse4 (and .cse5 (<= 2 ~waterLevel~0)))) (and (or .cse0 .cse1 .cse2 .cse3 (not (<= 1 ~methaneLevelCritical~0)) .cse4) (or .cse0 .cse1 .cse2 .cse3 (not (= ~methaneLevelCritical~0 0)) .cse4)))) [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L404(lines 397 407) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (<= 1 ~waterLevel~0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (<= 2 ~waterLevel~0))) (and (or .cse0 .cse1 .cse2 (not (<= 1 ~methaneLevelCritical~0)) (and .cse3 .cse4 (<= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_isMethaneAlarm_#res#1|))) (or .cse0 .cse1 .cse2 (not (= ~methaneLevelCritical~0 0)) (and .cse3 .cse4)))) [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L402(line 402) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (<= 1 ~waterLevel~0))) (.cse3 (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)))) (and (or .cse0 .cse1 .cse2 (not (= ~methaneLevelCritical~0 0)) .cse3) (or .cse0 .cse1 .cse2 (not (<= 1 ~methaneLevelCritical~0)) .cse3))) [2021-12-21 13:14:26,135 INFO L858 garLoopResultBuilder]: For program point L402-1(line 402) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L858 garLoopResultBuilder]: For program point L462(lines 462 466) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L858 garLoopResultBuilder]: For program point L462-2(lines 462 466) no Hoare annotation was computed. [2021-12-21 13:14:26,135 INFO L854 garLoopResultBuilder]: At program point L326(line 326) the Hoare annotation is: (let ((.cse10 (= ~methaneLevelCritical~0 0)) (.cse8 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse9 (= ~pumpRunning~0 0)) (.cse11 (= 1 ~systemActive~0)) (.cse12 (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 0))) (let ((.cse3 (not (<= 2 ~waterLevel~0))) (.cse0 (and .cse8 .cse9 .cse11 .cse12)) (.cse4 (not (<= 1 ~methaneLevelCritical~0))) (.cse7 (not (= ~waterLevel~0 1))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not .cse11)) (.cse5 (not .cse10)) (.cse6 (and .cse8 .cse9 .cse10 .cse11 .cse12))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse1 .cse2 .cse3 .cse5 .cse6) (or .cse7 .cse0 .cse1 .cse2 .cse4) (or .cse7 .cse1 .cse2 .cse5 .cse6)))) [2021-12-21 13:14:26,136 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 81 92) no Hoare annotation was computed. [2021-12-21 13:14:26,136 INFO L858 garLoopResultBuilder]: For program point L85-1(lines 81 92) no Hoare annotation was computed. [2021-12-21 13:14:26,136 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 81 92) the Hoare annotation is: (let ((.cse1 (not (= |old(~waterLevel~0)| 1))) (.cse4 (= ~waterLevel~0 1)) (.cse0 (not (= ~pumpRunning~0 0))) (.cse5 (not (<= 1 ~methaneLevelCritical~0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse6 (<= 2 ~waterLevel~0)) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse7 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse2 .cse5 .cse4) (or .cse0 .cse2 .cse6 .cse5 .cse7) (or .cse2 .cse6 .cse3 .cse7))) [2021-12-21 13:14:26,138 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:14:26,140 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-21 13:14:26,160 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.12 01:14:26 BoogieIcfgContainer [2021-12-21 13:14:26,160 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-21 13:14:26,160 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-21 13:14:26,161 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-21 13:14:26,161 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-21 13:14:26,161 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 01:14:19" (3/4) ... [2021-12-21 13:14:26,163 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-21 13:14:26,167 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-21 13:14:26,167 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-21 13:14:26,167 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-21 13:14:26,168 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-21 13:14:26,168 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2021-12-21 13:14:26,168 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-21 13:14:26,168 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-21 13:14:26,173 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 53 nodes and edges [2021-12-21 13:14:26,173 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-21 13:14:26,173 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-21 13:14:26,174 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-21 13:14:26,174 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-21 13:14:26,175 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-21 13:14:26,175 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-21 13:14:26,190 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) [2021-12-21 13:14:26,190 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || waterLevel == 1) && ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || waterLevel == 1)) && ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && ((((!(1 == systemActive) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 2 <= waterLevel)) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && ((((!(1 == systemActive) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 2 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || 2 <= waterLevel) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) [2021-12-21 13:14:26,190 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(1 == systemActive) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 2 <= waterLevel)) || (((((((((1 <= tmp && !(\old(pumpRunning) == 0)) && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel))) && ((((!(1 == systemActive) || !(methaneLevelCritical == 0)) || ((((((((((1 <= tmp && !(\old(pumpRunning) == 0)) && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && tmp == 0) && 1 <= waterLevel)) || (2 <= waterLevel && tmp == 0)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && waterLevel == 1))) && ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((pumpRunning == 0 && tmp == 0) && waterLevel == 1)) || !(methaneLevelCritical == 0)) [2021-12-21 13:14:26,191 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || ((pumpRunning == 0 && 2 <= waterLevel) && methaneLevelCritical <= \result)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0)) || (pumpRunning == 0 && 2 <= waterLevel)) [2021-12-21 13:14:26,191 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || waterLevel == 1) && ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 1 <= methaneLevelCritical) && 2 <= waterLevel) && 1 == systemActive) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || (((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && \result == 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || (pumpRunning == 0 && \result == 0)) || !(1 <= methaneLevelCritical))) && ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel)))) && ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 1 <= methaneLevelCritical) && 2 <= waterLevel) && 1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel))) [2021-12-21 13:14:26,191 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || (((pumpRunning == \old(pumpRunning) && 0 <= \result) && \result <= 0) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && (((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (((pumpRunning == \old(pumpRunning) && 0 <= \result) && \result <= 0) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) [2021-12-21 13:14:26,191 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || (((pumpRunning == 0 && methaneLevelCritical <= tmp) && 2 <= waterLevel) && methaneLevelCritical <= \result)) || !(1 <= methaneLevelCritical)) [2021-12-21 13:14:26,191 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || (pumpRunning == 0 && !(\result == 0))) || !(1 <= methaneLevelCritical)) || (pumpRunning == 0 && 2 <= waterLevel)) && ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0))) && ((((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(\result == 0)) || !(methaneLevelCritical == 0)) [2021-12-21 13:14:26,192 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) [2021-12-21 13:14:26,192 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel))) [2021-12-21 13:14:26,192 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && ((((((((((pumpRunning == \old(pumpRunning) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel)))) && ((((((((((pumpRunning == \old(pumpRunning) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical)) [2021-12-21 13:14:26,192 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && \result == 0) && tmp___0 == 0)) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || (pumpRunning == 0 && 2 <= waterLevel)) && (((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && \result == 0) && tmp___0 == 0)) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0)) || (pumpRunning == 0 && 2 <= waterLevel)) [2021-12-21 13:14:26,192 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && (((!(1 == systemActive) || !(methaneLevelCritical == 0)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) [2021-12-21 13:14:26,206 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-21 13:14:26,207 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-21 13:14:26,207 INFO L158 Benchmark]: Toolchain (without parser) took 8041.85ms. Allocated memory was 125.8MB in the beginning and 304.1MB in the end (delta: 178.3MB). Free memory was 102.6MB in the beginning and 165.7MB in the end (delta: -63.1MB). Peak memory consumption was 115.0MB. Max. memory is 16.1GB. [2021-12-21 13:14:26,207 INFO L158 Benchmark]: CDTParser took 0.17ms. Allocated memory is still 125.8MB. Free memory is still 84.1MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-21 13:14:26,208 INFO L158 Benchmark]: CACSL2BoogieTranslator took 290.79ms. Allocated memory is still 125.8MB. Free memory was 102.6MB in the beginning and 93.0MB in the end (delta: 9.6MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2021-12-21 13:14:26,208 INFO L158 Benchmark]: Boogie Procedure Inliner took 67.84ms. Allocated memory is still 125.8MB. Free memory was 93.0MB in the beginning and 90.3MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-21 13:14:26,208 INFO L158 Benchmark]: Boogie Preprocessor took 43.12ms. Allocated memory is still 125.8MB. Free memory was 90.3MB in the beginning and 88.9MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-21 13:14:26,208 INFO L158 Benchmark]: RCFGBuilder took 483.25ms. Allocated memory is still 125.8MB. Free memory was 88.9MB in the beginning and 71.5MB in the end (delta: 17.4MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2021-12-21 13:14:26,208 INFO L158 Benchmark]: TraceAbstraction took 7106.25ms. Allocated memory was 125.8MB in the beginning and 304.1MB in the end (delta: 178.3MB). Free memory was 71.0MB in the beginning and 173.0MB in the end (delta: -102.0MB). Peak memory consumption was 131.2MB. Max. memory is 16.1GB. [2021-12-21 13:14:26,209 INFO L158 Benchmark]: Witness Printer took 46.32ms. Allocated memory is still 304.1MB. Free memory was 173.0MB in the beginning and 165.7MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2021-12-21 13:14:26,210 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.17ms. Allocated memory is still 125.8MB. Free memory is still 84.1MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 290.79ms. Allocated memory is still 125.8MB. Free memory was 102.6MB in the beginning and 93.0MB in the end (delta: 9.6MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 67.84ms. Allocated memory is still 125.8MB. Free memory was 93.0MB in the beginning and 90.3MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 43.12ms. Allocated memory is still 125.8MB. Free memory was 90.3MB in the beginning and 88.9MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 483.25ms. Allocated memory is still 125.8MB. Free memory was 88.9MB in the beginning and 71.5MB in the end (delta: 17.4MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 7106.25ms. Allocated memory was 125.8MB in the beginning and 304.1MB in the end (delta: 178.3MB). Free memory was 71.0MB in the beginning and 173.0MB in the end (delta: -102.0MB). Peak memory consumption was 131.2MB. Max. memory is 16.1GB. * Witness Printer took 46.32ms. Allocated memory is still 304.1MB. Free memory was 173.0MB in the beginning and 165.7MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 92 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 7.0s, OverallIterations: 12, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.6s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1478 SdHoareTripleChecker+Valid, 1.0s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1455 mSDsluCounter, 3653 SdHoareTripleChecker+Invalid, 0.8s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2305 mSDsCounter, 411 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1475 IncrementalHoareTripleChecker+Invalid, 1886 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 411 mSolverCounterUnsat, 1348 mSDtfsCounter, 1475 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 467 GetRequests, 353 SyntacticMatches, 6 SemanticMatches, 108 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 133 ImplicationChecksByTransitivity, 0.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=692occurred in iteration=11, InterpolantAutomatonStates: 92, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 12 MinimizatonAttempts, 182 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 43 LocationsWithAnnotation, 1453 PreInvPairs, 1603 NumberOfFragments, 2494 HoareAnnotationTreeSize, 1453 FomulaSimplifications, 123 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 43 FomulaSimplificationsInter, 5691 FormulaSimplificationTreeSizeReductionInter, 2.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 884 NumberOfCodeBlocks, 884 NumberOfCodeBlocksAsserted, 15 NumberOfCheckSat, 869 ConstructedInterpolants, 0 QuantifiedInterpolants, 1641 SizeOfPredicates, 12 NumberOfNonLiveVariables, 1338 ConjunctsInSsa, 24 ConjunctsInUnsatCore, 15 InterpolantComputations, 12 PerfectInterpolantSequences, 123/139 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 604]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 618]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 372]: Loop Invariant Derived loop invariant: (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || (((pumpRunning == 0 && methaneLevelCritical <= tmp) && 2 <= waterLevel) && methaneLevelCritical <= \result)) || !(1 <= methaneLevelCritical)) - InvariantResult [Line: 453]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && \result == 0) && tmp___0 == 0)) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || (pumpRunning == 0 && 2 <= waterLevel)) && (((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && \result == 0) && tmp___0 == 0)) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0)) || (pumpRunning == 0 && 2 <= waterLevel)) - InvariantResult [Line: 611]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 472]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && ((((((((((pumpRunning == \old(pumpRunning) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel)))) && ((((((((((pumpRunning == \old(pumpRunning) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical)) - InvariantResult [Line: 389]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && (((!(1 == systemActive) || !(methaneLevelCritical == 0)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || (((pumpRunning == \old(pumpRunning) && 0 <= \result) && \result <= 0) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && (((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (((pumpRunning == \old(pumpRunning) && 0 <= \result) && \result <= 0) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 491]: Loop Invariant Derived loop invariant: (((((1 <= methaneLevelCritical && 2 <= waterLevel) && 1 == systemActive) && splverifierCounter == 0) || ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel)) || ((((pumpRunning == 0 && 1 <= methaneLevelCritical) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel)) || (((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && splverifierCounter == 0) - InvariantResult [Line: 397]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || ((pumpRunning == 0 && 2 <= waterLevel) && methaneLevelCritical <= \result)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0)) || (pumpRunning == 0 && 2 <= waterLevel)) - InvariantResult [Line: 500]: Loop Invariant Derived loop invariant: ((((((!(1 == systemActive) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 2 <= waterLevel)) || (((((((((1 <= tmp && !(\old(pumpRunning) == 0)) && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel))) && ((((!(1 == systemActive) || !(methaneLevelCritical == 0)) || ((((((((((1 <= tmp && !(\old(pumpRunning) == 0)) && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && tmp == 0) && 1 <= waterLevel)) || (2 <= waterLevel && tmp == 0)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && waterLevel == 1))) && ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((pumpRunning == 0 && tmp == 0) && waterLevel == 1)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 338]: Loop Invariant Derived loop invariant: ((((((((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || waterLevel == 1) && ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || waterLevel == 1)) && ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && ((((!(1 == systemActive) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 2 <= waterLevel)) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && ((((!(1 == systemActive) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) || ((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 2 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || 2 <= waterLevel) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 535]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 182]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 69]: Loop Invariant Derived loop invariant: (((((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && (((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 408]: Loop Invariant Derived loop invariant: ((((((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || waterLevel == 1) && ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 1 <= methaneLevelCritical) && 2 <= waterLevel) && 1 == systemActive) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || (((((((((1 <= tmp && pumpRunning == 0) && 0 < tmp + 1) && tmp <= 0) && \result == 0) && 0 <= \result) && \result <= 0) && 1 <= tmp___0) && 1 <= \result) && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || (pumpRunning == 0 && \result == 0)) || !(1 <= methaneLevelCritical))) && ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel)))) && ((((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && 1 <= methaneLevelCritical) && 2 <= waterLevel) && 1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 526]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 50]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) && ((!(1 == systemActive) || !(1 <= methaneLevelCritical)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(1 <= methaneLevelCritical))) && ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 363]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 536]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel) || ((((pumpRunning == 0 && 1 <= methaneLevelCritical) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel)) || (((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && splverifierCounter == 0) - InvariantResult [Line: 146]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || (pumpRunning == 0 && !(\result == 0))) || !(1 <= methaneLevelCritical)) || (pumpRunning == 0 && 2 <= waterLevel)) && ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0))) && ((((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(\result == 0)) || !(methaneLevelCritical == 0)) RESULT: Ultimate proved your program to be correct! [2021-12-21 13:14:26,245 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE