./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product34.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version dbf71c69 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product34.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 86e7038cbd7079ed991c0d8924416f9d170b15a53536a052f3097e1f394171ef --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-dbf71c6-m [2022-10-17 17:22:55,802 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-10-17 17:22:55,805 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-10-17 17:22:55,844 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-10-17 17:22:55,845 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-10-17 17:22:55,846 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-10-17 17:22:55,850 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-10-17 17:22:55,855 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-10-17 17:22:55,857 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-10-17 17:22:55,863 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-10-17 17:22:55,864 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-10-17 17:22:55,866 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-10-17 17:22:55,866 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-10-17 17:22:55,868 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-10-17 17:22:55,869 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-10-17 17:22:55,871 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-10-17 17:22:55,872 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-10-17 17:22:55,873 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-10-17 17:22:55,876 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-10-17 17:22:55,888 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-10-17 17:22:55,894 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-10-17 17:22:55,905 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-10-17 17:22:55,907 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-10-17 17:22:55,910 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-10-17 17:22:55,916 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-10-17 17:22:55,916 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-10-17 17:22:55,917 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-10-17 17:22:55,919 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-10-17 17:22:55,920 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-10-17 17:22:55,921 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-10-17 17:22:55,922 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-10-17 17:22:55,924 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-10-17 17:22:55,926 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-10-17 17:22:55,927 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-10-17 17:22:55,928 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-10-17 17:22:55,929 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-10-17 17:22:55,929 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-10-17 17:22:55,930 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-10-17 17:22:55,930 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-10-17 17:22:55,931 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-10-17 17:22:55,932 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-10-17 17:22:55,933 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-10-17 17:22:55,981 INFO L113 SettingsManager]: Loading preferences was successful [2022-10-17 17:22:55,982 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-10-17 17:22:55,982 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-10-17 17:22:55,982 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-10-17 17:22:55,983 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-10-17 17:22:55,984 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-10-17 17:22:55,984 INFO L138 SettingsManager]: * User list type=DISABLED [2022-10-17 17:22:55,984 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-10-17 17:22:55,984 INFO L138 SettingsManager]: * Explicit value domain=true [2022-10-17 17:22:55,985 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-10-17 17:22:55,986 INFO L138 SettingsManager]: * Octagon Domain=false [2022-10-17 17:22:55,986 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-10-17 17:22:55,986 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-10-17 17:22:55,986 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-10-17 17:22:55,987 INFO L138 SettingsManager]: * Interval Domain=false [2022-10-17 17:22:55,987 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-10-17 17:22:55,987 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-10-17 17:22:55,987 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-10-17 17:22:55,988 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-10-17 17:22:55,989 INFO L138 SettingsManager]: * sizeof long=4 [2022-10-17 17:22:55,989 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-10-17 17:22:55,989 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-10-17 17:22:55,989 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-10-17 17:22:55,989 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-10-17 17:22:55,990 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-10-17 17:22:55,990 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-10-17 17:22:55,990 INFO L138 SettingsManager]: * sizeof long double=12 [2022-10-17 17:22:55,990 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-10-17 17:22:55,991 INFO L138 SettingsManager]: * Use constant arrays=true [2022-10-17 17:22:55,991 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-10-17 17:22:55,991 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-10-17 17:22:55,991 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-10-17 17:22:55,992 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-10-17 17:22:55,992 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-10-17 17:22:55,992 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-10-17 17:22:55,992 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-10-17 17:22:55,993 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-10-17 17:22:55,993 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-10-17 17:22:55,993 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-10-17 17:22:55,993 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-10-17 17:22:55,994 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-10-17 17:22:55,994 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 86e7038cbd7079ed991c0d8924416f9d170b15a53536a052f3097e1f394171ef [2022-10-17 17:22:56,280 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-10-17 17:22:56,317 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-10-17 17:22:56,320 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-10-17 17:22:56,322 INFO L271 PluginConnector]: Initializing CDTParser... [2022-10-17 17:22:56,322 INFO L275 PluginConnector]: CDTParser initialized [2022-10-17 17:22:56,324 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/../../sv-benchmarks/c/product-lines/minepump_spec5_product34.cil.c [2022-10-17 17:22:56,395 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/data/b109c7b0f/5d3052d2c2b442208283c729968f73fd/FLAG9850b64d4 [2022-10-17 17:22:56,885 INFO L306 CDTParser]: Found 1 translation units. [2022-10-17 17:22:56,885 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/sv-benchmarks/c/product-lines/minepump_spec5_product34.cil.c [2022-10-17 17:22:56,910 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/data/b109c7b0f/5d3052d2c2b442208283c729968f73fd/FLAG9850b64d4 [2022-10-17 17:22:57,358 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/data/b109c7b0f/5d3052d2c2b442208283c729968f73fd [2022-10-17 17:22:57,361 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-10-17 17:22:57,363 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-10-17 17:22:57,365 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-10-17 17:22:57,365 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-10-17 17:22:57,369 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-10-17 17:22:57,370 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:57,371 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@3b5aa74e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57, skipping insertion in model container [2022-10-17 17:22:57,372 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:57,380 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-10-17 17:22:57,448 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-10-17 17:22:57,664 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/sv-benchmarks/c/product-lines/minepump_spec5_product34.cil.c[2141,2154] [2022-10-17 17:22:57,805 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-10-17 17:22:57,815 INFO L203 MainTranslator]: Completed pre-run [2022-10-17 17:22:57,839 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/sv-benchmarks/c/product-lines/minepump_spec5_product34.cil.c[2141,2154] [2022-10-17 17:22:57,948 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-10-17 17:22:57,969 INFO L208 MainTranslator]: Completed translation [2022-10-17 17:22:57,969 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57 WrapperNode [2022-10-17 17:22:57,969 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-10-17 17:22:57,971 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-10-17 17:22:57,971 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-10-17 17:22:57,971 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-10-17 17:22:57,978 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,006 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,047 INFO L138 Inliner]: procedures = 55, calls = 153, calls flagged for inlining = 23, calls inlined = 19, statements flattened = 231 [2022-10-17 17:22:58,048 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-10-17 17:22:58,049 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-10-17 17:22:58,049 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-10-17 17:22:58,049 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-10-17 17:22:58,057 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,057 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,060 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,060 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,066 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,071 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,080 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,081 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,084 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-10-17 17:22:58,085 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-10-17 17:22:58,085 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-10-17 17:22:58,085 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-10-17 17:22:58,099 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (1/1) ... [2022-10-17 17:22:58,106 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-10-17 17:22:58,121 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 [2022-10-17 17:22:58,131 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-10-17 17:22:58,133 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-10-17 17:22:58,170 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-10-17 17:22:58,170 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-10-17 17:22:58,170 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-10-17 17:22:58,170 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-10-17 17:22:58,170 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-10-17 17:22:58,171 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-10-17 17:22:58,171 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-10-17 17:22:58,171 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-10-17 17:22:58,171 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-10-17 17:22:58,171 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2022-10-17 17:22:58,172 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2022-10-17 17:22:58,172 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-10-17 17:22:58,172 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-10-17 17:22:58,172 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-10-17 17:22:58,172 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-10-17 17:22:58,172 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-10-17 17:22:58,248 INFO L235 CfgBuilder]: Building ICFG [2022-10-17 17:22:58,252 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-10-17 17:22:58,684 INFO L276 CfgBuilder]: Performing block encoding [2022-10-17 17:22:58,808 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-10-17 17:22:58,808 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-10-17 17:22:58,811 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.10 05:22:58 BoogieIcfgContainer [2022-10-17 17:22:58,811 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-10-17 17:22:58,814 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-10-17 17:22:58,814 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-10-17 17:22:58,818 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-10-17 17:22:58,818 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 17.10 05:22:57" (1/3) ... [2022-10-17 17:22:58,819 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22bcf857 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.10 05:22:58, skipping insertion in model container [2022-10-17 17:22:58,819 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.10 05:22:57" (2/3) ... [2022-10-17 17:22:58,820 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22bcf857 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.10 05:22:58, skipping insertion in model container [2022-10-17 17:22:58,820 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.10 05:22:58" (3/3) ... [2022-10-17 17:22:58,822 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product34.cil.c [2022-10-17 17:22:58,843 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-10-17 17:22:58,843 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-10-17 17:22:58,899 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-10-17 17:22:58,907 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@5871d9a6, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-10-17 17:22:58,907 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-10-17 17:22:58,912 INFO L276 IsEmpty]: Start isEmpty. Operand has 51 states, 33 states have (on average 1.4242424242424243) internal successors, (47), 39 states have internal predecessors, (47), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) [2022-10-17 17:22:58,923 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2022-10-17 17:22:58,923 INFO L187 NwaCegarLoop]: Found error trace [2022-10-17 17:22:58,924 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-10-17 17:22:58,925 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-10-17 17:22:58,930 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-10-17 17:22:58,931 INFO L85 PathProgramCache]: Analyzing trace with hash -457706804, now seen corresponding path program 1 times [2022-10-17 17:22:58,941 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-10-17 17:22:58,942 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2136092264] [2022-10-17 17:22:58,942 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-10-17 17:22:58,943 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-10-17 17:22:59,065 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-10-17 17:22:59,154 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-10-17 17:22:59,156 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-10-17 17:22:59,157 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2136092264] [2022-10-17 17:22:59,158 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2136092264] provided 1 perfect and 0 imperfect interpolant sequences [2022-10-17 17:22:59,159 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-10-17 17:22:59,159 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-10-17 17:22:59,161 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1824480505] [2022-10-17 17:22:59,162 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-10-17 17:22:59,169 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-10-17 17:22:59,170 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-10-17 17:22:59,209 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-10-17 17:22:59,211 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-10-17 17:22:59,214 INFO L87 Difference]: Start difference. First operand has 51 states, 33 states have (on average 1.4242424242424243) internal successors, (47), 39 states have internal predecessors, (47), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-10-17 17:22:59,323 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-10-17 17:22:59,323 INFO L93 Difference]: Finished difference Result 100 states and 135 transitions. [2022-10-17 17:22:59,324 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-10-17 17:22:59,326 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 21 [2022-10-17 17:22:59,327 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-10-17 17:22:59,338 INFO L225 Difference]: With dead ends: 100 [2022-10-17 17:22:59,338 INFO L226 Difference]: Without dead ends: 46 [2022-10-17 17:22:59,343 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-10-17 17:22:59,350 INFO L413 NwaCegarLoop]: 49 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 49 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-10-17 17:22:59,358 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 49 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-10-17 17:22:59,414 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 46 states. [2022-10-17 17:22:59,446 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 46 to 46. [2022-10-17 17:22:59,448 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 46 states, 30 states have (on average 1.3) internal successors, (39), 35 states have internal predecessors, (39), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2022-10-17 17:22:59,452 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 46 states to 46 states and 58 transitions. [2022-10-17 17:22:59,454 INFO L78 Accepts]: Start accepts. Automaton has 46 states and 58 transitions. Word has length 21 [2022-10-17 17:22:59,454 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-10-17 17:22:59,454 INFO L495 AbstractCegarLoop]: Abstraction has 46 states and 58 transitions. [2022-10-17 17:22:59,455 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-10-17 17:22:59,456 INFO L276 IsEmpty]: Start isEmpty. Operand 46 states and 58 transitions. [2022-10-17 17:22:59,460 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2022-10-17 17:22:59,460 INFO L187 NwaCegarLoop]: Found error trace [2022-10-17 17:22:59,461 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-10-17 17:22:59,462 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-10-17 17:22:59,462 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-10-17 17:22:59,463 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-10-17 17:22:59,463 INFO L85 PathProgramCache]: Analyzing trace with hash -460735543, now seen corresponding path program 1 times [2022-10-17 17:22:59,464 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-10-17 17:22:59,464 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [159946964] [2022-10-17 17:22:59,464 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-10-17 17:22:59,465 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-10-17 17:22:59,543 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-10-17 17:22:59,856 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-10-17 17:22:59,857 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-10-17 17:22:59,857 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [159946964] [2022-10-17 17:22:59,858 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [159946964] provided 1 perfect and 0 imperfect interpolant sequences [2022-10-17 17:22:59,858 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-10-17 17:22:59,858 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-10-17 17:22:59,858 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1583422508] [2022-10-17 17:22:59,858 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-10-17 17:22:59,860 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-10-17 17:22:59,860 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-10-17 17:22:59,861 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-10-17 17:22:59,861 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-10-17 17:22:59,861 INFO L87 Difference]: Start difference. First operand 46 states and 58 transitions. Second operand has 6 states, 5 states have (on average 3.8) internal successors, (19), 5 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2022-10-17 17:23:00,148 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-10-17 17:23:00,149 INFO L93 Difference]: Finished difference Result 132 states and 187 transitions. [2022-10-17 17:23:00,152 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-10-17 17:23:00,152 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 3.8) internal successors, (19), 5 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 24 [2022-10-17 17:23:00,153 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-10-17 17:23:00,156 INFO L225 Difference]: With dead ends: 132 [2022-10-17 17:23:00,157 INFO L226 Difference]: Without dead ends: 88 [2022-10-17 17:23:00,162 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2022-10-17 17:23:00,164 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 37 mSDsluCounter, 252 mSDsCounter, 0 mSdLazyCounter, 110 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 38 SdHoareTripleChecker+Valid, 281 SdHoareTripleChecker+Invalid, 114 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 110 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-10-17 17:23:00,166 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [38 Valid, 281 Invalid, 114 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 110 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-10-17 17:23:00,169 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 88 states. [2022-10-17 17:23:00,197 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 88 to 84. [2022-10-17 17:23:00,201 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 84 states, 55 states have (on average 1.2545454545454546) internal successors, (69), 61 states have internal predecessors, (69), 18 states have call successors, (18), 12 states have call predecessors, (18), 10 states have return successors, (22), 16 states have call predecessors, (22), 16 states have call successors, (22) [2022-10-17 17:23:00,208 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 84 states to 84 states and 109 transitions. [2022-10-17 17:23:00,208 INFO L78 Accepts]: Start accepts. Automaton has 84 states and 109 transitions. Word has length 24 [2022-10-17 17:23:00,209 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-10-17 17:23:00,210 INFO L495 AbstractCegarLoop]: Abstraction has 84 states and 109 transitions. [2022-10-17 17:23:00,210 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 3.8) internal successors, (19), 5 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2022-10-17 17:23:00,211 INFO L276 IsEmpty]: Start isEmpty. Operand 84 states and 109 transitions. [2022-10-17 17:23:00,214 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-10-17 17:23:00,214 INFO L187 NwaCegarLoop]: Found error trace [2022-10-17 17:23:00,214 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-10-17 17:23:00,214 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-10-17 17:23:00,215 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-10-17 17:23:00,218 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-10-17 17:23:00,218 INFO L85 PathProgramCache]: Analyzing trace with hash -1230227349, now seen corresponding path program 1 times [2022-10-17 17:23:00,218 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-10-17 17:23:00,219 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1197080097] [2022-10-17 17:23:00,219 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-10-17 17:23:00,219 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-10-17 17:23:00,253 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-10-17 17:23:00,346 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-10-17 17:23:00,347 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-10-17 17:23:00,347 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1197080097] [2022-10-17 17:23:00,347 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1197080097] provided 1 perfect and 0 imperfect interpolant sequences [2022-10-17 17:23:00,348 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-10-17 17:23:00,349 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-10-17 17:23:00,349 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1549247792] [2022-10-17 17:23:00,349 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-10-17 17:23:00,350 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-10-17 17:23:00,350 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-10-17 17:23:00,351 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-10-17 17:23:00,351 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-10-17 17:23:00,351 INFO L87 Difference]: Start difference. First operand 84 states and 109 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-10-17 17:23:00,403 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-10-17 17:23:00,404 INFO L93 Difference]: Finished difference Result 124 states and 156 transitions. [2022-10-17 17:23:00,404 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-10-17 17:23:00,404 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 25 [2022-10-17 17:23:00,405 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-10-17 17:23:00,408 INFO L225 Difference]: With dead ends: 124 [2022-10-17 17:23:00,408 INFO L226 Difference]: Without dead ends: 68 [2022-10-17 17:23:00,411 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-10-17 17:23:00,419 INFO L413 NwaCegarLoop]: 35 mSDtfsCounter, 7 mSDsluCounter, 35 mSDsCounter, 0 mSdLazyCounter, 21 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 61 SdHoareTripleChecker+Invalid, 21 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 21 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-10-17 17:23:00,420 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 61 Invalid, 21 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 21 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-10-17 17:23:00,420 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2022-10-17 17:23:00,428 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2022-10-17 17:23:00,429 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 45 states have (on average 1.2666666666666666) internal successors, (57), 51 states have internal predecessors, (57), 12 states have call successors, (12), 10 states have call predecessors, (12), 10 states have return successors, (14), 12 states have call predecessors, (14), 12 states have call successors, (14) [2022-10-17 17:23:00,430 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 83 transitions. [2022-10-17 17:23:00,430 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 83 transitions. Word has length 25 [2022-10-17 17:23:00,430 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-10-17 17:23:00,430 INFO L495 AbstractCegarLoop]: Abstraction has 68 states and 83 transitions. [2022-10-17 17:23:00,431 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-10-17 17:23:00,431 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 83 transitions. [2022-10-17 17:23:00,432 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2022-10-17 17:23:00,432 INFO L187 NwaCegarLoop]: Found error trace [2022-10-17 17:23:00,432 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-10-17 17:23:00,432 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-10-17 17:23:00,433 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-10-17 17:23:00,433 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-10-17 17:23:00,433 INFO L85 PathProgramCache]: Analyzing trace with hash 1875186536, now seen corresponding path program 1 times [2022-10-17 17:23:00,434 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-10-17 17:23:00,434 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2069712460] [2022-10-17 17:23:00,434 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-10-17 17:23:00,434 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-10-17 17:23:00,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-10-17 17:23:00,863 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-10-17 17:23:00,863 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-10-17 17:23:00,863 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2069712460] [2022-10-17 17:23:00,863 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2069712460] provided 1 perfect and 0 imperfect interpolant sequences [2022-10-17 17:23:00,864 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-10-17 17:23:00,864 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-10-17 17:23:00,864 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [478678961] [2022-10-17 17:23:00,864 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-10-17 17:23:00,866 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-10-17 17:23:00,866 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-10-17 17:23:00,866 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-10-17 17:23:00,867 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=18, Unknown=0, NotChecked=0, Total=30 [2022-10-17 17:23:00,867 INFO L87 Difference]: Start difference. First operand 68 states and 83 transitions. Second operand has 6 states, 6 states have (on average 3.5) internal successors, (21), 6 states have internal predecessors, (21), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-10-17 17:23:00,998 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-10-17 17:23:00,998 INFO L93 Difference]: Finished difference Result 179 states and 221 transitions. [2022-10-17 17:23:00,998 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-10-17 17:23:00,999 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.5) internal successors, (21), 6 states have internal predecessors, (21), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 27 [2022-10-17 17:23:00,999 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-10-17 17:23:01,003 INFO L225 Difference]: With dead ends: 179 [2022-10-17 17:23:01,003 INFO L226 Difference]: Without dead ends: 113 [2022-10-17 17:23:01,004 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-10-17 17:23:01,015 INFO L413 NwaCegarLoop]: 46 mSDtfsCounter, 61 mSDsluCounter, 135 mSDsCounter, 0 mSdLazyCounter, 70 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 164 SdHoareTripleChecker+Invalid, 90 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 70 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-10-17 17:23:01,016 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 164 Invalid, 90 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 70 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-10-17 17:23:01,017 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 113 states. [2022-10-17 17:23:01,043 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 113 to 104. [2022-10-17 17:23:01,045 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 104 states, 70 states have (on average 1.2428571428571429) internal successors, (87), 78 states have internal predecessors, (87), 18 states have call successors, (18), 14 states have call predecessors, (18), 15 states have return successors, (21), 18 states have call predecessors, (21), 18 states have call successors, (21) [2022-10-17 17:23:01,046 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 104 states to 104 states and 126 transitions. [2022-10-17 17:23:01,047 INFO L78 Accepts]: Start accepts. Automaton has 104 states and 126 transitions. Word has length 27 [2022-10-17 17:23:01,047 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-10-17 17:23:01,047 INFO L495 AbstractCegarLoop]: Abstraction has 104 states and 126 transitions. [2022-10-17 17:23:01,047 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.5) internal successors, (21), 6 states have internal predecessors, (21), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-10-17 17:23:01,048 INFO L276 IsEmpty]: Start isEmpty. Operand 104 states and 126 transitions. [2022-10-17 17:23:01,051 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2022-10-17 17:23:01,052 INFO L187 NwaCegarLoop]: Found error trace [2022-10-17 17:23:01,052 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-10-17 17:23:01,052 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-10-17 17:23:01,053 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-10-17 17:23:01,053 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-10-17 17:23:01,053 INFO L85 PathProgramCache]: Analyzing trace with hash -24457034, now seen corresponding path program 1 times [2022-10-17 17:23:01,053 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-10-17 17:23:01,054 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [394170671] [2022-10-17 17:23:01,054 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-10-17 17:23:01,054 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-10-17 17:23:01,079 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-10-17 17:23:01,498 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-10-17 17:23:01,498 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-10-17 17:23:01,499 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [394170671] [2022-10-17 17:23:01,499 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [394170671] provided 1 perfect and 0 imperfect interpolant sequences [2022-10-17 17:23:01,499 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-10-17 17:23:01,499 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-10-17 17:23:01,500 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1808603426] [2022-10-17 17:23:01,500 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-10-17 17:23:01,500 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-10-17 17:23:01,501 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-10-17 17:23:01,501 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-10-17 17:23:01,501 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2022-10-17 17:23:01,502 INFO L87 Difference]: Start difference. First operand 104 states and 126 transitions. Second operand has 8 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-10-17 17:23:01,963 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-10-17 17:23:01,963 INFO L93 Difference]: Finished difference Result 272 states and 335 transitions. [2022-10-17 17:23:01,965 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2022-10-17 17:23:01,965 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 30 [2022-10-17 17:23:01,965 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-10-17 17:23:01,971 INFO L225 Difference]: With dead ends: 272 [2022-10-17 17:23:01,971 INFO L226 Difference]: Without dead ends: 199 [2022-10-17 17:23:01,978 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 30 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2022-10-17 17:23:01,979 INFO L413 NwaCegarLoop]: 61 mSDtfsCounter, 156 mSDsluCounter, 184 mSDsCounter, 0 mSdLazyCounter, 228 mSolverCounterSat, 65 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 159 SdHoareTripleChecker+Valid, 213 SdHoareTripleChecker+Invalid, 293 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 65 IncrementalHoareTripleChecker+Valid, 228 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-10-17 17:23:01,980 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [159 Valid, 213 Invalid, 293 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [65 Valid, 228 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-10-17 17:23:01,982 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 199 states. [2022-10-17 17:23:02,025 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 199 to 178. [2022-10-17 17:23:02,026 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 178 states, 120 states have (on average 1.25) internal successors, (150), 135 states have internal predecessors, (150), 31 states have call successors, (31), 23 states have call predecessors, (31), 26 states have return successors, (36), 31 states have call predecessors, (36), 31 states have call successors, (36) [2022-10-17 17:23:02,029 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 178 states to 178 states and 217 transitions. [2022-10-17 17:23:02,029 INFO L78 Accepts]: Start accepts. Automaton has 178 states and 217 transitions. Word has length 30 [2022-10-17 17:23:02,030 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-10-17 17:23:02,030 INFO L495 AbstractCegarLoop]: Abstraction has 178 states and 217 transitions. [2022-10-17 17:23:02,030 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-10-17 17:23:02,030 INFO L276 IsEmpty]: Start isEmpty. Operand 178 states and 217 transitions. [2022-10-17 17:23:02,036 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2022-10-17 17:23:02,037 INFO L187 NwaCegarLoop]: Found error trace [2022-10-17 17:23:02,037 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-10-17 17:23:02,037 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-10-17 17:23:02,037 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-10-17 17:23:02,038 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-10-17 17:23:02,038 INFO L85 PathProgramCache]: Analyzing trace with hash 793937010, now seen corresponding path program 1 times [2022-10-17 17:23:02,038 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-10-17 17:23:02,038 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [481271280] [2022-10-17 17:23:02,038 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-10-17 17:23:02,038 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-10-17 17:23:02,061 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-10-17 17:23:02,253 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 12 proven. 3 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-10-17 17:23:02,253 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-10-17 17:23:02,253 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [481271280] [2022-10-17 17:23:02,253 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [481271280] provided 0 perfect and 1 imperfect interpolant sequences [2022-10-17 17:23:02,254 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1919405940] [2022-10-17 17:23:02,254 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-10-17 17:23:02,254 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-10-17 17:23:02,254 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 [2022-10-17 17:23:02,259 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-10-17 17:23:02,281 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-10-17 17:23:02,411 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-10-17 17:23:02,414 INFO L263 TraceCheckSpWp]: Trace formula consists of 401 conjuncts, 8 conjunts are in the unsatisfiable core [2022-10-17 17:23:02,422 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-10-17 17:23:02,607 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 15 proven. 4 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-10-17 17:23:02,607 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-10-17 17:23:02,777 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 12 proven. 3 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-10-17 17:23:02,778 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1919405940] provided 0 perfect and 2 imperfect interpolant sequences [2022-10-17 17:23:02,778 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [2105733349] [2022-10-17 17:23:02,802 INFO L159 IcfgInterpreter]: Started Sifa with 31 locations of interest [2022-10-17 17:23:02,802 INFO L166 IcfgInterpreter]: Building call graph [2022-10-17 17:23:02,806 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-10-17 17:23:02,812 INFO L176 IcfgInterpreter]: Starting interpretation [2022-10-17 17:23:02,813 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-10-17 17:23:09,423 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 305 for LOIs [2022-10-17 17:23:09,498 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 32 for LOIs [2022-10-17 17:23:09,820 INFO L197 IcfgInterpreter]: Interpreting procedure isPumpRunning with input of size 56 for LOIs [2022-10-17 17:23:09,834 INFO L180 IcfgInterpreter]: Interpretation finished [2022-10-17 17:23:19,693 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '2432#(and (<= |old(~waterLevel~0)| 2147483647) (<= 1 |timeShift_processEnvironment_~tmp~4#1|) (<= |timeShift_processEnvironment_~tmp~4#1| 1) (<= |timeShift_isHighWaterLevel_#res#1| 1) (<= 0 |timeShift_isHighWaterSensorDry_~retValue_acc~7#1|) (= ~methaneLevelCritical~0 0) (<= 0 |old(~switchedOnBeforeTS~0)|) (= ~head~0.offset 0) (<= |timeShift___utac_acc__Specification5_spec__3_~tmp~6#1| 2147483647) (<= |timeShift_getWaterLevel_~retValue_acc~6#1| 2147483647) (<= 2 ~waterLevel~0) (<= 2 |timeShift_getWaterLevel_~retValue_acc~6#1|) (<= 0 |timeShift_isHighWaterSensorDry_#res#1|) (= 1 ~systemActive~0) (<= |old(~switchedOnBeforeTS~0)| 0) (= |old(~pumpRunning~0)| 0) (<= |timeShift_isHighWaterLevel_~retValue_acc~10#1| 1) (<= |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1| 1) (= |timeShift_isHighWaterLevel_~tmp~5#1| 0) (<= 2 |old(~waterLevel~0)|) (<= 2 |timeShift___utac_acc__Specification5_spec__3_~tmp~6#1|) (<= 1 |timeShift_isHighWaterLevel_~retValue_acc~10#1|) (<= ~waterLevel~0 2147483647) (<= |timeShift_getWaterLevel_#res#1| 2147483647) (<= 1 |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1|) (<= 2 |timeShift_getWaterLevel_#res#1|) (= ~head~0.base 0) (= |#NULL.offset| 0) (<= |timeShift_isHighWaterSensorDry_~retValue_acc~7#1| 0) (<= |timeShift_isHighWaterSensorDry_#res#1| 0) (= |timeShift_isHighWaterLevel_~tmp___0~1#1| 1) (<= 1 |timeShift_isHighWaterLevel_#res#1|) (= ~switchedOnBeforeTS~0 0) (<= 0 |#StackHeapBarrier|) (= ~pumpRunning~0 1) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-10-17 17:23:19,694 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-10-17 17:23:19,694 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-10-17 17:23:19,694 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 6, 6] total 13 [2022-10-17 17:23:19,694 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [253349213] [2022-10-17 17:23:19,694 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-10-17 17:23:19,695 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2022-10-17 17:23:19,695 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-10-17 17:23:19,696 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2022-10-17 17:23:19,696 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=154, Invalid=1106, Unknown=0, NotChecked=0, Total=1260 [2022-10-17 17:23:19,697 INFO L87 Difference]: Start difference. First operand 178 states and 217 transitions. Second operand has 13 states, 10 states have (on average 5.9) internal successors, (59), 11 states have internal predecessors, (59), 5 states have call successors, (11), 4 states have call predecessors, (11), 7 states have return successors, (10), 7 states have call predecessors, (10), 5 states have call successors, (10) [2022-10-17 17:23:20,203 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-10-17 17:23:20,203 INFO L93 Difference]: Finished difference Result 242 states and 308 transitions. [2022-10-17 17:23:20,205 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2022-10-17 17:23:20,205 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 10 states have (on average 5.9) internal successors, (59), 11 states have internal predecessors, (59), 5 states have call successors, (11), 4 states have call predecessors, (11), 7 states have return successors, (10), 7 states have call predecessors, (10), 5 states have call successors, (10) Word has length 47 [2022-10-17 17:23:20,206 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-10-17 17:23:20,206 INFO L225 Difference]: With dead ends: 242 [2022-10-17 17:23:20,206 INFO L226 Difference]: Without dead ends: 0 [2022-10-17 17:23:20,207 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 161 GetRequests, 115 SyntacticMatches, 4 SemanticMatches, 42 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 564 ImplicationChecksByTransitivity, 10.1s TimeCoverageRelationStatistics Valid=220, Invalid=1672, Unknown=0, NotChecked=0, Total=1892 [2022-10-17 17:23:20,208 INFO L413 NwaCegarLoop]: 78 mSDtfsCounter, 129 mSDsluCounter, 552 mSDsCounter, 0 mSdLazyCounter, 377 mSolverCounterSat, 78 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 134 SdHoareTripleChecker+Valid, 481 SdHoareTripleChecker+Invalid, 455 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 78 IncrementalHoareTripleChecker+Valid, 377 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-10-17 17:23:20,208 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [134 Valid, 481 Invalid, 455 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [78 Valid, 377 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-10-17 17:23:20,209 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-10-17 17:23:20,209 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-10-17 17:23:20,209 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-10-17 17:23:20,210 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-10-17 17:23:20,210 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 47 [2022-10-17 17:23:20,210 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-10-17 17:23:20,210 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-10-17 17:23:20,210 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 10 states have (on average 5.9) internal successors, (59), 11 states have internal predecessors, (59), 5 states have call successors, (11), 4 states have call predecessors, (11), 7 states have return successors, (10), 7 states have call predecessors, (10), 5 states have call successors, (10) [2022-10-17 17:23:20,210 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-10-17 17:23:20,210 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-10-17 17:23:20,213 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-10-17 17:23:20,239 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2022-10-17 17:23:20,426 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2022-10-17 17:23:20,428 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-10-17 17:23:21,779 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 670 676) no Hoare annotation was computed. [2022-10-17 17:23:21,780 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 670 676) the Hoare annotation is: true [2022-10-17 17:23:21,780 INFO L902 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 496 507) the Hoare annotation is: true [2022-10-17 17:23:21,780 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 496 507) no Hoare annotation was computed. [2022-10-17 17:23:21,780 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 853 882) no Hoare annotation was computed. [2022-10-17 17:23:21,780 INFO L902 garLoopResultBuilder]: At program point L863-2(lines 863 877) the Hoare annotation is: true [2022-10-17 17:23:21,780 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 853 882) the Hoare annotation is: true [2022-10-17 17:23:21,780 INFO L902 garLoopResultBuilder]: At program point L859(line 859) the Hoare annotation is: true [2022-10-17 17:23:21,780 INFO L899 garLoopResultBuilder]: For program point L859-1(line 859) no Hoare annotation was computed. [2022-10-17 17:23:21,780 INFO L902 garLoopResultBuilder]: At program point L878(lines 853 882) the Hoare annotation is: true [2022-10-17 17:23:21,781 INFO L899 garLoopResultBuilder]: For program point L874(line 874) no Hoare annotation was computed. [2022-10-17 17:23:21,781 INFO L899 garLoopResultBuilder]: For program point L867(lines 867 871) no Hoare annotation was computed. [2022-10-17 17:23:21,781 INFO L902 garLoopResultBuilder]: At program point L867-1(lines 867 871) the Hoare annotation is: true [2022-10-17 17:23:21,781 INFO L895 garLoopResultBuilder]: At program point L832(line 832) the Hoare annotation is: (let ((.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= ~waterLevel~0 1)) (.cse0 (<= 1 ~switchedOnBeforeTS~0)) (.cse1 (= ~pumpRunning~0 1)) (.cse2 (not (= |old(~pumpRunning~0)| 1))) (.cse5 (not (<= |old(~waterLevel~0)| 2))) (.cse6 (not (<= 2 |old(~waterLevel~0)|)))) (and (or (and .cse0 .cse1) .cse2 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse3 (not (= |old(~waterLevel~0)| 1)) (and (= ~pumpRunning~0 0) .cse4)) (or .cse3 .cse5 .cse6) (or (and (or (= |old(~waterLevel~0)| ~waterLevel~0) .cse4) .cse0 .cse1) .cse2 .cse5 .cse6))) [2022-10-17 17:23:21,781 INFO L899 garLoopResultBuilder]: For program point L832-1(line 832) no Hoare annotation was computed. [2022-10-17 17:23:21,782 INFO L895 garLoopResultBuilder]: At program point L692(line 692) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |timeShift_processEnvironment_~tmp~4#1| 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (<= |old(~waterLevel~0)| 2))) (.cse5 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (= |old(~pumpRunning~0)| 1)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse2 (= ~waterLevel~0 1))) (or .cse3 .cse4 .cse5) (or (and .cse1 .cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 .cse4 .cse5) (or .cse3 (not (<= 1 |old(~switchedOnBeforeTS~0)|))))) [2022-10-17 17:23:21,782 INFO L895 garLoopResultBuilder]: At program point L697(line 697) the Hoare annotation is: (let ((.cse0 (<= 1 ~switchedOnBeforeTS~0)) (.cse1 (= ~pumpRunning~0 1)) (.cse2 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (not (<= |old(~waterLevel~0)| 2))) (.cse5 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (= |old(~pumpRunning~0)| 0)))) (and (or (and .cse0 .cse1) .cse2 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse3 .cse4 .cse5) (or (and (or (= |old(~waterLevel~0)| ~waterLevel~0) (= ~waterLevel~0 1)) .cse0 .cse1) .cse2 .cse4 .cse5) (or .cse3 (not (= |old(~waterLevel~0)| 1))))) [2022-10-17 17:23:21,782 INFO L895 garLoopResultBuilder]: At program point L697-1(lines 678 702) the Hoare annotation is: (let ((.cse3 (= ~waterLevel~0 1)) (.cse4 (<= 1 ~switchedOnBeforeTS~0)) (.cse6 (not (= |old(~pumpRunning~0)| 1))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |timeShift_processEnvironment_~tmp~4#1| 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse8 (not (<= |old(~waterLevel~0)| 2))) (.cse7 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (= ~pumpRunning~0 1)) (.cse9 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse2 .cse3)) (or (and .cse4 .cse5) .cse6 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or (and (or .cse7 .cse3) .cse4 .cse5) .cse6 .cse8 .cse9) (or (and .cse1 .cse2 .cse7) .cse0 .cse8 (and .cse7 .cse5) .cse9))) [2022-10-17 17:23:21,783 INFO L895 garLoopResultBuilder]: At program point L817(line 817) the Hoare annotation is: (let ((.cse2 (= ~waterLevel~0 1)) (.cse6 (= ~pumpRunning~0 1)) (.cse3 (not (= |old(~pumpRunning~0)| 1))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (not (<= |old(~waterLevel~0)| 2))) (.cse7 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse2)) (or .cse3 .cse4 (and .cse5 .cse6) .cse7) (or (and (or .cse5 .cse2) (<= 1 ~switchedOnBeforeTS~0) .cse6) .cse3 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse0 (and .cse1 .cse5) .cse4 .cse7))) [2022-10-17 17:23:21,783 INFO L895 garLoopResultBuilder]: At program point L817-1(line 817) the Hoare annotation is: (let ((.cse2 (<= 1 |timeShift___utac_acc__Specification5_spec__2_#t~ret48#1|)) (.cse8 (= ~waterLevel~0 1)) (.cse4 (= ~pumpRunning~0 1)) (.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (= ~pumpRunning~0 0)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2))) (.cse5 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 (and .cse2 .cse3 .cse4) .cse5) (or .cse6 (not (= |old(~waterLevel~0)| 1)) (and .cse7 .cse8)) (or (and .cse2 (or .cse3 .cse8) (<= 1 ~switchedOnBeforeTS~0) .cse4) .cse0 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse6 (and .cse7 .cse3) .cse1 .cse5))) [2022-10-17 17:23:21,783 INFO L899 garLoopResultBuilder]: For program point L834(lines 834 844) no Hoare annotation was computed. [2022-10-17 17:23:21,783 INFO L899 garLoopResultBuilder]: For program point L830(lines 830 847) no Hoare annotation was computed. [2022-10-17 17:23:21,783 INFO L895 garLoopResultBuilder]: At program point L830-1(lines 822 850) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse10 (= ~waterLevel~0 1)) (.cse8 (<= 1 ~switchedOnBeforeTS~0)) (.cse5 (= ~pumpRunning~0 1)) (.cse9 (not (= |old(~pumpRunning~0)| 1))) (.cse6 (not (<= |old(~waterLevel~0)| 2))) (.cse7 (not (<= 2 |old(~waterLevel~0)|)))) (and (let ((.cse2 (< 1 |timeShift___utac_acc__Specification5_spec__3_~tmp~6#1|)) (.cse3 (<= |timeShift___utac_acc__Specification5_spec__3_~tmp~6#1| 2))) (or .cse0 (and .cse1 .cse2 .cse3 .cse4) (and .cse2 .cse3 .cse4 .cse5) .cse6 .cse7)) (or (and .cse8 .cse5) .cse9 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse10)) (or (and (or .cse4 .cse10) .cse8 .cse5) .cse9 .cse6 .cse7))) [2022-10-17 17:23:21,784 INFO L895 garLoopResultBuilder]: At program point L657-1(lines 657 663) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse8 (= ~waterLevel~0 1)) (.cse6 (<= 1 ~switchedOnBeforeTS~0)) (.cse4 (= ~pumpRunning~0 1)) (.cse7 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse5 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 (and .cse1 .cse2) .cse3 (and .cse2 .cse4) .cse5) (or (and .cse6 .cse4) .cse7 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse8)) (or (and (or .cse2 .cse8) .cse6 .cse4) .cse7 .cse3 .cse5))) [2022-10-17 17:23:21,784 INFO L895 garLoopResultBuilder]: At program point L686(lines 686 694) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|))) (.cse2 (not (= |old(~pumpRunning~0)| 1)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= |timeShift_processEnvironment_~tmp~4#1| 0) (= ~waterLevel~0 1))) (or .cse2 .cse3 .cse4) (or .cse0 (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse3 .cse4) (or .cse2 (not (<= 1 |old(~switchedOnBeforeTS~0)|))))) [2022-10-17 17:23:21,784 INFO L895 garLoopResultBuilder]: At program point L682(lines 682 699) the Hoare annotation is: (let ((.cse5 (= ~waterLevel~0 1)) (.cse0 (<= 1 ~switchedOnBeforeTS~0)) (.cse1 (= ~pumpRunning~0 1)) (.cse2 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= ~pumpRunning~0 0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse7 (not (<= |old(~waterLevel~0)| 2))) (.cse8 (not (<= 2 |old(~waterLevel~0)|)))) (and (or (and .cse0 .cse1) .cse2 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse3 (not (= |old(~waterLevel~0)| 1)) (and .cse4 .cse5)) (or (and (or .cse6 .cse5) .cse0 .cse1) .cse2 .cse7 .cse8) (or .cse3 (and .cse4 .cse6) .cse7 .cse8))) [2022-10-17 17:23:21,784 INFO L899 garLoopResultBuilder]: For program point L835(lines 835 841) no Hoare annotation was computed. [2022-10-17 17:23:21,785 INFO L895 garLoopResultBuilder]: At program point L92(line 92) the Hoare annotation is: (let ((.cse1 (not (<= |old(~waterLevel~0)| 2))) (.cse2 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= |old(~pumpRunning~0)| 1)))) (and (or .cse0 .cse1 .cse2) (or .cse3 .cse1 .cse2) (or .cse3 (not (= |old(~waterLevel~0)| 1))) (or .cse0 (not (<= 1 |old(~switchedOnBeforeTS~0)|))))) [2022-10-17 17:23:21,785 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 643 669) the Hoare annotation is: (let ((.cse2 (= ~waterLevel~0 1)) (.cse6 (= ~pumpRunning~0 1)) (.cse3 (not (= |old(~pumpRunning~0)| 1))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (not (<= |old(~waterLevel~0)| 2))) (.cse7 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse2)) (or .cse3 .cse4 (and .cse5 .cse6) .cse7) (or (and (or .cse5 .cse2) (<= 1 ~switchedOnBeforeTS~0) .cse6) .cse3 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (or .cse0 (and .cse1 .cse5) .cse4 .cse7))) [2022-10-17 17:23:21,785 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 643 669) no Hoare annotation was computed. [2022-10-17 17:23:21,785 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 92) no Hoare annotation was computed. [2022-10-17 17:23:21,785 INFO L899 garLoopResultBuilder]: For program point L650-2(lines 646 668) no Hoare annotation was computed. [2022-10-17 17:23:21,785 INFO L899 garLoopResultBuilder]: For program point L597(lines 597 603) no Hoare annotation was computed. [2022-10-17 17:23:21,786 INFO L895 garLoopResultBuilder]: At program point L597-1(lines 597 603) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 1)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (<= 2 ~waterLevel~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (<= ~waterLevel~0 2))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse0 .cse3 .cse2 .cse4 .cse5) (and .cse0 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse5) (and .cse0 .cse1 .cse3 .cse2 .cse4))) [2022-10-17 17:23:21,786 INFO L895 garLoopResultBuilder]: At program point L622(lines 577 624) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 1)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (<= 2 ~waterLevel~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (<= ~waterLevel~0 2))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse0 .cse3 .cse2 .cse4 .cse5) (and .cse0 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse5) (and .cse0 .cse1 .cse3 .cse2 .cse4))) [2022-10-17 17:23:21,795 INFO L895 garLoopResultBuilder]: At program point L589(line 589) the Hoare annotation is: (let ((.cse1 (<= 2 ~waterLevel~0)) (.cse3 (<= ~waterLevel~0 2)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 (let ((.cse5 (= ~pumpRunning~0 0))) (or (and .cse5 .cse2 (= ~waterLevel~0 1)) (and .cse5 .cse1 .cse2 .cse3)))) (and .cse0 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse4))) [2022-10-17 17:23:21,795 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-10-17 17:23:21,795 INFO L895 garLoopResultBuilder]: At program point L615-2(lines 607 620) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 1)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (<= 2 ~waterLevel~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (<= ~waterLevel~0 2))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse0 .cse3 .cse2 .cse4 .cse5) (and .cse0 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse5) (and .cse0 .cse1 .cse3 .cse2 .cse4))) [2022-10-17 17:23:21,796 INFO L899 garLoopResultBuilder]: For program point L578(lines 577 624) no Hoare annotation was computed. [2022-10-17 17:23:21,796 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-10-17 17:23:21,796 INFO L895 garLoopResultBuilder]: At program point L599(line 599) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 1)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (<= 2 ~waterLevel~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (<= ~waterLevel~0 2))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse0 .cse3 .cse2 .cse4 .cse5) (and .cse0 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse5) (and .cse0 .cse1 .cse3 .cse2 .cse4))) [2022-10-17 17:23:21,798 INFO L902 garLoopResultBuilder]: At program point L628(lines 567 632) the Hoare annotation is: true [2022-10-17 17:23:21,798 INFO L899 garLoopResultBuilder]: For program point L587(lines 587 593) no Hoare annotation was computed. [2022-10-17 17:23:21,798 INFO L899 garLoopResultBuilder]: For program point L587-1(lines 587 593) no Hoare annotation was computed. [2022-10-17 17:23:21,799 INFO L895 garLoopResultBuilder]: At program point L625(lines 576 626) the Hoare annotation is: false [2022-10-17 17:23:21,799 INFO L895 garLoopResultBuilder]: At program point L935(lines 935 942) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~7#1| 1) (= ~pumpRunning~0 0) (= ~waterLevel~0 1)) [2022-10-17 17:23:21,799 INFO L902 garLoopResultBuilder]: At program point L935-2(lines 935 942) the Hoare annotation is: true [2022-10-17 17:23:21,800 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 484 495) no Hoare annotation was computed. [2022-10-17 17:23:21,800 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 484 495) the Hoare annotation is: (let ((.cse1 (not (<= |old(~waterLevel~0)| 2))) (.cse2 (not (<= 2 |old(~waterLevel~0)|))) (.cse5 (not (= ~pumpRunning~0 1))) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (= ~waterLevel~0 1))) (and (or (let ((.cse0 (not (= ~pumpRunning~0 0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1))))) .cse3 .cse4) (or .cse5 .cse3 .cse1 .cse2) (or .cse5 .cse3 .cse4 (not (<= 1 ~switchedOnBeforeTS~0))))) [2022-10-17 17:23:21,800 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 730 738) no Hoare annotation was computed. [2022-10-17 17:23:21,801 INFO L902 garLoopResultBuilder]: At program point isPumpRunningENTRY(lines 730 738) the Hoare annotation is: true [2022-10-17 17:23:21,804 INFO L444 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1] [2022-10-17 17:23:21,808 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-10-17 17:23:21,855 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 17.10 05:23:21 BoogieIcfgContainer [2022-10-17 17:23:21,858 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-10-17 17:23:21,859 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-10-17 17:23:21,859 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-10-17 17:23:21,859 INFO L275 PluginConnector]: Witness Printer initialized [2022-10-17 17:23:21,860 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.10 05:22:58" (3/4) ... [2022-10-17 17:23:21,863 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-10-17 17:23:21,869 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-10-17 17:23:21,870 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-10-17 17:23:21,870 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-10-17 17:23:21,870 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-10-17 17:23:21,870 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-10-17 17:23:21,871 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2022-10-17 17:23:21,887 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 72 nodes and edges [2022-10-17 17:23:21,888 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 26 nodes and edges [2022-10-17 17:23:21,888 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2022-10-17 17:23:21,889 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-10-17 17:23:21,889 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-10-17 17:23:21,890 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-10-17 17:23:21,890 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-10-17 17:23:21,917 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 1) || !(\old(waterLevel) <= 2)) || ((1 <= aux-isPumpRunning()-aux && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && (((((1 <= aux-isPumpRunning()-aux && (\old(waterLevel) == waterLevel || waterLevel == 1)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-10-17 17:23:21,918 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-10-17 17:23:21,918 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && 1 < tmp) && tmp <= 2) && \old(waterLevel) == waterLevel)) || (((1 < tmp && tmp <= 2) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-10-17 17:23:21,918 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-10-17 17:23:21,919 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1))) && (!(\old(pumpRunning) == 1) || !(1 <= \old(switchedOnBeforeTS))) [2022-10-17 17:23:21,919 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && waterLevel == 1)) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel))) [2022-10-17 17:23:21,920 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && waterLevel == 1)) && ((!(\old(pumpRunning) == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 1) || !(1 <= \old(switchedOnBeforeTS))) [2022-10-17 17:23:21,943 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/witness.graphml [2022-10-17 17:23:21,943 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-10-17 17:23:21,944 INFO L158 Benchmark]: Toolchain (without parser) took 24581.23ms. Allocated memory was 144.7MB in the beginning and 459.3MB in the end (delta: 314.6MB). Free memory was 106.0MB in the beginning and 224.4MB in the end (delta: -118.4MB). Peak memory consumption was 195.2MB. Max. memory is 16.1GB. [2022-10-17 17:23:21,944 INFO L158 Benchmark]: CDTParser took 0.27ms. Allocated memory is still 144.7MB. Free memory is still 123.8MB. There was no memory consumed. Max. memory is 16.1GB. [2022-10-17 17:23:21,945 INFO L158 Benchmark]: CACSL2BoogieTranslator took 605.16ms. Allocated memory is still 144.7MB. Free memory was 105.9MB in the beginning and 109.7MB in the end (delta: -3.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2022-10-17 17:23:21,945 INFO L158 Benchmark]: Boogie Procedure Inliner took 77.54ms. Allocated memory is still 144.7MB. Free memory was 109.7MB in the beginning and 107.6MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-10-17 17:23:21,945 INFO L158 Benchmark]: Boogie Preprocessor took 35.26ms. Allocated memory is still 144.7MB. Free memory was 107.6MB in the beginning and 106.1MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-10-17 17:23:21,946 INFO L158 Benchmark]: RCFGBuilder took 726.60ms. Allocated memory is still 144.7MB. Free memory was 106.1MB in the beginning and 77.5MB in the end (delta: 28.6MB). Peak memory consumption was 29.4MB. Max. memory is 16.1GB. [2022-10-17 17:23:21,946 INFO L158 Benchmark]: TraceAbstraction took 23044.31ms. Allocated memory was 144.7MB in the beginning and 459.3MB in the end (delta: 314.6MB). Free memory was 77.5MB in the beginning and 229.7MB in the end (delta: -152.2MB). Peak memory consumption was 162.1MB. Max. memory is 16.1GB. [2022-10-17 17:23:21,946 INFO L158 Benchmark]: Witness Printer took 84.58ms. Allocated memory is still 459.3MB. Free memory was 229.7MB in the beginning and 224.4MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-10-17 17:23:21,948 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.27ms. Allocated memory is still 144.7MB. Free memory is still 123.8MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 605.16ms. Allocated memory is still 144.7MB. Free memory was 105.9MB in the beginning and 109.7MB in the end (delta: -3.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 77.54ms. Allocated memory is still 144.7MB. Free memory was 109.7MB in the beginning and 107.6MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 35.26ms. Allocated memory is still 144.7MB. Free memory was 107.6MB in the beginning and 106.1MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 726.60ms. Allocated memory is still 144.7MB. Free memory was 106.1MB in the beginning and 77.5MB in the end (delta: 28.6MB). Peak memory consumption was 29.4MB. Max. memory is 16.1GB. * TraceAbstraction took 23044.31ms. Allocated memory was 144.7MB in the beginning and 459.3MB in the end (delta: 314.6MB). Free memory was 77.5MB in the beginning and 229.7MB in the end (delta: -152.2MB). Peak memory consumption was 162.1MB. Max. memory is 16.1GB. * Witness Printer took 84.58ms. Allocated memory is still 459.3MB. Free memory was 229.7MB in the beginning and 224.4MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 92]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 51 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 22.9s, OverallIterations: 6, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.4s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 405 SdHoareTripleChecker+Valid, 0.9s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 390 mSDsluCounter, 1249 SdHoareTripleChecker+Invalid, 0.7s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1158 mSDsCounter, 168 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 821 IncrementalHoareTripleChecker+Invalid, 989 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 168 mSolverCounterUnsat, 336 mSDtfsCounter, 821 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 202 GetRequests, 130 SyntacticMatches, 4 SemanticMatches, 68 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 599 ImplicationChecksByTransitivity, 10.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=178occurred in iteration=5, InterpolantAutomatonStates: 48, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 6 MinimizatonAttempts, 34 StatesRemovedByMinimization, 3 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 31 LocationsWithAnnotation, 369 PreInvPairs, 439 NumberOfFragments, 1294 HoareAnnotationTreeSize, 369 FomulaSimplifications, 704 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 31 FomulaSimplificationsInter, 792 FormulaSimplificationTreeSizeReductionInter, 1.2s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.9s InterpolantComputationTime, 221 NumberOfCodeBlocks, 221 NumberOfCodeBlocksAsserted, 7 NumberOfCheckSat, 260 ConstructedInterpolants, 0 QuantifiedInterpolants, 693 SizeOfPredicates, 3 NumberOfNonLiveVariables, 401 ConjunctsInSsa, 8 ConjunctsInUnsatCore, 8 InterpolantComputations, 5 PerfectInterpolantSequences, 57/67 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 817]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 1) || !(\old(waterLevel) <= 2)) || ((1 <= aux-isPumpRunning()-aux && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && (((((1 <= aux-isPumpRunning()-aux && (\old(waterLevel) == waterLevel || waterLevel == 1)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 935]: Loop Invariant Derived loop invariant: (tmp == 1 && pumpRunning == 0) && waterLevel == 1 - InvariantResult [Line: 576]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 678]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && waterLevel == 1)) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 853]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 577]: Loop Invariant Derived loop invariant: (((((tmp == 1 && pumpRunning == 0) && splverifierCounter == 0) && waterLevel == 1) || ((((tmp == 1 && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && pumpRunning == 1)) || (((tmp == 1 && splverifierCounter == 0) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || ((((tmp == 1 && pumpRunning == 0) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) - InvariantResult [Line: 935]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 597]: Loop Invariant Derived loop invariant: (((((tmp == 1 && pumpRunning == 0) && splverifierCounter == 0) && waterLevel == 1) || ((((tmp == 1 && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && pumpRunning == 1)) || (((tmp == 1 && splverifierCounter == 0) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || ((((tmp == 1 && pumpRunning == 0) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) - InvariantResult [Line: 92]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1))) && (!(\old(pumpRunning) == 1) || !(1 <= \old(switchedOnBeforeTS))) - InvariantResult [Line: 657]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 686]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && waterLevel == 1)) && ((!(\old(pumpRunning) == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 1) || !(1 <= \old(switchedOnBeforeTS))) - InvariantResult [Line: 567]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 682]: Loop Invariant Derived loop invariant: (((((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 822]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && 1 < tmp) && tmp <= 2) && \old(waterLevel) == waterLevel)) || (((1 < tmp && tmp <= 2) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1))) && ((((((\old(waterLevel) == waterLevel || waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 863]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2022-10-17 17:23:22,004 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9c3a2510-840d-4d3a-9f04-0cb7b10ff0a2/bin/utaipan-G1rejxKTta/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE