./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 5e519f3a Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash e91d5c860cfea17112af53939b2fffb1e4c536355098377ab18c754994d1bc2b --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-5e519f3 [2022-11-03 02:43:42,553 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-03 02:43:42,554 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-03 02:43:42,588 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-03 02:43:42,588 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-03 02:43:42,590 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-03 02:43:42,591 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-03 02:43:42,593 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-03 02:43:42,595 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-03 02:43:42,596 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-03 02:43:42,597 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-03 02:43:42,598 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-03 02:43:42,598 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-03 02:43:42,600 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-03 02:43:42,601 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-03 02:43:42,602 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-03 02:43:42,603 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-03 02:43:42,604 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-03 02:43:42,606 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-03 02:43:42,608 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-03 02:43:42,610 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-03 02:43:42,612 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-03 02:43:42,613 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-03 02:43:42,614 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-03 02:43:42,619 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-03 02:43:42,619 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-03 02:43:42,620 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-03 02:43:42,621 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-03 02:43:42,622 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-03 02:43:42,623 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-03 02:43:42,623 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-03 02:43:42,624 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-03 02:43:42,625 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-03 02:43:42,626 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-03 02:43:42,628 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-03 02:43:42,628 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-03 02:43:42,629 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-03 02:43:42,629 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-03 02:43:42,630 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-03 02:43:42,631 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-03 02:43:42,632 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-03 02:43:42,633 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-11-03 02:43:42,661 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-03 02:43:42,662 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-03 02:43:42,662 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-03 02:43:42,662 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-03 02:43:42,663 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-03 02:43:42,663 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-03 02:43:42,664 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-03 02:43:42,664 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-03 02:43:42,664 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-03 02:43:42,665 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-03 02:43:42,665 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-03 02:43:42,665 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-03 02:43:42,666 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-03 02:43:42,666 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-03 02:43:42,666 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-03 02:43:42,666 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-03 02:43:42,667 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-03 02:43:42,667 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-03 02:43:42,668 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-03 02:43:42,668 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-03 02:43:42,669 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-03 02:43:42,669 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-03 02:43:42,669 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-03 02:43:42,669 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-03 02:43:42,670 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-03 02:43:42,670 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-03 02:43:42,670 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-03 02:43:42,671 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-03 02:43:42,671 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-03 02:43:42,671 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-03 02:43:42,671 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-03 02:43:42,672 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-03 02:43:42,672 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-03 02:43:42,678 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-03 02:43:42,679 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-03 02:43:42,679 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-03 02:43:42,679 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-03 02:43:42,679 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-03 02:43:42,680 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-03 02:43:42,680 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-03 02:43:42,680 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-03 02:43:42,681 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> e91d5c860cfea17112af53939b2fffb1e4c536355098377ab18c754994d1bc2b [2022-11-03 02:43:43,000 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-03 02:43:43,044 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-03 02:43:43,047 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-03 02:43:43,048 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-03 02:43:43,049 INFO L275 PluginConnector]: CDTParser initialized [2022-11-03 02:43:43,051 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/../../sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c [2022-11-03 02:43:43,127 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/data/ef40064d5/e73057ce92b143739e22da3287e3af66/FLAG4fe8412b9 [2022-11-03 02:43:43,679 INFO L306 CDTParser]: Found 1 translation units. [2022-11-03 02:43:43,680 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c [2022-11-03 02:43:43,693 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/data/ef40064d5/e73057ce92b143739e22da3287e3af66/FLAG4fe8412b9 [2022-11-03 02:43:43,985 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/data/ef40064d5/e73057ce92b143739e22da3287e3af66 [2022-11-03 02:43:43,990 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-03 02:43:43,992 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-03 02:43:43,999 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-03 02:43:43,999 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-03 02:43:44,003 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-03 02:43:44,004 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 03.11 02:43:43" (1/1) ... [2022-11-03 02:43:44,006 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@25d9563a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44, skipping insertion in model container [2022-11-03 02:43:44,007 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 03.11 02:43:43" (1/1) ... [2022-11-03 02:43:44,015 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-03 02:43:44,050 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-03 02:43:44,534 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c[15987,16000] [2022-11-03 02:43:44,553 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-03 02:43:44,564 INFO L203 MainTranslator]: Completed pre-run [2022-11-03 02:43:44,678 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c[15987,16000] [2022-11-03 02:43:44,706 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-03 02:43:44,727 INFO L208 MainTranslator]: Completed translation [2022-11-03 02:43:44,727 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44 WrapperNode [2022-11-03 02:43:44,727 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-03 02:43:44,729 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-03 02:43:44,729 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-03 02:43:44,730 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-03 02:43:44,738 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,755 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,790 INFO L138 Inliner]: procedures = 56, calls = 158, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 281 [2022-11-03 02:43:44,790 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-03 02:43:44,791 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-03 02:43:44,792 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-03 02:43:44,792 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-03 02:43:44,804 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,804 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,807 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,808 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,814 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,820 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,822 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,824 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,828 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-03 02:43:44,829 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-03 02:43:44,829 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-03 02:43:44,829 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-03 02:43:44,831 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (1/1) ... [2022-11-03 02:43:44,839 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-03 02:43:44,853 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:43:44,874 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-03 02:43:44,899 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-03 02:43:44,951 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-03 02:43:44,951 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-03 02:43:44,951 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-03 02:43:44,951 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-03 02:43:44,951 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-03 02:43:44,951 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-03 02:43:44,951 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-03 02:43:44,952 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 02:43:44,952 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 02:43:44,952 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-03 02:43:44,953 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-03 02:43:44,953 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2022-11-03 02:43:44,953 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2022-11-03 02:43:44,953 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-11-03 02:43:44,953 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-11-03 02:43:44,953 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-03 02:43:44,953 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-03 02:43:44,954 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-03 02:43:44,954 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-03 02:43:44,954 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-03 02:43:45,037 INFO L235 CfgBuilder]: Building ICFG [2022-11-03 02:43:45,038 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-03 02:43:45,585 INFO L276 CfgBuilder]: Performing block encoding [2022-11-03 02:43:45,706 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-03 02:43:45,706 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-03 02:43:45,709 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 02:43:45 BoogieIcfgContainer [2022-11-03 02:43:45,709 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-03 02:43:45,713 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-03 02:43:45,713 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-03 02:43:45,717 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-03 02:43:45,717 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 03.11 02:43:43" (1/3) ... [2022-11-03 02:43:45,718 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@77a6a7c6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 03.11 02:43:45, skipping insertion in model container [2022-11-03 02:43:45,718 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:43:44" (2/3) ... [2022-11-03 02:43:45,720 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@77a6a7c6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 03.11 02:43:45, skipping insertion in model container [2022-11-03 02:43:45,721 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 02:43:45" (3/3) ... [2022-11-03 02:43:45,722 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product53.cil.c [2022-11-03 02:43:45,748 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-03 02:43:45,748 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-03 02:43:45,824 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-03 02:43:45,831 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@487c8b47, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-03 02:43:45,831 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-03 02:43:45,836 INFO L276 IsEmpty]: Start isEmpty. Operand has 62 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 48 states have internal predecessors, (55), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) [2022-11-03 02:43:45,845 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2022-11-03 02:43:45,845 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:45,846 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:45,846 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:45,851 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:45,852 INFO L85 PathProgramCache]: Analyzing trace with hash 2066788619, now seen corresponding path program 1 times [2022-11-03 02:43:45,862 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:45,862 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1197148280] [2022-11-03 02:43:45,863 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:45,863 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:46,036 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:46,158 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:46,158 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:46,159 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1197148280] [2022-11-03 02:43:46,160 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1197148280] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:46,160 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:46,160 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-03 02:43:46,162 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1733916254] [2022-11-03 02:43:46,163 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:46,168 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-03 02:43:46,169 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:46,210 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-03 02:43:46,212 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-03 02:43:46,214 INFO L87 Difference]: Start difference. First operand has 62 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 48 states have internal predecessors, (55), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:43:46,318 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:46,318 INFO L93 Difference]: Finished difference Result 122 states and 167 transitions. [2022-11-03 02:43:46,320 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-03 02:43:46,321 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 12 [2022-11-03 02:43:46,322 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:46,331 INFO L225 Difference]: With dead ends: 122 [2022-11-03 02:43:46,332 INFO L226 Difference]: Without dead ends: 57 [2022-11-03 02:43:46,335 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-03 02:43:46,339 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 62 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:46,340 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 62 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:43:46,360 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2022-11-03 02:43:46,393 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 57. [2022-11-03 02:43:46,395 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 57 states, 35 states have (on average 1.3428571428571427) internal successors, (47), 44 states have internal predecessors, (47), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 8 states have call predecessors, (13), 13 states have call successors, (13) [2022-11-03 02:43:46,404 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 74 transitions. [2022-11-03 02:43:46,406 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 74 transitions. Word has length 12 [2022-11-03 02:43:46,407 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:46,407 INFO L495 AbstractCegarLoop]: Abstraction has 57 states and 74 transitions. [2022-11-03 02:43:46,409 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:43:46,409 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 74 transitions. [2022-11-03 02:43:46,414 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2022-11-03 02:43:46,414 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:46,415 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:46,415 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-03 02:43:46,416 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:46,418 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:46,418 INFO L85 PathProgramCache]: Analyzing trace with hash 1228171401, now seen corresponding path program 1 times [2022-11-03 02:43:46,419 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:46,419 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1725600800] [2022-11-03 02:43:46,420 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:46,420 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:46,446 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:46,529 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:46,529 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:46,529 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1725600800] [2022-11-03 02:43:46,530 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1725600800] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:46,530 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:46,530 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-03 02:43:46,530 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2047278712] [2022-11-03 02:43:46,530 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:46,532 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 02:43:46,532 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:46,533 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 02:43:46,533 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:43:46,533 INFO L87 Difference]: Start difference. First operand 57 states and 74 transitions. Second operand has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:43:46,618 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:46,618 INFO L93 Difference]: Finished difference Result 91 states and 119 transitions. [2022-11-03 02:43:46,619 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 02:43:46,620 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2022-11-03 02:43:46,620 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:46,623 INFO L225 Difference]: With dead ends: 91 [2022-11-03 02:43:46,623 INFO L226 Difference]: Without dead ends: 49 [2022-11-03 02:43:46,628 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:43:46,631 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 7 mSDsluCounter, 51 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 87 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:46,632 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 87 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-03 02:43:46,633 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 49 states. [2022-11-03 02:43:46,639 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 49 to 49. [2022-11-03 02:43:46,639 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 49 states, 30 states have (on average 1.3666666666666667) internal successors, (41), 39 states have internal predecessors, (41), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 6 states have call predecessors, (11), 11 states have call successors, (11) [2022-11-03 02:43:46,640 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 49 states to 49 states and 63 transitions. [2022-11-03 02:43:46,640 INFO L78 Accepts]: Start accepts. Automaton has 49 states and 63 transitions. Word has length 13 [2022-11-03 02:43:46,641 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:46,641 INFO L495 AbstractCegarLoop]: Abstraction has 49 states and 63 transitions. [2022-11-03 02:43:46,641 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:43:46,641 INFO L276 IsEmpty]: Start isEmpty. Operand 49 states and 63 transitions. [2022-11-03 02:43:46,642 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2022-11-03 02:43:46,642 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:46,645 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:46,646 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-03 02:43:46,646 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:46,646 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:46,647 INFO L85 PathProgramCache]: Analyzing trace with hash 1384655328, now seen corresponding path program 1 times [2022-11-03 02:43:46,647 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:46,648 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [895064346] [2022-11-03 02:43:46,648 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:46,649 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:46,690 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:46,784 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:46,785 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:46,785 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [895064346] [2022-11-03 02:43:46,785 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [895064346] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:46,786 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:46,787 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-03 02:43:46,788 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2099613337] [2022-11-03 02:43:46,788 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:46,788 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 02:43:46,789 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:46,789 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 02:43:46,790 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:43:46,790 INFO L87 Difference]: Start difference. First operand 49 states and 63 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:43:46,864 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:46,867 INFO L93 Difference]: Finished difference Result 96 states and 125 transitions. [2022-11-03 02:43:46,868 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 02:43:46,868 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 15 [2022-11-03 02:43:46,869 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:46,870 INFO L225 Difference]: With dead ends: 96 [2022-11-03 02:43:46,871 INFO L226 Difference]: Without dead ends: 49 [2022-11-03 02:43:46,873 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:43:46,877 INFO L413 NwaCegarLoop]: 46 mSDtfsCounter, 52 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 16 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 46 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 16 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:46,880 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 46 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 16 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-03 02:43:46,881 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 49 states. [2022-11-03 02:43:46,905 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 49 to 49. [2022-11-03 02:43:46,906 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 49 states, 30 states have (on average 1.3333333333333333) internal successors, (40), 39 states have internal predecessors, (40), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 6 states have call predecessors, (11), 11 states have call successors, (11) [2022-11-03 02:43:46,907 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 49 states to 49 states and 62 transitions. [2022-11-03 02:43:46,907 INFO L78 Accepts]: Start accepts. Automaton has 49 states and 62 transitions. Word has length 15 [2022-11-03 02:43:46,907 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:46,907 INFO L495 AbstractCegarLoop]: Abstraction has 49 states and 62 transitions. [2022-11-03 02:43:46,908 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:43:46,908 INFO L276 IsEmpty]: Start isEmpty. Operand 49 states and 62 transitions. [2022-11-03 02:43:46,909 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2022-11-03 02:43:46,909 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:46,909 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:46,910 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-03 02:43:46,910 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:46,910 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:46,910 INFO L85 PathProgramCache]: Analyzing trace with hash 16176383, now seen corresponding path program 1 times [2022-11-03 02:43:46,911 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:46,911 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [911616297] [2022-11-03 02:43:46,911 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:46,911 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:46,930 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:47,006 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:47,006 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:47,006 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [911616297] [2022-11-03 02:43:47,007 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [911616297] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:47,007 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:47,007 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-03 02:43:47,007 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1251904086] [2022-11-03 02:43:47,007 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:47,008 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 02:43:47,008 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:47,008 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 02:43:47,009 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:43:47,009 INFO L87 Difference]: Start difference. First operand 49 states and 62 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-03 02:43:47,097 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:47,097 INFO L93 Difference]: Finished difference Result 130 states and 170 transitions. [2022-11-03 02:43:47,098 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 02:43:47,098 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 21 [2022-11-03 02:43:47,098 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:47,104 INFO L225 Difference]: With dead ends: 130 [2022-11-03 02:43:47,104 INFO L226 Difference]: Without dead ends: 83 [2022-11-03 02:43:47,106 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:43:47,115 INFO L413 NwaCegarLoop]: 59 mSDtfsCounter, 37 mSDsluCounter, 44 mSDsCounter, 0 mSdLazyCounter, 32 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 97 SdHoareTripleChecker+Invalid, 38 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 32 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:47,115 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 97 Invalid, 38 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 32 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:43:47,116 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 83 states. [2022-11-03 02:43:47,144 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 83 to 81. [2022-11-03 02:43:47,145 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 53 states have (on average 1.2641509433962264) internal successors, (67), 61 states have internal predecessors, (67), 14 states have call successors, (14), 13 states have call predecessors, (14), 13 states have return successors, (20), 12 states have call predecessors, (20), 14 states have call successors, (20) [2022-11-03 02:43:47,151 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 101 transitions. [2022-11-03 02:43:47,151 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 101 transitions. Word has length 21 [2022-11-03 02:43:47,152 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:47,152 INFO L495 AbstractCegarLoop]: Abstraction has 81 states and 101 transitions. [2022-11-03 02:43:47,154 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-03 02:43:47,154 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 101 transitions. [2022-11-03 02:43:47,161 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2022-11-03 02:43:47,161 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:47,161 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:47,161 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-03 02:43:47,162 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:47,162 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:47,163 INFO L85 PathProgramCache]: Analyzing trace with hash -1946255968, now seen corresponding path program 1 times [2022-11-03 02:43:47,163 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:47,163 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [348384714] [2022-11-03 02:43:47,163 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:47,163 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:47,208 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:47,585 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:47,585 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:47,586 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [348384714] [2022-11-03 02:43:47,586 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [348384714] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:47,586 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:47,587 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-03 02:43:47,589 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [388924190] [2022-11-03 02:43:47,593 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:47,594 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-03 02:43:47,595 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:47,595 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-03 02:43:47,596 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2022-11-03 02:43:47,596 INFO L87 Difference]: Start difference. First operand 81 states and 101 transitions. Second operand has 5 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 3 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-03 02:43:47,784 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:47,784 INFO L93 Difference]: Finished difference Result 226 states and 280 transitions. [2022-11-03 02:43:47,785 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-03 02:43:47,788 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 3 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 28 [2022-11-03 02:43:47,789 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:47,794 INFO L225 Difference]: With dead ends: 226 [2022-11-03 02:43:47,794 INFO L226 Difference]: Without dead ends: 147 [2022-11-03 02:43:47,798 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=18, Invalid=24, Unknown=0, NotChecked=0, Total=42 [2022-11-03 02:43:47,803 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 57 mSDsluCounter, 168 mSDsCounter, 0 mSdLazyCounter, 82 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 57 SdHoareTripleChecker+Valid, 203 SdHoareTripleChecker+Invalid, 89 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 82 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:47,803 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [57 Valid, 203 Invalid, 89 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 82 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:43:47,804 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 147 states. [2022-11-03 02:43:47,827 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 147 to 122. [2022-11-03 02:43:47,828 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 122 states, 81 states have (on average 1.2098765432098766) internal successors, (98), 91 states have internal predecessors, (98), 19 states have call successors, (19), 18 states have call predecessors, (19), 21 states have return successors, (28), 19 states have call predecessors, (28), 19 states have call successors, (28) [2022-11-03 02:43:47,829 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 122 states to 122 states and 145 transitions. [2022-11-03 02:43:47,829 INFO L78 Accepts]: Start accepts. Automaton has 122 states and 145 transitions. Word has length 28 [2022-11-03 02:43:47,830 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:47,830 INFO L495 AbstractCegarLoop]: Abstraction has 122 states and 145 transitions. [2022-11-03 02:43:47,830 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 3 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-03 02:43:47,830 INFO L276 IsEmpty]: Start isEmpty. Operand 122 states and 145 transitions. [2022-11-03 02:43:47,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2022-11-03 02:43:47,831 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:47,831 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:47,832 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-03 02:43:47,832 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:47,832 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:47,832 INFO L85 PathProgramCache]: Analyzing trace with hash -1628976253, now seen corresponding path program 1 times [2022-11-03 02:43:47,832 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:47,833 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [780731140] [2022-11-03 02:43:47,833 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:47,833 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:47,852 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:48,214 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:48,215 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:48,215 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [780731140] [2022-11-03 02:43:48,215 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [780731140] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:48,215 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:48,216 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-03 02:43:48,216 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [52103097] [2022-11-03 02:43:48,216 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:48,218 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-03 02:43:48,218 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:48,218 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-03 02:43:48,218 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2022-11-03 02:43:48,219 INFO L87 Difference]: Start difference. First operand 122 states and 145 transitions. Second operand has 8 states, 7 states have (on average 3.4285714285714284) internal successors, (24), 7 states have internal predecessors, (24), 4 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-03 02:43:48,933 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:48,934 INFO L93 Difference]: Finished difference Result 296 states and 368 transitions. [2022-11-03 02:43:48,934 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2022-11-03 02:43:48,934 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.4285714285714284) internal successors, (24), 7 states have internal predecessors, (24), 4 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 31 [2022-11-03 02:43:48,935 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:48,939 INFO L225 Difference]: With dead ends: 296 [2022-11-03 02:43:48,939 INFO L226 Difference]: Without dead ends: 217 [2022-11-03 02:43:48,941 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2022-11-03 02:43:48,943 INFO L413 NwaCegarLoop]: 85 mSDtfsCounter, 136 mSDsluCounter, 280 mSDsCounter, 0 mSdLazyCounter, 493 mSolverCounterSat, 54 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 148 SdHoareTripleChecker+Valid, 305 SdHoareTripleChecker+Invalid, 547 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 54 IncrementalHoareTripleChecker+Valid, 493 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:48,944 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [148 Valid, 305 Invalid, 547 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [54 Valid, 493 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2022-11-03 02:43:48,945 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 217 states. [2022-11-03 02:43:49,015 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 217 to 198. [2022-11-03 02:43:49,016 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 198 states, 132 states have (on average 1.2121212121212122) internal successors, (160), 149 states have internal predecessors, (160), 31 states have call successors, (31), 27 states have call predecessors, (31), 34 states have return successors, (46), 32 states have call predecessors, (46), 31 states have call successors, (46) [2022-11-03 02:43:49,018 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 198 states to 198 states and 237 transitions. [2022-11-03 02:43:49,019 INFO L78 Accepts]: Start accepts. Automaton has 198 states and 237 transitions. Word has length 31 [2022-11-03 02:43:49,019 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:49,019 INFO L495 AbstractCegarLoop]: Abstraction has 198 states and 237 transitions. [2022-11-03 02:43:49,020 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.4285714285714284) internal successors, (24), 7 states have internal predecessors, (24), 4 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-03 02:43:49,020 INFO L276 IsEmpty]: Start isEmpty. Operand 198 states and 237 transitions. [2022-11-03 02:43:49,022 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2022-11-03 02:43:49,022 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:49,022 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:49,022 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-03 02:43:49,023 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:49,023 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:49,023 INFO L85 PathProgramCache]: Analyzing trace with hash -327777137, now seen corresponding path program 1 times [2022-11-03 02:43:49,024 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:49,024 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [249150986] [2022-11-03 02:43:49,024 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:49,024 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:49,060 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:49,205 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2022-11-03 02:43:49,205 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:49,205 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [249150986] [2022-11-03 02:43:49,206 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [249150986] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:49,206 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:49,206 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-03 02:43:49,206 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [25567545] [2022-11-03 02:43:49,206 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:49,207 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-03 02:43:49,207 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:49,208 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-03 02:43:49,208 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-03 02:43:49,208 INFO L87 Difference]: Start difference. First operand 198 states and 237 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 3 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2022-11-03 02:43:49,349 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:49,349 INFO L93 Difference]: Finished difference Result 525 states and 644 transitions. [2022-11-03 02:43:49,350 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-03 02:43:49,350 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 3 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 47 [2022-11-03 02:43:49,350 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:49,355 INFO L225 Difference]: With dead ends: 525 [2022-11-03 02:43:49,355 INFO L226 Difference]: Without dead ends: 439 [2022-11-03 02:43:49,356 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-03 02:43:49,357 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 65 mSDsluCounter, 140 mSDsCounter, 0 mSdLazyCounter, 56 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 66 SdHoareTripleChecker+Valid, 173 SdHoareTripleChecker+Invalid, 59 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 56 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:49,358 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [66 Valid, 173 Invalid, 59 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 56 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:43:49,359 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 439 states. [2022-11-03 02:43:49,431 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 439 to 399. [2022-11-03 02:43:49,432 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 399 states, 276 states have (on average 1.2246376811594204) internal successors, (338), 302 states have internal predecessors, (338), 55 states have call successors, (55), 49 states have call predecessors, (55), 67 states have return successors, (89), 63 states have call predecessors, (89), 55 states have call successors, (89) [2022-11-03 02:43:49,436 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 399 states to 399 states and 482 transitions. [2022-11-03 02:43:49,436 INFO L78 Accepts]: Start accepts. Automaton has 399 states and 482 transitions. Word has length 47 [2022-11-03 02:43:49,438 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:49,438 INFO L495 AbstractCegarLoop]: Abstraction has 399 states and 482 transitions. [2022-11-03 02:43:49,439 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 3 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2022-11-03 02:43:49,439 INFO L276 IsEmpty]: Start isEmpty. Operand 399 states and 482 transitions. [2022-11-03 02:43:49,447 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2022-11-03 02:43:49,447 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:49,448 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:49,448 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-03 02:43:49,449 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:49,449 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:49,449 INFO L85 PathProgramCache]: Analyzing trace with hash -112617442, now seen corresponding path program 1 times [2022-11-03 02:43:49,450 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:49,450 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1318822814] [2022-11-03 02:43:49,450 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:49,450 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:49,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:49,913 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:49,915 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:49,917 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1318822814] [2022-11-03 02:43:49,917 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1318822814] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:43:49,917 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:43:49,918 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2022-11-03 02:43:49,918 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1450218822] [2022-11-03 02:43:49,918 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:43:49,918 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2022-11-03 02:43:49,919 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:43:49,919 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2022-11-03 02:43:49,920 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=52, Unknown=0, NotChecked=0, Total=72 [2022-11-03 02:43:49,921 INFO L87 Difference]: Start difference. First operand 399 states and 482 transitions. Second operand has 9 states, 9 states have (on average 4.333333333333333) internal successors, (39), 8 states have internal predecessors, (39), 4 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2022-11-03 02:43:50,764 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:43:50,764 INFO L93 Difference]: Finished difference Result 737 states and 924 transitions. [2022-11-03 02:43:50,765 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2022-11-03 02:43:50,765 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 4.333333333333333) internal successors, (39), 8 states have internal predecessors, (39), 4 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 50 [2022-11-03 02:43:50,766 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:43:50,770 INFO L225 Difference]: With dead ends: 737 [2022-11-03 02:43:50,770 INFO L226 Difference]: Without dead ends: 546 [2022-11-03 02:43:50,771 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 48 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=97, Invalid=245, Unknown=0, NotChecked=0, Total=342 [2022-11-03 02:43:50,773 INFO L413 NwaCegarLoop]: 60 mSDtfsCounter, 239 mSDsluCounter, 95 mSDsCounter, 0 mSdLazyCounter, 310 mSolverCounterSat, 169 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 247 SdHoareTripleChecker+Valid, 133 SdHoareTripleChecker+Invalid, 479 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 169 IncrementalHoareTripleChecker+Valid, 310 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2022-11-03 02:43:50,773 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [247 Valid, 133 Invalid, 479 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [169 Valid, 310 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2022-11-03 02:43:50,774 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 546 states. [2022-11-03 02:43:50,869 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 546 to 491. [2022-11-03 02:43:50,871 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 491 states, 340 states have (on average 1.25) internal successors, (425), 372 states have internal predecessors, (425), 67 states have call successors, (67), 57 states have call predecessors, (67), 83 states have return successors, (123), 78 states have call predecessors, (123), 67 states have call successors, (123) [2022-11-03 02:43:50,875 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 491 states to 491 states and 615 transitions. [2022-11-03 02:43:50,876 INFO L78 Accepts]: Start accepts. Automaton has 491 states and 615 transitions. Word has length 50 [2022-11-03 02:43:50,876 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:43:50,876 INFO L495 AbstractCegarLoop]: Abstraction has 491 states and 615 transitions. [2022-11-03 02:43:50,876 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 4.333333333333333) internal successors, (39), 8 states have internal predecessors, (39), 4 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2022-11-03 02:43:50,876 INFO L276 IsEmpty]: Start isEmpty. Operand 491 states and 615 transitions. [2022-11-03 02:43:50,879 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2022-11-03 02:43:50,879 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:43:50,880 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:43:50,880 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-11-03 02:43:50,880 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:43:50,880 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:43:50,881 INFO L85 PathProgramCache]: Analyzing trace with hash -1132066367, now seen corresponding path program 1 times [2022-11-03 02:43:50,881 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:43:50,881 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [135362876] [2022-11-03 02:43:50,881 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:50,881 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:43:50,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:51,658 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 0 proven. 13 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:43:51,658 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:43:51,658 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [135362876] [2022-11-03 02:43:51,659 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [135362876] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:43:51,659 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1338408840] [2022-11-03 02:43:51,659 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:43:51,659 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:43:51,659 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:43:51,661 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:43:51,674 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-03 02:43:51,785 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:43:51,789 INFO L263 TraceCheckSpWp]: Trace formula consists of 404 conjuncts, 28 conjunts are in the unsatisfiable core [2022-11-03 02:43:51,795 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:43:52,236 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-03 02:43:52,237 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 02:43:52,903 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 1 proven. 8 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-03 02:43:52,904 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1338408840] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 02:43:52,904 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1915281504] [2022-11-03 02:43:52,924 INFO L159 IcfgInterpreter]: Started Sifa with 41 locations of interest [2022-11-03 02:43:52,925 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 02:43:52,929 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 02:43:52,935 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 02:43:52,935 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 02:44:01,850 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 309 for LOIs [2022-11-03 02:44:01,959 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 28 for LOIs [2022-11-03 02:44:02,109 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__lowWaterSensor with input of size 25 for LOIs [2022-11-03 02:44:02,150 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 25 for LOIs [2022-11-03 02:44:02,172 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 26 for LOIs [2022-11-03 02:44:02,176 INFO L197 IcfgInterpreter]: Interpreting procedure deactivatePump with input of size 29 for LOIs [2022-11-03 02:44:02,178 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 02:44:13,843 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '6277#(and (<= ~methaneLevelCritical~0 1) (<= 0 |old(~pumpRunning~0)|) (<= ~pumpRunning~0 1) (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp___0~3#1| 0)) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~4#1|) (= ~head~0.offset 0) (= |timeShift_getWaterLevel_~retValue_acc~10#1| ~waterLevel~0) (= 1 ~systemActive~0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| |timeShift_getWaterLevel_#res#1|) (<= 0 ~methaneLevelCritical~0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| 0) (<= 0 ~pumpRunning~0) (= ~head~0.base 0) (= |#NULL.offset| 0) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification4_spec__1_~tmp___0~3#1|) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~4#1|) (= |timeShift_getWaterLevel_~retValue_acc~10#1| |timeShift_getWaterLevel_#res#1|) (<= 0 |#StackHeapBarrier|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 02:44:13,843 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 02:44:13,843 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 02:44:13,843 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 9, 11] total 30 [2022-11-03 02:44:13,843 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [688267259] [2022-11-03 02:44:13,843 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 02:44:13,844 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2022-11-03 02:44:13,844 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:44:13,845 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2022-11-03 02:44:13,846 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=334, Invalid=3088, Unknown=0, NotChecked=0, Total=3422 [2022-11-03 02:44:13,846 INFO L87 Difference]: Start difference. First operand 491 states and 615 transitions. Second operand has 30 states, 27 states have (on average 3.6666666666666665) internal successors, (99), 27 states have internal predecessors, (99), 13 states have call successors, (19), 10 states have call predecessors, (19), 10 states have return successors, (17), 12 states have call predecessors, (17), 13 states have call successors, (17) [2022-11-03 02:44:18,675 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:44:18,675 INFO L93 Difference]: Finished difference Result 1305 states and 1701 transitions. [2022-11-03 02:44:18,675 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 63 states. [2022-11-03 02:44:18,676 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 27 states have (on average 3.6666666666666665) internal successors, (99), 27 states have internal predecessors, (99), 13 states have call successors, (19), 10 states have call predecessors, (19), 10 states have return successors, (17), 12 states have call predecessors, (17), 13 states have call successors, (17) Word has length 53 [2022-11-03 02:44:18,676 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:44:18,682 INFO L225 Difference]: With dead ends: 1305 [2022-11-03 02:44:18,682 INFO L226 Difference]: Without dead ends: 1002 [2022-11-03 02:44:18,687 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 242 GetRequests, 128 SyntacticMatches, 3 SemanticMatches, 111 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4401 ImplicationChecksByTransitivity, 15.0s TimeCoverageRelationStatistics Valid=1422, Invalid=11234, Unknown=0, NotChecked=0, Total=12656 [2022-11-03 02:44:18,689 INFO L413 NwaCegarLoop]: 106 mSDtfsCounter, 1231 mSDsluCounter, 721 mSDsCounter, 0 mSdLazyCounter, 1932 mSolverCounterSat, 835 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1236 SdHoareTripleChecker+Valid, 658 SdHoareTripleChecker+Invalid, 2767 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 835 IncrementalHoareTripleChecker+Valid, 1932 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.7s IncrementalHoareTripleChecker+Time [2022-11-03 02:44:18,690 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1236 Valid, 658 Invalid, 2767 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [835 Valid, 1932 Invalid, 0 Unknown, 0 Unchecked, 1.7s Time] [2022-11-03 02:44:18,691 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1002 states. [2022-11-03 02:44:18,759 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1002 to 450. [2022-11-03 02:44:18,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 450 states, 307 states have (on average 1.1693811074918568) internal successors, (359), 330 states have internal predecessors, (359), 62 states have call successors, (62), 60 states have call predecessors, (62), 80 states have return successors, (84), 74 states have call predecessors, (84), 62 states have call successors, (84) [2022-11-03 02:44:18,763 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 450 states to 450 states and 505 transitions. [2022-11-03 02:44:18,764 INFO L78 Accepts]: Start accepts. Automaton has 450 states and 505 transitions. Word has length 53 [2022-11-03 02:44:18,766 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:44:18,770 INFO L495 AbstractCegarLoop]: Abstraction has 450 states and 505 transitions. [2022-11-03 02:44:18,771 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 27 states have (on average 3.6666666666666665) internal successors, (99), 27 states have internal predecessors, (99), 13 states have call successors, (19), 10 states have call predecessors, (19), 10 states have return successors, (17), 12 states have call predecessors, (17), 13 states have call successors, (17) [2022-11-03 02:44:18,771 INFO L276 IsEmpty]: Start isEmpty. Operand 450 states and 505 transitions. [2022-11-03 02:44:18,772 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2022-11-03 02:44:18,773 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:44:18,773 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:44:18,819 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-11-03 02:44:18,998 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable8 [2022-11-03 02:44:18,999 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:44:18,999 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:44:19,000 INFO L85 PathProgramCache]: Analyzing trace with hash -1638342415, now seen corresponding path program 2 times [2022-11-03 02:44:19,000 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:44:19,000 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1377545837] [2022-11-03 02:44:19,000 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:44:19,000 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:44:19,038 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:44:19,852 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2022-11-03 02:44:19,853 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:44:19,853 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1377545837] [2022-11-03 02:44:19,853 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1377545837] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:44:19,853 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [661015921] [2022-11-03 02:44:19,853 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-03 02:44:19,853 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:44:19,854 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:44:19,855 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:44:19,875 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-11-03 02:44:19,948 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 1 check-sat command(s) [2022-11-03 02:44:19,948 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-03 02:44:19,950 INFO L263 TraceCheckSpWp]: Trace formula consists of 326 conjuncts, 15 conjunts are in the unsatisfiable core [2022-11-03 02:44:19,956 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:44:20,055 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 41 trivial. 0 not checked. [2022-11-03 02:44:20,056 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2022-11-03 02:44:20,056 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [661015921] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:44:20,056 INFO L184 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2022-11-03 02:44:20,056 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [18] total 21 [2022-11-03 02:44:20,057 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1674091975] [2022-11-03 02:44:20,057 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:44:20,057 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-03 02:44:20,057 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:44:20,058 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-03 02:44:20,058 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=63, Invalid=357, Unknown=0, NotChecked=0, Total=420 [2022-11-03 02:44:20,058 INFO L87 Difference]: Start difference. First operand 450 states and 505 transitions. Second operand has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (8), 2 states have call predecessors, (8), 1 states have call successors, (8) [2022-11-03 02:44:20,235 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:44:20,235 INFO L93 Difference]: Finished difference Result 885 states and 1009 transitions. [2022-11-03 02:44:20,235 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-03 02:44:20,236 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (8), 2 states have call predecessors, (8), 1 states have call successors, (8) Word has length 79 [2022-11-03 02:44:20,237 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:44:20,240 INFO L225 Difference]: With dead ends: 885 [2022-11-03 02:44:20,240 INFO L226 Difference]: Without dead ends: 498 [2022-11-03 02:44:20,242 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 100 GetRequests, 79 SyntacticMatches, 0 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 121 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=76, Invalid=430, Unknown=0, NotChecked=0, Total=506 [2022-11-03 02:44:20,243 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 23 mSDsluCounter, 181 mSDsCounter, 0 mSdLazyCounter, 92 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 204 SdHoareTripleChecker+Invalid, 94 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 92 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:44:20,244 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 204 Invalid, 94 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 92 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:44:20,245 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 498 states. [2022-11-03 02:44:20,306 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 498 to 448. [2022-11-03 02:44:20,307 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 448 states, 305 states have (on average 1.157377049180328) internal successors, (353), 328 states have internal predecessors, (353), 62 states have call successors, (62), 60 states have call predecessors, (62), 80 states have return successors, (84), 74 states have call predecessors, (84), 62 states have call successors, (84) [2022-11-03 02:44:20,309 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 448 states to 448 states and 499 transitions. [2022-11-03 02:44:20,310 INFO L78 Accepts]: Start accepts. Automaton has 448 states and 499 transitions. Word has length 79 [2022-11-03 02:44:20,310 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:44:20,310 INFO L495 AbstractCegarLoop]: Abstraction has 448 states and 499 transitions. [2022-11-03 02:44:20,311 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (8), 2 states have call predecessors, (8), 1 states have call successors, (8) [2022-11-03 02:44:20,311 INFO L276 IsEmpty]: Start isEmpty. Operand 448 states and 499 transitions. [2022-11-03 02:44:20,314 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 83 [2022-11-03 02:44:20,314 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:44:20,314 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:44:20,357 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-11-03 02:44:20,534 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:44:20,535 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:44:20,535 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:44:20,535 INFO L85 PathProgramCache]: Analyzing trace with hash -1865703158, now seen corresponding path program 1 times [2022-11-03 02:44:20,535 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:44:20,535 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1498783230] [2022-11-03 02:44:20,536 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:44:20,536 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:44:20,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:44:21,373 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2022-11-03 02:44:21,373 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:44:21,373 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1498783230] [2022-11-03 02:44:21,373 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1498783230] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:44:21,373 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [604494499] [2022-11-03 02:44:21,373 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:44:21,373 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:44:21,374 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:44:21,375 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:44:21,398 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-11-03 02:44:21,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:44:21,496 INFO L263 TraceCheckSpWp]: Trace formula consists of 489 conjuncts, 22 conjunts are in the unsatisfiable core [2022-11-03 02:44:21,499 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:44:21,631 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 39 proven. 1 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-03 02:44:21,631 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 02:44:21,775 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 29 proven. 1 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2022-11-03 02:44:21,776 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [604494499] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 02:44:21,776 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1112297562] [2022-11-03 02:44:21,781 INFO L159 IcfgInterpreter]: Started Sifa with 44 locations of interest [2022-11-03 02:44:21,782 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 02:44:21,782 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 02:44:21,783 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 02:44:21,783 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 02:44:29,207 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 309 for LOIs [2022-11-03 02:44:29,318 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 28 for LOIs [2022-11-03 02:44:29,471 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__lowWaterSensor with input of size 25 for LOIs [2022-11-03 02:44:29,517 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 25 for LOIs [2022-11-03 02:44:29,641 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 26 for LOIs [2022-11-03 02:44:29,644 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 26 for LOIs [2022-11-03 02:44:29,646 INFO L197 IcfgInterpreter]: Interpreting procedure deactivatePump with input of size 29 for LOIs [2022-11-03 02:44:29,648 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 02:44:41,912 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '11992#(and (<= ~methaneLevelCritical~0 1) (<= 0 |old(~pumpRunning~0)|) (<= ~pumpRunning~0 1) (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp___0~3#1| 0)) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~4#1|) (= ~head~0.offset 0) (<= 1 ~systemActive~0) (= |timeShift_getWaterLevel_~retValue_acc~10#1| ~waterLevel~0) (<= |#NULL.offset| 0) (<= 0 ~head~0.base) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| |timeShift_getWaterLevel_#res#1|) (<= 0 ~methaneLevelCritical~0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| 0) (<= 0 ~pumpRunning~0) (<= ~head~0.base 0) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification4_spec__1_~tmp___0~3#1|) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~4#1|) (<= 0 |#NULL.offset|) (= |timeShift_getWaterLevel_~retValue_acc~10#1| |timeShift_getWaterLevel_#res#1|) (<= 0 |#StackHeapBarrier|) (<= ~systemActive~0 1) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 02:44:41,912 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 02:44:41,912 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 02:44:41,912 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 6, 6] total 23 [2022-11-03 02:44:41,912 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1223212344] [2022-11-03 02:44:41,913 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 02:44:41,913 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2022-11-03 02:44:41,913 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:44:41,914 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2022-11-03 02:44:41,915 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=268, Invalid=2594, Unknown=0, NotChecked=0, Total=2862 [2022-11-03 02:44:41,915 INFO L87 Difference]: Start difference. First operand 448 states and 499 transitions. Second operand has 23 states, 21 states have (on average 4.9523809523809526) internal successors, (104), 21 states have internal predecessors, (104), 9 states have call successors, (20), 5 states have call predecessors, (20), 7 states have return successors, (20), 9 states have call predecessors, (20), 8 states have call successors, (20) [2022-11-03 02:44:45,766 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:44:45,766 INFO L93 Difference]: Finished difference Result 1358 states and 1566 transitions. [2022-11-03 02:44:45,771 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 56 states. [2022-11-03 02:44:45,771 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 21 states have (on average 4.9523809523809526) internal successors, (104), 21 states have internal predecessors, (104), 9 states have call successors, (20), 5 states have call predecessors, (20), 7 states have return successors, (20), 9 states have call predecessors, (20), 8 states have call successors, (20) Word has length 82 [2022-11-03 02:44:45,772 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:44:45,777 INFO L225 Difference]: With dead ends: 1358 [2022-11-03 02:44:45,777 INFO L226 Difference]: Without dead ends: 973 [2022-11-03 02:44:45,782 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 324 GetRequests, 216 SyntacticMatches, 7 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3616 ImplicationChecksByTransitivity, 14.7s TimeCoverageRelationStatistics Valid=1080, Invalid=9426, Unknown=0, NotChecked=0, Total=10506 [2022-11-03 02:44:45,782 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 1045 mSDsluCounter, 523 mSDsCounter, 0 mSdLazyCounter, 1686 mSolverCounterSat, 695 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1052 SdHoareTripleChecker+Valid, 472 SdHoareTripleChecker+Invalid, 2381 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 695 IncrementalHoareTripleChecker+Valid, 1686 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2022-11-03 02:44:45,783 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1052 Valid, 472 Invalid, 2381 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [695 Valid, 1686 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2022-11-03 02:44:45,784 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 973 states. [2022-11-03 02:44:45,879 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 973 to 713. [2022-11-03 02:44:45,880 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 713 states, 480 states have (on average 1.14375) internal successors, (549), 522 states have internal predecessors, (549), 99 states have call successors, (99), 95 states have call predecessors, (99), 133 states have return successors, (149), 116 states have call predecessors, (149), 99 states have call successors, (149) [2022-11-03 02:44:45,883 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 713 states to 713 states and 797 transitions. [2022-11-03 02:44:45,884 INFO L78 Accepts]: Start accepts. Automaton has 713 states and 797 transitions. Word has length 82 [2022-11-03 02:44:45,884 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:44:45,885 INFO L495 AbstractCegarLoop]: Abstraction has 713 states and 797 transitions. [2022-11-03 02:44:45,885 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 21 states have (on average 4.9523809523809526) internal successors, (104), 21 states have internal predecessors, (104), 9 states have call successors, (20), 5 states have call predecessors, (20), 7 states have return successors, (20), 9 states have call predecessors, (20), 8 states have call successors, (20) [2022-11-03 02:44:45,885 INFO L276 IsEmpty]: Start isEmpty. Operand 713 states and 797 transitions. [2022-11-03 02:44:45,886 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 84 [2022-11-03 02:44:45,887 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:44:45,887 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:44:45,919 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-11-03 02:44:46,102 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:44:46,103 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:44:46,103 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:44:46,103 INFO L85 PathProgramCache]: Analyzing trace with hash -1673710427, now seen corresponding path program 1 times [2022-11-03 02:44:46,103 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:44:46,103 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1869537173] [2022-11-03 02:44:46,104 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:44:46,104 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:44:46,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:44:46,265 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 44 trivial. 0 not checked. [2022-11-03 02:44:46,265 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:44:46,265 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1869537173] [2022-11-03 02:44:46,266 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1869537173] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:44:46,266 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:44:46,266 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-03 02:44:46,266 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [173254421] [2022-11-03 02:44:46,266 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:44:46,267 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-03 02:44:46,267 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:44:46,267 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-03 02:44:46,268 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-03 02:44:46,268 INFO L87 Difference]: Start difference. First operand 713 states and 797 transitions. Second operand has 4 states, 4 states have (on average 9.75) internal successors, (39), 4 states have internal predecessors, (39), 1 states have call successors, (9), 1 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 1 states have call successors, (9) [2022-11-03 02:44:46,420 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:44:46,420 INFO L93 Difference]: Finished difference Result 715 states and 798 transitions. [2022-11-03 02:44:46,421 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-03 02:44:46,421 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.75) internal successors, (39), 4 states have internal predecessors, (39), 1 states have call successors, (9), 1 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 1 states have call successors, (9) Word has length 83 [2022-11-03 02:44:46,422 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:44:46,424 INFO L225 Difference]: With dead ends: 715 [2022-11-03 02:44:46,425 INFO L226 Difference]: Without dead ends: 713 [2022-11-03 02:44:46,425 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-03 02:44:46,426 INFO L413 NwaCegarLoop]: 56 mSDtfsCounter, 44 mSDsluCounter, 113 mSDsCounter, 0 mSdLazyCounter, 54 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 44 SdHoareTripleChecker+Valid, 150 SdHoareTripleChecker+Invalid, 56 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 54 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-03 02:44:46,426 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [44 Valid, 150 Invalid, 56 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 54 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-03 02:44:46,428 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 713 states. [2022-11-03 02:44:46,559 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 713 to 713. [2022-11-03 02:44:46,560 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 713 states, 480 states have (on average 1.1354166666666667) internal successors, (545), 522 states have internal predecessors, (545), 99 states have call successors, (99), 95 states have call predecessors, (99), 133 states have return successors, (149), 116 states have call predecessors, (149), 99 states have call successors, (149) [2022-11-03 02:44:46,563 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 713 states to 713 states and 793 transitions. [2022-11-03 02:44:46,564 INFO L78 Accepts]: Start accepts. Automaton has 713 states and 793 transitions. Word has length 83 [2022-11-03 02:44:46,564 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:44:46,564 INFO L495 AbstractCegarLoop]: Abstraction has 713 states and 793 transitions. [2022-11-03 02:44:46,564 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.75) internal successors, (39), 4 states have internal predecessors, (39), 1 states have call successors, (9), 1 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 1 states have call successors, (9) [2022-11-03 02:44:46,565 INFO L276 IsEmpty]: Start isEmpty. Operand 713 states and 793 transitions. [2022-11-03 02:44:46,566 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 92 [2022-11-03 02:44:46,566 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:44:46,567 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:44:46,567 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2022-11-03 02:44:46,567 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:44:46,567 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:44:46,567 INFO L85 PathProgramCache]: Analyzing trace with hash -544063413, now seen corresponding path program 1 times [2022-11-03 02:44:46,568 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:44:46,568 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1908915243] [2022-11-03 02:44:46,568 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:44:46,568 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:44:46,596 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:44:47,417 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 28 proven. 26 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2022-11-03 02:44:47,417 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:44:47,417 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1908915243] [2022-11-03 02:44:47,417 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1908915243] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:44:47,417 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [454789185] [2022-11-03 02:44:47,418 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:44:47,418 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:44:47,418 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:44:47,419 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:44:47,442 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2022-11-03 02:44:47,552 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:44:47,554 INFO L263 TraceCheckSpWp]: Trace formula consists of 534 conjuncts, 18 conjunts are in the unsatisfiable core [2022-11-03 02:44:47,557 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:44:47,666 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 60 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-03 02:44:47,666 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2022-11-03 02:44:47,666 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [454789185] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:44:47,666 INFO L184 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2022-11-03 02:44:47,666 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [16] total 19 [2022-11-03 02:44:47,667 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1683518538] [2022-11-03 02:44:47,667 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:44:47,667 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-03 02:44:47,667 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:44:47,668 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-03 02:44:47,668 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=49, Invalid=293, Unknown=0, NotChecked=0, Total=342 [2022-11-03 02:44:47,668 INFO L87 Difference]: Start difference. First operand 713 states and 793 transitions. Second operand has 5 states, 5 states have (on average 12.0) internal successors, (60), 5 states have internal predecessors, (60), 3 states have call successors, (11), 3 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2022-11-03 02:44:47,974 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:44:47,974 INFO L93 Difference]: Finished difference Result 1494 states and 1689 transitions. [2022-11-03 02:44:47,974 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-03 02:44:47,975 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 12.0) internal successors, (60), 5 states have internal predecessors, (60), 3 states have call successors, (11), 3 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) Word has length 91 [2022-11-03 02:44:47,975 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:44:47,979 INFO L225 Difference]: With dead ends: 1494 [2022-11-03 02:44:47,979 INFO L226 Difference]: Without dead ends: 778 [2022-11-03 02:44:47,982 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 111 GetRequests, 92 SyntacticMatches, 0 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 93 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=61, Invalid=359, Unknown=0, NotChecked=0, Total=420 [2022-11-03 02:44:47,983 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 49 mSDsluCounter, 220 mSDsCounter, 0 mSdLazyCounter, 139 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 50 SdHoareTripleChecker+Valid, 258 SdHoareTripleChecker+Invalid, 146 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 139 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:44:47,983 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [50 Valid, 258 Invalid, 146 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 139 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:44:47,984 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 778 states. [2022-11-03 02:44:48,090 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 778 to 770. [2022-11-03 02:44:48,091 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 770 states, 529 states have (on average 1.1323251417769375) internal successors, (599), 568 states have internal predecessors, (599), 108 states have call successors, (108), 104 states have call predecessors, (108), 132 states have return successors, (150), 120 states have call predecessors, (150), 108 states have call successors, (150) [2022-11-03 02:44:48,094 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 770 states to 770 states and 857 transitions. [2022-11-03 02:44:48,094 INFO L78 Accepts]: Start accepts. Automaton has 770 states and 857 transitions. Word has length 91 [2022-11-03 02:44:48,095 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:44:48,095 INFO L495 AbstractCegarLoop]: Abstraction has 770 states and 857 transitions. [2022-11-03 02:44:48,095 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 12.0) internal successors, (60), 5 states have internal predecessors, (60), 3 states have call successors, (11), 3 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2022-11-03 02:44:48,095 INFO L276 IsEmpty]: Start isEmpty. Operand 770 states and 857 transitions. [2022-11-03 02:44:48,097 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 110 [2022-11-03 02:44:48,097 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:44:48,097 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:44:48,137 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2022-11-03 02:44:48,310 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2022-11-03 02:44:48,311 INFO L420 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:44:48,311 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:44:48,311 INFO L85 PathProgramCache]: Analyzing trace with hash -1747543467, now seen corresponding path program 2 times [2022-11-03 02:44:48,311 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:44:48,312 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2097960385] [2022-11-03 02:44:48,312 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:44:48,312 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:44:48,345 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:44:48,560 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 18 proven. 45 refuted. 0 times theorem prover too weak. 49 trivial. 0 not checked. [2022-11-03 02:44:48,561 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:44:48,561 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2097960385] [2022-11-03 02:44:48,561 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2097960385] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:44:48,561 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [819481607] [2022-11-03 02:44:48,561 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2022-11-03 02:44:48,562 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:44:48,562 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:44:48,563 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:44:48,585 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2022-11-03 02:44:48,676 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2022-11-03 02:44:48,677 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-03 02:44:48,679 INFO L263 TraceCheckSpWp]: Trace formula consists of 427 conjuncts, 32 conjunts are in the unsatisfiable core [2022-11-03 02:44:48,682 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:44:48,877 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 64 proven. 7 refuted. 0 times theorem prover too weak. 41 trivial. 0 not checked. [2022-11-03 02:44:48,877 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 02:44:49,374 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 52 proven. 7 refuted. 0 times theorem prover too weak. 53 trivial. 0 not checked. [2022-11-03 02:44:49,375 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [819481607] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 02:44:49,375 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1505381810] [2022-11-03 02:44:49,377 INFO L159 IcfgInterpreter]: Started Sifa with 47 locations of interest [2022-11-03 02:44:49,378 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 02:44:49,378 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 02:44:49,379 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 02:44:49,379 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 02:44:55,997 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 307 for LOIs [2022-11-03 02:44:56,056 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 27 for LOIs [2022-11-03 02:44:56,221 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__lowWaterSensor with input of size 50 for LOIs [2022-11-03 02:44:56,687 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 60 for LOIs [2022-11-03 02:44:56,870 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 41 for LOIs [2022-11-03 02:44:56,877 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 33 for LOIs [2022-11-03 02:44:56,879 INFO L197 IcfgInterpreter]: Interpreting procedure deactivatePump with input of size 28 for LOIs [2022-11-03 02:44:56,882 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 02:45:09,978 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '22026#(and (<= ~methaneLevelCritical~0 1) (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp___0~3#1| 0)) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~4#1|) (= ~head~0.offset 0) (= |timeShift_getWaterLevel_~retValue_acc~10#1| ~waterLevel~0) (<= |timeShift_isPumpRunning_#res#1| 2147483647) (= 1 ~systemActive~0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| |timeShift_getWaterLevel_#res#1|) (<= 0 ~methaneLevelCritical~0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| 0) (= ~head~0.base 0) (= |#NULL.offset| 0) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification4_spec__1_~tmp___0~3#1|) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~4#1|) (<= 0 (+ |timeShift_isPumpRunning_#res#1| 2147483648)) (= |timeShift_getWaterLevel_~retValue_acc~10#1| |timeShift_getWaterLevel_#res#1|) (<= 0 |#StackHeapBarrier|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 02:45:09,978 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 02:45:09,979 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 02:45:09,979 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 8, 9] total 22 [2022-11-03 02:45:09,979 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1084558523] [2022-11-03 02:45:09,979 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 02:45:09,980 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2022-11-03 02:45:09,980 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:45:09,980 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2022-11-03 02:45:09,981 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=320, Invalid=2872, Unknown=0, NotChecked=0, Total=3192 [2022-11-03 02:45:09,982 INFO L87 Difference]: Start difference. First operand 770 states and 857 transitions. Second operand has 22 states, 21 states have (on average 5.619047619047619) internal successors, (118), 21 states have internal predecessors, (118), 10 states have call successors, (21), 6 states have call predecessors, (21), 7 states have return successors, (24), 11 states have call predecessors, (24), 8 states have call successors, (24) [2022-11-03 02:45:13,274 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:45:13,274 INFO L93 Difference]: Finished difference Result 1633 states and 1898 transitions. [2022-11-03 02:45:13,274 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 55 states. [2022-11-03 02:45:13,275 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 21 states have (on average 5.619047619047619) internal successors, (118), 21 states have internal predecessors, (118), 10 states have call successors, (21), 6 states have call predecessors, (21), 7 states have return successors, (24), 11 states have call predecessors, (24), 8 states have call successors, (24) Word has length 109 [2022-11-03 02:45:13,275 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:45:13,276 INFO L225 Difference]: With dead ends: 1633 [2022-11-03 02:45:13,276 INFO L226 Difference]: Without dead ends: 0 [2022-11-03 02:45:13,283 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 396 GetRequests, 277 SyntacticMatches, 12 SemanticMatches, 107 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4449 ImplicationChecksByTransitivity, 14.8s TimeCoverageRelationStatistics Valid=1193, Invalid=10579, Unknown=0, NotChecked=0, Total=11772 [2022-11-03 02:45:13,283 INFO L413 NwaCegarLoop]: 71 mSDtfsCounter, 751 mSDsluCounter, 357 mSDsCounter, 0 mSdLazyCounter, 1854 mSolverCounterSat, 695 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 752 SdHoareTripleChecker+Valid, 335 SdHoareTripleChecker+Invalid, 2549 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 695 IncrementalHoareTripleChecker+Valid, 1854 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2022-11-03 02:45:13,284 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [752 Valid, 335 Invalid, 2549 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [695 Valid, 1854 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2022-11-03 02:45:13,284 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-03 02:45:13,284 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-03 02:45:13,285 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:45:13,285 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-03 02:45:13,285 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 109 [2022-11-03 02:45:13,285 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:45:13,286 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-03 02:45:13,286 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 21 states have (on average 5.619047619047619) internal successors, (118), 21 states have internal predecessors, (118), 10 states have call successors, (21), 6 states have call predecessors, (21), 7 states have return successors, (24), 11 states have call predecessors, (24), 8 states have call successors, (24) [2022-11-03 02:45:13,286 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-03 02:45:13,286 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-03 02:45:13,289 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-03 02:45:13,334 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2022-11-03 02:45:13,502 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:45:13,504 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-03 02:45:31,206 INFO L895 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 615 622) the Hoare annotation is: (or (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 1)) (= ~pumpRunning~0 1)) [2022-11-03 02:45:31,206 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 615 622) no Hoare annotation was computed. [2022-11-03 02:45:31,206 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 522 528) no Hoare annotation was computed. [2022-11-03 02:45:31,206 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 522 528) the Hoare annotation is: true [2022-11-03 02:45:31,207 INFO L895 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 792 803) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0)) (.cse3 (not (<= 2 ~waterLevel~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2) (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse2 .cse3 (not (= ~pumpRunning~0 1))))) [2022-11-03 02:45:31,207 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 792 803) no Hoare annotation was computed. [2022-11-03 02:45:31,207 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 896 925) no Hoare annotation was computed. [2022-11-03 02:45:31,207 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 896 925) the Hoare annotation is: true [2022-11-03 02:45:31,208 INFO L902 garLoopResultBuilder]: At program point L921(lines 896 925) the Hoare annotation is: true [2022-11-03 02:45:31,208 INFO L899 garLoopResultBuilder]: For program point L917(line 917) no Hoare annotation was computed. [2022-11-03 02:45:31,208 INFO L899 garLoopResultBuilder]: For program point L910(lines 910 914) no Hoare annotation was computed. [2022-11-03 02:45:31,208 INFO L902 garLoopResultBuilder]: At program point L910-1(lines 910 914) the Hoare annotation is: true [2022-11-03 02:45:31,208 INFO L902 garLoopResultBuilder]: At program point L906-2(lines 906 920) the Hoare annotation is: true [2022-11-03 02:45:31,208 INFO L902 garLoopResultBuilder]: At program point L902(line 902) the Hoare annotation is: true [2022-11-03 02:45:31,209 INFO L899 garLoopResultBuilder]: For program point L902-1(line 902) no Hoare annotation was computed. [2022-11-03 02:45:31,209 INFO L895 garLoopResultBuilder]: At program point L601(line 601) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 (not (<= 1 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (not (<= 2 |old(~waterLevel~0)|))))) [2022-11-03 02:45:31,209 INFO L895 garLoopResultBuilder]: At program point L601-1(lines 582 606) the Hoare annotation is: (let ((.cse7 (= ~methaneLevelCritical~0 0))) (let ((.cse5 (not .cse7)) (.cse12 (<= 2 ~waterLevel~0)) (.cse11 (= 1 ~systemActive~0)) (.cse13 (= |old(~pumpRunning~0)| 0)) (.cse15 (= ~pumpRunning~0 1)) (.cse2 (= ~pumpRunning~0 0)) (.cse14 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse8 (and .cse2 .cse14)) (.cse10 (not (<= 1 |old(~waterLevel~0)|))) (.cse6 (and .cse7 .cse12 .cse11 .cse13 .cse14 .cse15)) (.cse4 (not .cse13)) (.cse9 (and .cse12 .cse11 .cse13 .cse5 .cse14 .cse15)) (.cse0 (not .cse11)) (.cse3 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 (and .cse2 (= |old(~waterLevel~0)| (+ ~waterLevel~0 1))) .cse3) (or .cse4 .cse0 .cse5 .cse6 .cse3) (or .cse7 .cse0 .cse1 (not (= |timeShift_processEnvironment_~tmp~6#1| 0)) .cse3) (or .cse4 .cse8 .cse7 .cse9 .cse0 .cse10) (or .cse4 .cse8 .cse0 .cse10 .cse5 .cse6) (or .cse4 .cse7 .cse9 .cse0 .cse3))))) [2022-11-03 02:45:31,210 INFO L899 garLoopResultBuilder]: For program point L502-1(lines 501 520) no Hoare annotation was computed. [2022-11-03 02:45:31,210 INFO L899 garLoopResultBuilder]: For program point L590(lines 590 598) no Hoare annotation was computed. [2022-11-03 02:45:31,210 INFO L895 garLoopResultBuilder]: At program point L586(lines 586 603) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 (not (<= 1 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (= ~pumpRunning~0 1)) (not (<= 2 |old(~waterLevel~0)|))))) [2022-11-03 02:45:31,210 INFO L895 garLoopResultBuilder]: At program point L760(line 760) the Hoare annotation is: (let ((.cse2 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2) (or .cse1 (not (= |old(~pumpRunning~0)| 1)) .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1))) [2022-11-03 02:45:31,211 INFO L895 garLoopResultBuilder]: At program point L509-1(lines 509 515) the Hoare annotation is: (let ((.cse7 (= ~methaneLevelCritical~0 0))) (let ((.cse5 (not .cse7)) (.cse12 (<= 2 ~waterLevel~0)) (.cse11 (= 1 ~systemActive~0)) (.cse13 (= |old(~pumpRunning~0)| 0)) (.cse15 (= ~pumpRunning~0 1)) (.cse2 (= ~pumpRunning~0 0)) (.cse14 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse8 (and .cse2 .cse14)) (.cse10 (not (<= 1 |old(~waterLevel~0)|))) (.cse6 (and .cse7 .cse12 .cse11 .cse13 .cse14 .cse15)) (.cse4 (not .cse13)) (.cse9 (and .cse12 .cse11 .cse13 .cse5 .cse14 .cse15)) (.cse0 (not .cse11)) (.cse3 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 (and .cse2 (= |old(~waterLevel~0)| (+ ~waterLevel~0 1))) .cse3) (or .cse4 .cse0 .cse5 .cse6 .cse3) (or .cse7 .cse0 .cse1 (not (= |timeShift_processEnvironment_~tmp~6#1| 0)) .cse3) (or .cse4 .cse8 .cse7 .cse9 .cse0 .cse10) (or .cse4 .cse8 .cse0 .cse10 .cse5 .cse6) (or .cse4 .cse7 .cse9 .cse0 .cse3))))) [2022-11-03 02:45:31,211 INFO L895 garLoopResultBuilder]: At program point L596(line 596) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2) (or .cse1 .cse3 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (= |timeShift_processEnvironment_~tmp~6#1| 0) (= ~pumpRunning~0 1)) .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or (= ~methaneLevelCritical~0 0) .cse1 .cse3 .cse2))) [2022-11-03 02:45:31,211 INFO L899 garLoopResultBuilder]: For program point L881(lines 881 887) no Hoare annotation was computed. [2022-11-03 02:45:31,211 INFO L895 garLoopResultBuilder]: At program point L592(line 592) the Hoare annotation is: (let ((.cse3 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2) (or .cse1 (not (= ~methaneLevelCritical~0 0)) .cse3 .cse2) (or .cse1 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (not (= |timeShift_processEnvironment_~tmp~6#1| 0)) (= ~pumpRunning~0 1)) .cse3 .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1))) [2022-11-03 02:45:31,212 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 498 521) the Hoare annotation is: (let ((.cse1 (not (= 1 ~systemActive~0))) (.cse0 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse0) .cse1 (not (<= 1 |old(~waterLevel~0)|))) (or .cse1 (not (= |old(~pumpRunning~0)| 1)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) (not (<= 2 |old(~waterLevel~0)|))))) [2022-11-03 02:45:31,212 INFO L895 garLoopResultBuilder]: At program point L877(lines 877 890) the Hoare annotation is: (let ((.cse4 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| ~waterLevel~0)) (.cse5 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and .cse2 .cse3 (= ~waterLevel~0 1))) (or (= ~methaneLevelCritical~0 0) .cse1 .cse4 (not (= |timeShift_processEnvironment_~tmp~6#1| 0)) .cse5) (or .cse1 .cse4 (and .cse2 (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse3) .cse5) (or .cse0 .cse1 (and .cse3 (= |old(~waterLevel~0)| ~waterLevel~0) (= ~pumpRunning~0 1)) .cse5))) [2022-11-03 02:45:31,212 INFO L895 garLoopResultBuilder]: At program point L877-1(lines 869 893) the Hoare annotation is: (let ((.cse4 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| ~waterLevel~0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse6 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (and .cse4 .cse5 (<= 2 |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1|) (= ~pumpRunning~0 1))) (.cse7 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 (not (<= 1 |old(~waterLevel~0)|)) .cse2 (and .cse3 .cse4 .cse5)) (or (= ~methaneLevelCritical~0 0) .cse1 .cse6 (not (= |timeShift_processEnvironment_~tmp~6#1| 0)) .cse7) (or .cse1 .cse6 (and .cse3 (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse4) .cse7) (or .cse0 .cse1 .cse2 .cse7)))) [2022-11-03 02:45:31,213 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 498 521) no Hoare annotation was computed. [2022-11-03 02:45:31,213 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 760) no Hoare annotation was computed. [2022-11-03 02:45:31,213 INFO L895 garLoopResultBuilder]: At program point L473(lines 430 475) the Hoare annotation is: (let ((.cse1 (= ~methaneLevelCritical~0 0)) (.cse0 (= ~pumpRunning~0 0)) (.cse7 (or (not (= |old(~methaneLevelCritical~0)| 0)) (= ~methaneLevelCritical~0 1))) (.cse5 (<= 2 ~waterLevel~0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (<= 1 ~waterLevel~0)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse5 .cse2 .cse3 .cse4 .cse6) (and .cse0 .cse7 .cse2 .cse3 .cse4) (and .cse7 .cse5 .cse2 .cse3 .cse4 .cse6))) [2022-11-03 02:45:31,213 INFO L899 garLoopResultBuilder]: For program point L440(lines 440 446) no Hoare annotation was computed. [2022-11-03 02:45:31,214 INFO L899 garLoopResultBuilder]: For program point L440-1(lines 440 446) no Hoare annotation was computed. [2022-11-03 02:45:31,214 INFO L895 garLoopResultBuilder]: At program point L977(lines 977 984) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-11-03 02:45:31,214 INFO L902 garLoopResultBuilder]: At program point L977-2(lines 977 984) the Hoare annotation is: true [2022-11-03 02:45:31,214 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-11-03 02:45:31,214 INFO L895 garLoopResultBuilder]: At program point L466-2(lines 460 471) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 0)) (.cse5 (= ~pumpRunning~0 0)) (.cse6 (<= 1 ~waterLevel~0)) (.cse7 (or (not (= |old(~methaneLevelCritical~0)| 0)) (= ~methaneLevelCritical~0 1))) (.cse1 (<= 2 ~waterLevel~0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse0 .cse2 .cse3 .cse6) (and .cse5 .cse7 .cse2 .cse3 .cse6) (and .cse7 .cse1 .cse2 .cse3 .cse4))) [2022-11-03 02:45:31,215 INFO L899 garLoopResultBuilder]: For program point L450(lines 450 456) no Hoare annotation was computed. [2022-11-03 02:45:31,215 INFO L899 garLoopResultBuilder]: For program point L450-1(lines 450 456) no Hoare annotation was computed. [2022-11-03 02:45:31,215 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-03 02:45:31,215 INFO L902 garLoopResultBuilder]: At program point L479(lines 420 483) the Hoare annotation is: true [2022-11-03 02:45:31,215 INFO L895 garLoopResultBuilder]: At program point L442(line 442) the Hoare annotation is: (let ((.cse1 (= ~methaneLevelCritical~0 0)) (.cse0 (= ~pumpRunning~0 0)) (.cse7 (or (not (= |old(~methaneLevelCritical~0)| 0)) (= ~methaneLevelCritical~0 1))) (.cse5 (<= 2 ~waterLevel~0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (<= 1 ~waterLevel~0)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse5 .cse2 .cse3 .cse4 .cse6) (and .cse0 .cse7 .cse2 .cse3 .cse4) (and .cse7 .cse5 .cse2 .cse3 .cse4 .cse6))) [2022-11-03 02:45:31,216 INFO L895 garLoopResultBuilder]: At program point L476(lines 429 477) the Hoare annotation is: false [2022-11-03 02:45:31,216 INFO L899 garLoopResultBuilder]: For program point L431(lines 430 475) no Hoare annotation was computed. [2022-11-03 02:45:31,216 INFO L895 garLoopResultBuilder]: At program point L452(line 452) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 0)) (.cse5 (= ~pumpRunning~0 0)) (.cse6 (<= 1 ~waterLevel~0)) (.cse7 (or (not (= |old(~methaneLevelCritical~0)| 0)) (= ~methaneLevelCritical~0 1))) (.cse1 (<= 2 ~waterLevel~0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse0 .cse2 .cse3 .cse6) (and .cse5 .cse7 .cse2 .cse3 .cse6) (and .cse7 .cse1 .cse2 .cse3 .cse4))) [2022-11-03 02:45:31,216 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 530 554) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0))) [2022-11-03 02:45:31,217 INFO L895 garLoopResultBuilder]: At program point L544(line 544) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~4#1| 0))))) [2022-11-03 02:45:31,217 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 530 554) no Hoare annotation was computed. [2022-11-03 02:45:31,217 INFO L895 garLoopResultBuilder]: At program point L538(lines 538 546) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0)) (and (= ~pumpRunning~0 0) (let ((.cse0 (< ~waterLevel~0 2))) (or (and (not .cse0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~4#1| 1)) (and (= |processEnvironment__wrappee__highWaterSensor_~tmp~4#1| 0) .cse0))))) [2022-11-03 02:45:31,217 INFO L895 garLoopResultBuilder]: At program point L534(lines 534 551) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0))) [2022-11-03 02:45:31,218 INFO L895 garLoopResultBuilder]: At program point L549(line 549) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0))) [2022-11-03 02:45:31,218 INFO L899 garLoopResultBuilder]: For program point L549-1(lines 530 554) no Hoare annotation was computed. [2022-11-03 02:45:31,218 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 780 791) no Hoare annotation was computed. [2022-11-03 02:45:31,218 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 780 791) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (= ~pumpRunning~0 0)) .cse0 (not (<= 1 |old(~waterLevel~0)|)) .cse1) (or .cse0 (not (= ~pumpRunning~0 1)) .cse1 (not (<= 2 |old(~waterLevel~0)|))))) [2022-11-03 02:45:31,218 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__lowWaterSensorENTRY(lines 556 580) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= 1 ~waterLevel~0)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 .cse1) (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0)) (not (= |old(~pumpRunning~0)| 1)) (= ~pumpRunning~0 1)))) [2022-11-03 02:45:31,219 INFO L895 garLoopResultBuilder]: At program point L570(line 570) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= 1 ~waterLevel~0)))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0)) (not (= |old(~pumpRunning~0)| 1))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2022-11-03 02:45:31,219 INFO L895 garLoopResultBuilder]: At program point L566(line 566) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= 1 ~waterLevel~0)))) (and (or .cse0 (and (<= 1 |processEnvironment__wrappee__lowWaterSensor_~tmp~5#1|) (= ~pumpRunning~0 1)) .cse1 (not (= ~methaneLevelCritical~0 0)) (not (= |old(~pumpRunning~0)| 1))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2022-11-03 02:45:31,219 INFO L899 garLoopResultBuilder]: For program point L564(lines 564 572) no Hoare annotation was computed. [2022-11-03 02:45:31,219 INFO L895 garLoopResultBuilder]: At program point L560(lines 560 577) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= 1 ~waterLevel~0)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 .cse1) (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0)) (not (= |old(~pumpRunning~0)| 1)) (= ~pumpRunning~0 1)))) [2022-11-03 02:45:31,220 INFO L895 garLoopResultBuilder]: At program point L575(line 575) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= 1 ~waterLevel~0)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 .cse1) (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0)) (not (= |old(~pumpRunning~0)| 1))))) [2022-11-03 02:45:31,220 INFO L899 garLoopResultBuilder]: For program point L575-1(lines 556 580) no Hoare annotation was computed. [2022-11-03 02:45:31,220 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 556 580) no Hoare annotation was computed. [2022-11-03 02:45:31,224 INFO L444 BasicCegarLoop]: Path program histogram: [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:45:31,226 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-03 02:45:31,259 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 03.11 02:45:31 BoogieIcfgContainer [2022-11-03 02:45:31,259 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-03 02:45:31,260 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-03 02:45:31,260 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-03 02:45:31,260 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-03 02:45:31,261 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 02:43:45" (3/4) ... [2022-11-03 02:45:31,263 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-03 02:45:31,283 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-11-03 02:45:31,284 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-03 02:45:31,284 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-03 02:45:31,284 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-03 02:45:31,284 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-03 02:45:31,284 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 02:45:31,285 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-03 02:45:31,285 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2022-11-03 02:45:31,292 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 79 nodes and edges [2022-11-03 02:45:31,296 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 28 nodes and edges [2022-11-03 02:45:31,297 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2022-11-03 02:45:31,297 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-11-03 02:45:31,297 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-11-03 02:45:31,298 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-03 02:45:31,299 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-03 02:45:31,327 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel) && pumpRunning == 1)) || ((((pumpRunning == 0 && (!(\old(methaneLevelCritical) == 0) || methaneLevelCritical == 1)) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel)) || ((((((!(\old(methaneLevelCritical) == 0) || methaneLevelCritical == 1) && 2 <= waterLevel) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel) && pumpRunning == 1) [2022-11-03 02:45:31,328 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (pumpRunning == \old(pumpRunning) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel))) [2022-11-03 02:45:31,329 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel + 1)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(2 <= \old(waterLevel))) [2022-11-03 02:45:31,330 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (\old(waterLevel) == waterLevel + 1 && pumpRunning == 1)) || !(2 <= \old(waterLevel))) [2022-11-03 02:45:31,331 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel + 1)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(2 <= \old(waterLevel))) [2022-11-03 02:45:31,332 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) && ((((!(1 == systemActive) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0)) || !(\old(pumpRunning) == 1)) || pumpRunning == 1) [2022-11-03 02:45:31,332 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= waterLevel) [2022-11-03 02:45:31,333 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((pumpRunning == 0 && tmp == waterLevel) && waterLevel == 1)) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && \old(waterLevel) == waterLevel + 1) && tmp == waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((tmp == waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel))) [2022-11-03 02:45:31,333 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || (((tmp == waterLevel && \old(waterLevel) == waterLevel) && 2 <= tmp) && pumpRunning == 1)) || ((pumpRunning == 0 && tmp == waterLevel) && \old(waterLevel) == waterLevel)) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && \old(waterLevel) == waterLevel + 1) && tmp == waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((tmp == waterLevel && \old(waterLevel) == waterLevel) && 2 <= tmp) && pumpRunning == 1)) || !(2 <= \old(waterLevel))) [2022-11-03 02:45:31,334 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= \old(waterLevel))) && ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(2 <= \old(waterLevel)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) [2022-11-03 02:45:31,335 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || (pumpRunning == 0 && ((!(waterLevel < 2) && tmp == 1) || (tmp == 0 && waterLevel < 2))) [2022-11-03 02:45:31,358 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/witness.graphml [2022-11-03 02:45:31,358 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-03 02:45:31,359 INFO L158 Benchmark]: Toolchain (without parser) took 107366.33ms. Allocated memory was 94.4MB in the beginning and 780.1MB in the end (delta: 685.8MB). Free memory was 56.0MB in the beginning and 628.0MB in the end (delta: -572.1MB). Peak memory consumption was 113.0MB. Max. memory is 16.1GB. [2022-11-03 02:45:31,359 INFO L158 Benchmark]: CDTParser took 0.33ms. Allocated memory is still 94.4MB. Free memory is still 73.0MB. There was no memory consumed. Max. memory is 16.1GB. [2022-11-03 02:45:31,359 INFO L158 Benchmark]: CACSL2BoogieTranslator took 729.31ms. Allocated memory was 94.4MB in the beginning and 115.3MB in the end (delta: 21.0MB). Free memory was 55.7MB in the beginning and 81.2MB in the end (delta: -25.5MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2022-11-03 02:45:31,360 INFO L158 Benchmark]: Boogie Procedure Inliner took 61.67ms. Allocated memory is still 115.3MB. Free memory was 81.2MB in the beginning and 78.7MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-03 02:45:31,360 INFO L158 Benchmark]: Boogie Preprocessor took 36.78ms. Allocated memory is still 115.3MB. Free memory was 78.7MB in the beginning and 77.0MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-03 02:45:31,360 INFO L158 Benchmark]: RCFGBuilder took 880.41ms. Allocated memory is still 115.3MB. Free memory was 77.0MB in the beginning and 46.5MB in the end (delta: 30.5MB). Peak memory consumption was 29.4MB. Max. memory is 16.1GB. [2022-11-03 02:45:31,361 INFO L158 Benchmark]: TraceAbstraction took 105546.83ms. Allocated memory was 115.3MB in the beginning and 780.1MB in the end (delta: 664.8MB). Free memory was 45.5MB in the beginning and 634.3MB in the end (delta: -588.8MB). Peak memory consumption was 440.3MB. Max. memory is 16.1GB. [2022-11-03 02:45:31,361 INFO L158 Benchmark]: Witness Printer took 98.32ms. Allocated memory is still 780.1MB. Free memory was 634.3MB in the beginning and 628.0MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-11-03 02:45:31,363 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.33ms. Allocated memory is still 94.4MB. Free memory is still 73.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 729.31ms. Allocated memory was 94.4MB in the beginning and 115.3MB in the end (delta: 21.0MB). Free memory was 55.7MB in the beginning and 81.2MB in the end (delta: -25.5MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 61.67ms. Allocated memory is still 115.3MB. Free memory was 81.2MB in the beginning and 78.7MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 36.78ms. Allocated memory is still 115.3MB. Free memory was 78.7MB in the beginning and 77.0MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 880.41ms. Allocated memory is still 115.3MB. Free memory was 77.0MB in the beginning and 46.5MB in the end (delta: 30.5MB). Peak memory consumption was 29.4MB. Max. memory is 16.1GB. * TraceAbstraction took 105546.83ms. Allocated memory was 115.3MB in the beginning and 780.1MB in the end (delta: 664.8MB). Free memory was 45.5MB in the beginning and 634.3MB in the end (delta: -588.8MB). Peak memory consumption was 440.3MB. Max. memory is 16.1GB. * Witness Printer took 98.32ms. Allocated memory is still 780.1MB. Free memory was 634.3MB in the beginning and 628.0MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 760]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 62 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 105.4s, OverallIterations: 14, TraceHistogramMax: 4, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.1s, AutomataDifference: 15.1s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 17.7s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3775 SdHoareTripleChecker+Valid, 6.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3736 mSDsluCounter, 3183 SdHoareTripleChecker+Invalid, 5.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2893 mSDsCounter, 2476 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 6791 IncrementalHoareTripleChecker+Invalid, 9267 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 2476 mSolverCounterUnsat, 927 mSDtfsCounter, 6791 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 1243 GetRequests, 821 SyntacticMatches, 22 SemanticMatches, 400 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12739 ImplicationChecksByTransitivity, 45.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=770occurred in iteration=13, InterpolantAutomatonStates: 242, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.9s AutomataMinimizationTime, 14 MinimizatonAttempts, 1011 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 38 LocationsWithAnnotation, 2478 PreInvPairs, 2909 NumberOfFragments, 1620 HoareAnnotationTreeSize, 2478 FomulaSimplifications, 72034 FormulaSimplificationTreeSizeReduction, 4.5s HoareSimplificationTime, 38 FomulaSimplificationsInter, 213102 FormulaSimplificationTreeSizeReductionInter, 13.0s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.6s SatisfiabilityAnalysisTime, 7.5s InterpolantComputationTime, 1128 NumberOfCodeBlocks, 1026 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 1350 ConstructedInterpolants, 0 QuantifiedInterpolants, 4592 SizeOfPredicates, 53 NumberOfNonLiveVariables, 2180 ConjunctsInSsa, 115 ConjunctsInUnsatCore, 22 InterpolantComputations, 11 PerfectInterpolantSequences, 648/855 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 977]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 977]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 538]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) || (pumpRunning == 0 && ((!(waterLevel < 2) && tmp == 1) || (tmp == 0 && waterLevel < 2))) - InvariantResult [Line: 582]: Loop Invariant Derived loop invariant: (((((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel + 1)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 560]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= waterLevel)) && ((((!(1 == systemActive) || !(1 <= waterLevel)) || !(methaneLevelCritical == 0)) || !(\old(pumpRunning) == 1)) || pumpRunning == 1) - InvariantResult [Line: 760]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= \old(waterLevel))) && ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(2 <= \old(waterLevel)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) - InvariantResult [Line: 906]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 896]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 586]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (\old(waterLevel) == waterLevel + 1 && pumpRunning == 1)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 869]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || (((tmp == waterLevel && \old(waterLevel) == waterLevel) && 2 <= tmp) && pumpRunning == 1)) || ((pumpRunning == 0 && tmp == waterLevel) && \old(waterLevel) == waterLevel)) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && \old(waterLevel) == waterLevel + 1) && tmp == waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((tmp == waterLevel && \old(waterLevel) == waterLevel) && 2 <= tmp) && pumpRunning == 1)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 498]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (pumpRunning == \old(pumpRunning) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 430]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel) && pumpRunning == 1)) || ((((pumpRunning == 0 && (!(\old(methaneLevelCritical) == 0) || methaneLevelCritical == 1)) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel)) || ((((((!(\old(methaneLevelCritical) == 0) || methaneLevelCritical == 1) && 2 <= waterLevel) && 1 == systemActive) && splverifierCounter == 0) && 1 <= waterLevel) && pumpRunning == 1) - InvariantResult [Line: 429]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 877]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((pumpRunning == 0 && tmp == waterLevel) && waterLevel == 1)) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && \old(waterLevel) == waterLevel + 1) && tmp == waterLevel)) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((tmp == waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 534]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(1 <= waterLevel) - InvariantResult [Line: 509]: Loop Invariant Derived loop invariant: (((((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel + 1)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(tmp == 0)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) || !(methaneLevelCritical == 0)) || (((((methaneLevelCritical == 0 && 2 <= waterLevel) && 1 == systemActive) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || (((((2 <= waterLevel && 1 == systemActive) && \old(pumpRunning) == 0) && !(methaneLevelCritical == 0)) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(1 == systemActive)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 420]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2022-11-03 02:45:31,426 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f674c27-7dfa-40d9-8f3b-ef89f2fa3a5c/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE