./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product58.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 5e519f3a Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product58.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash debcf50bf3bb3961401c62ca4b7217ea7cc93038f750143121614e56b550164d --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-5e519f3 [2022-11-03 02:26:18,613 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-03 02:26:18,616 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-03 02:26:18,645 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-03 02:26:18,646 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-03 02:26:18,647 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-03 02:26:18,648 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-03 02:26:18,650 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-03 02:26:18,652 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-03 02:26:18,653 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-03 02:26:18,654 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-03 02:26:18,656 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-03 02:26:18,656 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-03 02:26:18,657 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-03 02:26:18,658 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-03 02:26:18,660 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-03 02:26:18,661 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-03 02:26:18,662 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-03 02:26:18,663 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-03 02:26:18,665 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-03 02:26:18,667 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-03 02:26:18,668 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-03 02:26:18,669 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-03 02:26:18,670 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-03 02:26:18,674 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-03 02:26:18,675 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-03 02:26:18,675 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-03 02:26:18,676 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-03 02:26:18,677 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-03 02:26:18,678 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-03 02:26:18,678 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-03 02:26:18,679 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-03 02:26:18,680 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-03 02:26:18,681 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-03 02:26:18,682 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-03 02:26:18,682 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-03 02:26:18,683 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-03 02:26:18,683 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-03 02:26:18,684 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-03 02:26:18,685 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-03 02:26:18,686 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-03 02:26:18,687 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-11-03 02:26:18,709 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-03 02:26:18,710 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-03 02:26:18,710 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-03 02:26:18,711 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-03 02:26:18,711 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-03 02:26:18,712 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-03 02:26:18,712 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-03 02:26:18,712 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-03 02:26:18,712 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-03 02:26:18,713 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-03 02:26:18,713 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-03 02:26:18,713 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-03 02:26:18,713 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-03 02:26:18,714 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-03 02:26:18,714 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-03 02:26:18,714 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-03 02:26:18,715 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-03 02:26:18,715 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-03 02:26:18,716 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-03 02:26:18,716 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-03 02:26:18,716 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-03 02:26:18,716 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-03 02:26:18,717 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-03 02:26:18,717 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-03 02:26:18,717 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-03 02:26:18,717 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-03 02:26:18,718 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-03 02:26:18,718 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-03 02:26:18,718 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-03 02:26:18,719 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-03 02:26:18,719 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-03 02:26:18,719 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-03 02:26:18,719 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-03 02:26:18,720 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-03 02:26:18,720 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-03 02:26:18,720 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-03 02:26:18,721 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-03 02:26:18,721 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-03 02:26:18,721 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-03 02:26:18,721 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-03 02:26:18,722 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-03 02:26:18,722 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> debcf50bf3bb3961401c62ca4b7217ea7cc93038f750143121614e56b550164d [2022-11-03 02:26:19,019 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-03 02:26:19,061 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-03 02:26:19,064 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-03 02:26:19,065 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-03 02:26:19,070 INFO L275 PluginConnector]: CDTParser initialized [2022-11-03 02:26:19,072 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/../../sv-benchmarks/c/product-lines/minepump_spec4_product58.cil.c [2022-11-03 02:26:19,148 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/data/27da96403/fa4adff635704bcd8ff0605ad2d93129/FLAG3b386b405 [2022-11-03 02:26:19,755 INFO L306 CDTParser]: Found 1 translation units. [2022-11-03 02:26:19,756 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/sv-benchmarks/c/product-lines/minepump_spec4_product58.cil.c [2022-11-03 02:26:19,783 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/data/27da96403/fa4adff635704bcd8ff0605ad2d93129/FLAG3b386b405 [2022-11-03 02:26:20,041 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/data/27da96403/fa4adff635704bcd8ff0605ad2d93129 [2022-11-03 02:26:20,044 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-03 02:26:20,045 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-03 02:26:20,049 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-03 02:26:20,049 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-03 02:26:20,053 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-03 02:26:20,054 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,057 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@3753edd7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20, skipping insertion in model container [2022-11-03 02:26:20,058 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,066 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-03 02:26:20,104 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-03 02:26:20,434 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/sv-benchmarks/c/product-lines/minepump_spec4_product58.cil.c[11718,11731] [2022-11-03 02:26:20,478 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-03 02:26:20,487 INFO L203 MainTranslator]: Completed pre-run [2022-11-03 02:26:20,531 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/sv-benchmarks/c/product-lines/minepump_spec4_product58.cil.c[11718,11731] [2022-11-03 02:26:20,553 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-03 02:26:20,569 INFO L208 MainTranslator]: Completed translation [2022-11-03 02:26:20,570 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20 WrapperNode [2022-11-03 02:26:20,570 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-03 02:26:20,571 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-03 02:26:20,571 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-03 02:26:20,571 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-03 02:26:20,578 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,591 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,619 INFO L138 Inliner]: procedures = 57, calls = 157, calls flagged for inlining = 27, calls inlined = 24, statements flattened = 283 [2022-11-03 02:26:20,619 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-03 02:26:20,620 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-03 02:26:20,620 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-03 02:26:20,620 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-03 02:26:20,630 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,630 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,644 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,644 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,649 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,654 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,656 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,657 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,675 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-03 02:26:20,676 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-03 02:26:20,676 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-03 02:26:20,677 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-03 02:26:20,677 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (1/1) ... [2022-11-03 02:26:20,690 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-03 02:26:20,706 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:26:20,723 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-03 02:26:20,737 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-03 02:26:20,778 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-03 02:26:20,778 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-03 02:26:20,778 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-03 02:26:20,779 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-03 02:26:20,779 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-03 02:26:20,779 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-03 02:26:20,779 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-03 02:26:20,779 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 02:26:20,780 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 02:26:20,780 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-03 02:26:20,780 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-03 02:26:20,780 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-03 02:26:20,780 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-03 02:26:20,781 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-03 02:26:20,781 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-03 02:26:20,781 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-03 02:26:20,887 INFO L235 CfgBuilder]: Building ICFG [2022-11-03 02:26:20,889 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-03 02:26:21,257 INFO L276 CfgBuilder]: Performing block encoding [2022-11-03 02:26:21,425 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-03 02:26:21,426 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-03 02:26:21,428 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 02:26:21 BoogieIcfgContainer [2022-11-03 02:26:21,428 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-03 02:26:21,434 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-03 02:26:21,434 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-03 02:26:21,438 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-03 02:26:21,438 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 03.11 02:26:20" (1/3) ... [2022-11-03 02:26:21,439 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3b126674 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 03.11 02:26:21, skipping insertion in model container [2022-11-03 02:26:21,439 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 02:26:20" (2/3) ... [2022-11-03 02:26:21,440 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3b126674 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 03.11 02:26:21, skipping insertion in model container [2022-11-03 02:26:21,440 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 02:26:21" (3/3) ... [2022-11-03 02:26:21,441 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product58.cil.c [2022-11-03 02:26:21,459 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-03 02:26:21,460 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-03 02:26:21,539 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-03 02:26:21,546 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@641c6894, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-03 02:26:21,546 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-03 02:26:21,551 INFO L276 IsEmpty]: Start isEmpty. Operand has 51 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 41 states have internal predecessors, (48), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2022-11-03 02:26:21,559 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2022-11-03 02:26:21,559 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:21,560 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:21,561 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:21,566 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:21,567 INFO L85 PathProgramCache]: Analyzing trace with hash -1497506587, now seen corresponding path program 1 times [2022-11-03 02:26:21,577 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:21,600 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1126260354] [2022-11-03 02:26:21,601 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:21,601 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:21,770 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:21,876 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:26:21,877 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:21,877 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1126260354] [2022-11-03 02:26:21,878 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1126260354] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:26:21,878 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:26:21,878 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-03 02:26:21,880 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [710397803] [2022-11-03 02:26:21,881 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:26:21,885 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-03 02:26:21,885 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:21,911 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-03 02:26:21,912 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-03 02:26:21,915 INFO L87 Difference]: Start difference. First operand has 51 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 41 states have internal predecessors, (48), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:26:22,003 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:22,003 INFO L93 Difference]: Finished difference Result 100 states and 137 transitions. [2022-11-03 02:26:22,004 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-03 02:26:22,006 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 12 [2022-11-03 02:26:22,007 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:22,017 INFO L225 Difference]: With dead ends: 100 [2022-11-03 02:26:22,017 INFO L226 Difference]: Without dead ends: 46 [2022-11-03 02:26:22,022 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-03 02:26:22,034 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 48 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:22,036 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 48 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:26:22,056 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 46 states. [2022-11-03 02:26:22,081 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 46 to 46. [2022-11-03 02:26:22,082 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 46 states, 30 states have (on average 1.3333333333333333) internal successors, (40), 37 states have internal predecessors, (40), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2022-11-03 02:26:22,086 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 46 states to 46 states and 59 transitions. [2022-11-03 02:26:22,088 INFO L78 Accepts]: Start accepts. Automaton has 46 states and 59 transitions. Word has length 12 [2022-11-03 02:26:22,088 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:22,088 INFO L495 AbstractCegarLoop]: Abstraction has 46 states and 59 transitions. [2022-11-03 02:26:22,089 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:26:22,089 INFO L276 IsEmpty]: Start isEmpty. Operand 46 states and 59 transitions. [2022-11-03 02:26:22,091 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2022-11-03 02:26:22,092 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:22,092 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:22,093 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-03 02:26:22,093 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:22,094 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:22,094 INFO L85 PathProgramCache]: Analyzing trace with hash -903472037, now seen corresponding path program 1 times [2022-11-03 02:26:22,095 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:22,095 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1537361120] [2022-11-03 02:26:22,095 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:22,095 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:22,134 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:22,235 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:26:22,236 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:22,236 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1537361120] [2022-11-03 02:26:22,236 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1537361120] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:26:22,236 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:26:22,236 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-03 02:26:22,237 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1453385242] [2022-11-03 02:26:22,237 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:26:22,238 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 02:26:22,238 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:22,239 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 02:26:22,239 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:26:22,239 INFO L87 Difference]: Start difference. First operand 46 states and 59 transitions. Second operand has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:26:22,300 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:22,300 INFO L93 Difference]: Finished difference Result 69 states and 89 transitions. [2022-11-03 02:26:22,303 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 02:26:22,303 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2022-11-03 02:26:22,304 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:22,306 INFO L225 Difference]: With dead ends: 69 [2022-11-03 02:26:22,307 INFO L226 Difference]: Without dead ends: 38 [2022-11-03 02:26:22,312 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:26:22,314 INFO L413 NwaCegarLoop]: 34 mSDtfsCounter, 7 mSDsluCounter, 36 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 59 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:22,314 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 59 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-03 02:26:22,317 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 38 states. [2022-11-03 02:26:22,324 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 38 to 38. [2022-11-03 02:26:22,324 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 38 states, 25 states have (on average 1.36) internal successors, (34), 32 states have internal predecessors, (34), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 5 states have call predecessors, (7), 7 states have call successors, (7) [2022-11-03 02:26:22,327 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 38 states to 38 states and 48 transitions. [2022-11-03 02:26:22,327 INFO L78 Accepts]: Start accepts. Automaton has 38 states and 48 transitions. Word has length 13 [2022-11-03 02:26:22,328 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:22,328 INFO L495 AbstractCegarLoop]: Abstraction has 38 states and 48 transitions. [2022-11-03 02:26:22,329 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:26:22,329 INFO L276 IsEmpty]: Start isEmpty. Operand 38 states and 48 transitions. [2022-11-03 02:26:22,331 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2022-11-03 02:26:22,331 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:22,331 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:22,331 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-03 02:26:22,332 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:22,334 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:22,335 INFO L85 PathProgramCache]: Analyzing trace with hash -1673097531, now seen corresponding path program 1 times [2022-11-03 02:26:22,335 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:22,335 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2137132961] [2022-11-03 02:26:22,335 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:22,336 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:22,373 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:22,608 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:26:22,609 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:22,609 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2137132961] [2022-11-03 02:26:22,609 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2137132961] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:26:22,609 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:26:22,610 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-03 02:26:22,610 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2135165264] [2022-11-03 02:26:22,610 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:26:22,610 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-03 02:26:22,611 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:22,611 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-03 02:26:22,611 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2022-11-03 02:26:22,612 INFO L87 Difference]: Start difference. First operand 38 states and 48 transitions. Second operand has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:26:22,761 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:22,762 INFO L93 Difference]: Finished difference Result 123 states and 158 transitions. [2022-11-03 02:26:22,762 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-03 02:26:22,763 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 15 [2022-11-03 02:26:22,763 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:22,766 INFO L225 Difference]: With dead ends: 123 [2022-11-03 02:26:22,766 INFO L226 Difference]: Without dead ends: 87 [2022-11-03 02:26:22,769 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=18, Invalid=24, Unknown=0, NotChecked=0, Total=42 [2022-11-03 02:26:22,774 INFO L413 NwaCegarLoop]: 43 mSDtfsCounter, 52 mSDsluCounter, 144 mSDsCounter, 0 mSdLazyCounter, 75 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 164 SdHoareTripleChecker+Invalid, 83 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 75 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:22,775 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 164 Invalid, 83 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 75 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:26:22,777 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2022-11-03 02:26:22,795 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 72. [2022-11-03 02:26:22,795 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 72 states, 49 states have (on average 1.2653061224489797) internal successors, (62), 58 states have internal predecessors, (62), 11 states have call successors, (11), 9 states have call predecessors, (11), 11 states have return successors, (13), 10 states have call predecessors, (13), 11 states have call successors, (13) [2022-11-03 02:26:22,796 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 72 states to 72 states and 86 transitions. [2022-11-03 02:26:22,796 INFO L78 Accepts]: Start accepts. Automaton has 72 states and 86 transitions. Word has length 15 [2022-11-03 02:26:22,797 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:22,797 INFO L495 AbstractCegarLoop]: Abstraction has 72 states and 86 transitions. [2022-11-03 02:26:22,797 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:26:22,797 INFO L276 IsEmpty]: Start isEmpty. Operand 72 states and 86 transitions. [2022-11-03 02:26:22,801 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2022-11-03 02:26:22,802 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:22,802 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:22,802 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-03 02:26:22,802 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:22,805 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:22,805 INFO L85 PathProgramCache]: Analyzing trace with hash -1600810338, now seen corresponding path program 1 times [2022-11-03 02:26:22,806 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:22,806 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1003294227] [2022-11-03 02:26:22,806 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:22,807 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:22,841 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:23,158 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:26:23,159 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:23,159 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1003294227] [2022-11-03 02:26:23,159 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1003294227] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:26:23,159 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:26:23,159 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-11-03 02:26:23,160 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1031790239] [2022-11-03 02:26:23,160 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:26:23,160 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-03 02:26:23,161 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:23,161 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-03 02:26:23,161 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2022-11-03 02:26:23,162 INFO L87 Difference]: Start difference. First operand 72 states and 86 transitions. Second operand has 8 states, 7 states have (on average 2.142857142857143) internal successors, (15), 6 states have internal predecessors, (15), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-03 02:26:23,636 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:23,637 INFO L93 Difference]: Finished difference Result 189 states and 239 transitions. [2022-11-03 02:26:23,637 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2022-11-03 02:26:23,637 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 2.142857142857143) internal successors, (15), 6 states have internal predecessors, (15), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2022-11-03 02:26:23,638 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:23,639 INFO L225 Difference]: With dead ends: 189 [2022-11-03 02:26:23,640 INFO L226 Difference]: Without dead ends: 153 [2022-11-03 02:26:23,640 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2022-11-03 02:26:23,641 INFO L413 NwaCegarLoop]: 64 mSDtfsCounter, 137 mSDsluCounter, 216 mSDsCounter, 0 mSdLazyCounter, 324 mSolverCounterSat, 59 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 145 SdHoareTripleChecker+Valid, 236 SdHoareTripleChecker+Invalid, 383 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 59 IncrementalHoareTripleChecker+Valid, 324 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:23,642 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [145 Valid, 236 Invalid, 383 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [59 Valid, 324 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-11-03 02:26:23,643 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 153 states. [2022-11-03 02:26:23,661 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 153 to 75. [2022-11-03 02:26:23,661 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 75 states, 50 states have (on average 1.26) internal successors, (63), 60 states have internal predecessors, (63), 12 states have call successors, (12), 10 states have call predecessors, (12), 12 states have return successors, (14), 11 states have call predecessors, (14), 12 states have call successors, (14) [2022-11-03 02:26:23,662 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 75 states to 75 states and 89 transitions. [2022-11-03 02:26:23,663 INFO L78 Accepts]: Start accepts. Automaton has 75 states and 89 transitions. Word has length 18 [2022-11-03 02:26:23,663 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:23,663 INFO L495 AbstractCegarLoop]: Abstraction has 75 states and 89 transitions. [2022-11-03 02:26:23,664 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 2.142857142857143) internal successors, (15), 6 states have internal predecessors, (15), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-03 02:26:23,664 INFO L276 IsEmpty]: Start isEmpty. Operand 75 states and 89 transitions. [2022-11-03 02:26:23,665 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2022-11-03 02:26:23,665 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:23,665 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:23,665 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-03 02:26:23,666 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:23,666 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:23,666 INFO L85 PathProgramCache]: Analyzing trace with hash -459195640, now seen corresponding path program 1 times [2022-11-03 02:26:23,667 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:23,667 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [128194547] [2022-11-03 02:26:23,667 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:23,667 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:23,690 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:24,049 INFO L134 CoverageAnalysis]: Checked inductivity of 11 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:26:24,051 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:24,051 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [128194547] [2022-11-03 02:26:24,052 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [128194547] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:26:24,052 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:26:24,052 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-03 02:26:24,052 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [855081763] [2022-11-03 02:26:24,054 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:26:24,054 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-03 02:26:24,056 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:24,059 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-03 02:26:24,059 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2022-11-03 02:26:24,059 INFO L87 Difference]: Start difference. First operand 75 states and 89 transitions. Second operand has 8 states, 8 states have (on average 3.875) internal successors, (31), 7 states have internal predecessors, (31), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-03 02:26:24,385 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:24,385 INFO L93 Difference]: Finished difference Result 181 states and 220 transitions. [2022-11-03 02:26:24,385 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2022-11-03 02:26:24,386 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.875) internal successors, (31), 7 states have internal predecessors, (31), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 36 [2022-11-03 02:26:24,386 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:24,387 INFO L225 Difference]: With dead ends: 181 [2022-11-03 02:26:24,387 INFO L226 Difference]: Without dead ends: 138 [2022-11-03 02:26:24,388 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2022-11-03 02:26:24,388 INFO L413 NwaCegarLoop]: 45 mSDtfsCounter, 114 mSDsluCounter, 96 mSDsCounter, 0 mSdLazyCounter, 183 mSolverCounterSat, 58 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 122 SdHoareTripleChecker+Valid, 119 SdHoareTripleChecker+Invalid, 241 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 58 IncrementalHoareTripleChecker+Valid, 183 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:24,389 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [122 Valid, 119 Invalid, 241 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [58 Valid, 183 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-03 02:26:24,389 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 138 states. [2022-11-03 02:26:24,411 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 138 to 102. [2022-11-03 02:26:24,412 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 102 states, 69 states have (on average 1.2318840579710144) internal successors, (85), 80 states have internal predecessors, (85), 16 states have call successors, (16), 14 states have call predecessors, (16), 16 states have return successors, (18), 15 states have call predecessors, (18), 16 states have call successors, (18) [2022-11-03 02:26:24,413 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 102 states to 102 states and 119 transitions. [2022-11-03 02:26:24,413 INFO L78 Accepts]: Start accepts. Automaton has 102 states and 119 transitions. Word has length 36 [2022-11-03 02:26:24,413 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:24,413 INFO L495 AbstractCegarLoop]: Abstraction has 102 states and 119 transitions. [2022-11-03 02:26:24,414 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.875) internal successors, (31), 7 states have internal predecessors, (31), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-03 02:26:24,414 INFO L276 IsEmpty]: Start isEmpty. Operand 102 states and 119 transitions. [2022-11-03 02:26:24,415 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2022-11-03 02:26:24,415 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:24,416 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:24,416 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-03 02:26:24,416 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:24,416 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:24,417 INFO L85 PathProgramCache]: Analyzing trace with hash -1875031857, now seen corresponding path program 1 times [2022-11-03 02:26:24,417 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:24,417 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [684823169] [2022-11-03 02:26:24,417 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:24,417 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:24,436 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:24,584 INFO L134 CoverageAnalysis]: Checked inductivity of 11 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:26:24,585 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:24,585 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [684823169] [2022-11-03 02:26:24,585 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [684823169] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:26:24,585 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:26:24,586 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-03 02:26:24,586 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [236393354] [2022-11-03 02:26:24,586 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:26:24,586 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-03 02:26:24,587 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:24,587 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-03 02:26:24,587 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-03 02:26:24,587 INFO L87 Difference]: Start difference. First operand 102 states and 119 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-03 02:26:24,655 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:24,656 INFO L93 Difference]: Finished difference Result 204 states and 242 transitions. [2022-11-03 02:26:24,656 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-03 02:26:24,656 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 39 [2022-11-03 02:26:24,657 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:24,661 INFO L225 Difference]: With dead ends: 204 [2022-11-03 02:26:24,661 INFO L226 Difference]: Without dead ends: 104 [2022-11-03 02:26:24,663 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-03 02:26:24,665 INFO L413 NwaCegarLoop]: 30 mSDtfsCounter, 33 mSDsluCounter, 40 mSDsCounter, 0 mSdLazyCounter, 31 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 59 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 31 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:24,668 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 59 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 31 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-03 02:26:24,669 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2022-11-03 02:26:24,695 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 102. [2022-11-03 02:26:24,696 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 102 states, 69 states have (on average 1.1884057971014492) internal successors, (82), 80 states have internal predecessors, (82), 16 states have call successors, (16), 14 states have call predecessors, (16), 16 states have return successors, (18), 15 states have call predecessors, (18), 16 states have call successors, (18) [2022-11-03 02:26:24,697 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 102 states to 102 states and 116 transitions. [2022-11-03 02:26:24,697 INFO L78 Accepts]: Start accepts. Automaton has 102 states and 116 transitions. Word has length 39 [2022-11-03 02:26:24,697 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:24,697 INFO L495 AbstractCegarLoop]: Abstraction has 102 states and 116 transitions. [2022-11-03 02:26:24,698 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-03 02:26:24,698 INFO L276 IsEmpty]: Start isEmpty. Operand 102 states and 116 transitions. [2022-11-03 02:26:24,699 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2022-11-03 02:26:24,699 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:24,699 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:24,700 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-03 02:26:24,700 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:24,700 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:24,700 INFO L85 PathProgramCache]: Analyzing trace with hash 317890339, now seen corresponding path program 1 times [2022-11-03 02:26:24,701 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:24,701 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2120194192] [2022-11-03 02:26:24,701 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:24,701 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:24,721 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:25,333 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 0 proven. 13 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 02:26:25,334 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:25,334 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2120194192] [2022-11-03 02:26:25,334 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2120194192] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:26:25,334 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [946907109] [2022-11-03 02:26:25,335 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:25,335 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:26:25,335 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:26:25,339 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:26:25,342 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-03 02:26:25,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:25,480 INFO L263 TraceCheckSpWp]: Trace formula consists of 398 conjuncts, 28 conjunts are in the unsatisfiable core [2022-11-03 02:26:25,486 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:26:25,897 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-03 02:26:25,897 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 02:26:26,515 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 1 proven. 8 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-03 02:26:26,516 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [946907109] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 02:26:26,516 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [213487210] [2022-11-03 02:26:26,538 INFO L159 IcfgInterpreter]: Started Sifa with 30 locations of interest [2022-11-03 02:26:26,538 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 02:26:26,542 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 02:26:26,548 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 02:26:26,549 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 02:26:37,404 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 50 for LOIs [2022-11-03 02:26:37,417 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 27 for LOIs [2022-11-03 02:26:37,567 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 24 for LOIs [2022-11-03 02:26:37,598 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 02:26:42,309 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '2512#(and (= |timeShift_getWaterLevel_~retValue_acc~4#1| |timeShift_getWaterLevel_#res#1|) (= |timeShift_getWaterLevel_~retValue_acc~4#1| ~waterLevel~0) (<= 0 |old(~pumpRunning~0)|) (<= ~pumpRunning~0 1) (= ~methaneLevelCritical~0 0) (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp___0~0#1| 0)) (= ~head~0.offset 0) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~11#1|) (= 1 ~systemActive~0) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~11#1|) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| |timeShift_getWaterLevel_#res#1|) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification4_spec__1_~tmp___0~0#1|) (<= 0 ~pumpRunning~0) (= ~head~0.base 0) (= |#NULL.offset| 0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| 0) (<= 0 |#StackHeapBarrier|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 02:26:42,310 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 02:26:42,310 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 02:26:42,310 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 9, 11] total 30 [2022-11-03 02:26:42,310 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1030830226] [2022-11-03 02:26:42,311 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 02:26:42,311 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2022-11-03 02:26:42,311 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:42,312 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2022-11-03 02:26:42,313 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=271, Invalid=2381, Unknown=0, NotChecked=0, Total=2652 [2022-11-03 02:26:42,313 INFO L87 Difference]: Start difference. First operand 102 states and 116 transitions. Second operand has 30 states, 27 states have (on average 3.3333333333333335) internal successors, (90), 27 states have internal predecessors, (90), 10 states have call successors, (12), 9 states have call predecessors, (12), 8 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2022-11-03 02:26:50,679 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:50,679 INFO L93 Difference]: Finished difference Result 806 states and 1091 transitions. [2022-11-03 02:26:50,680 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 118 states. [2022-11-03 02:26:50,680 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 27 states have (on average 3.3333333333333335) internal successors, (90), 27 states have internal predecessors, (90), 10 states have call successors, (12), 9 states have call predecessors, (12), 8 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) Word has length 42 [2022-11-03 02:26:50,681 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:50,688 INFO L225 Difference]: With dead ends: 806 [2022-11-03 02:26:50,688 INFO L226 Difference]: Without dead ends: 770 [2022-11-03 02:26:50,699 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 266 GetRequests, 109 SyntacticMatches, 0 SemanticMatches, 157 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9252 ImplicationChecksByTransitivity, 10.6s TimeCoverageRelationStatistics Valid=3223, Invalid=21899, Unknown=0, NotChecked=0, Total=25122 [2022-11-03 02:26:50,701 INFO L413 NwaCegarLoop]: 122 mSDtfsCounter, 1352 mSDsluCounter, 1083 mSDsCounter, 0 mSdLazyCounter, 2761 mSolverCounterSat, 1163 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1358 SdHoareTripleChecker+Valid, 955 SdHoareTripleChecker+Invalid, 3924 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1163 IncrementalHoareTripleChecker+Valid, 2761 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.6s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:50,702 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1358 Valid, 955 Invalid, 3924 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1163 Valid, 2761 Invalid, 0 Unknown, 0 Unchecked, 2.6s Time] [2022-11-03 02:26:50,705 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 770 states. [2022-11-03 02:26:50,848 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 770 to 596. [2022-11-03 02:26:50,850 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 596 states, 415 states have (on average 1.1951807228915663) internal successors, (496), 458 states have internal predecessors, (496), 81 states have call successors, (81), 77 states have call predecessors, (81), 99 states have return successors, (130), 88 states have call predecessors, (130), 81 states have call successors, (130) [2022-11-03 02:26:50,856 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 596 states to 596 states and 707 transitions. [2022-11-03 02:26:50,858 INFO L78 Accepts]: Start accepts. Automaton has 596 states and 707 transitions. Word has length 42 [2022-11-03 02:26:50,859 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:50,859 INFO L495 AbstractCegarLoop]: Abstraction has 596 states and 707 transitions. [2022-11-03 02:26:50,860 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 27 states have (on average 3.3333333333333335) internal successors, (90), 27 states have internal predecessors, (90), 10 states have call successors, (12), 9 states have call predecessors, (12), 8 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2022-11-03 02:26:50,860 INFO L276 IsEmpty]: Start isEmpty. Operand 596 states and 707 transitions. [2022-11-03 02:26:50,864 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2022-11-03 02:26:50,871 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:50,871 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:50,899 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-11-03 02:26:51,083 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2022-11-03 02:26:51,084 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:51,084 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:51,084 INFO L85 PathProgramCache]: Analyzing trace with hash -809060152, now seen corresponding path program 2 times [2022-11-03 02:26:51,084 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:51,084 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1568497220] [2022-11-03 02:26:51,084 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:51,085 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:51,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:51,162 INFO L134 CoverageAnalysis]: Checked inductivity of 42 backedges. 32 proven. 0 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2022-11-03 02:26:51,162 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:51,163 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1568497220] [2022-11-03 02:26:51,163 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1568497220] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:26:51,163 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 02:26:51,163 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-03 02:26:51,163 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1211530599] [2022-11-03 02:26:51,164 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:26:51,164 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 02:26:51,164 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:26:51,165 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 02:26:51,165 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:26:51,165 INFO L87 Difference]: Start difference. First operand 596 states and 707 transitions. Second operand has 3 states, 3 states have (on average 14.0) internal successors, (42), 3 states have internal predecessors, (42), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2022-11-03 02:26:51,320 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:26:51,320 INFO L93 Difference]: Finished difference Result 1008 states and 1246 transitions. [2022-11-03 02:26:51,320 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 02:26:51,321 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 14.0) internal successors, (42), 3 states have internal predecessors, (42), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) Word has length 58 [2022-11-03 02:26:51,321 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:26:51,324 INFO L225 Difference]: With dead ends: 1008 [2022-11-03 02:26:51,324 INFO L226 Difference]: Without dead ends: 608 [2022-11-03 02:26:51,326 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 02:26:51,327 INFO L413 NwaCegarLoop]: 39 mSDtfsCounter, 24 mSDsluCounter, 34 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 67 SdHoareTripleChecker+Invalid, 31 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-03 02:26:51,327 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 67 Invalid, 31 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-03 02:26:51,328 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 608 states. [2022-11-03 02:26:51,415 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 608 to 567. [2022-11-03 02:26:51,417 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 567 states, 396 states have (on average 1.1843434343434343) internal successors, (469), 432 states have internal predecessors, (469), 81 states have call successors, (81), 76 states have call predecessors, (81), 89 states have return successors, (123), 84 states have call predecessors, (123), 81 states have call successors, (123) [2022-11-03 02:26:51,420 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 567 states to 567 states and 673 transitions. [2022-11-03 02:26:51,421 INFO L78 Accepts]: Start accepts. Automaton has 567 states and 673 transitions. Word has length 58 [2022-11-03 02:26:51,421 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:26:51,422 INFO L495 AbstractCegarLoop]: Abstraction has 567 states and 673 transitions. [2022-11-03 02:26:51,422 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 14.0) internal successors, (42), 3 states have internal predecessors, (42), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2022-11-03 02:26:51,422 INFO L276 IsEmpty]: Start isEmpty. Operand 567 states and 673 transitions. [2022-11-03 02:26:51,425 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2022-11-03 02:26:51,425 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:26:51,425 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:26:51,425 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-11-03 02:26:51,426 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:26:51,426 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:26:51,426 INFO L85 PathProgramCache]: Analyzing trace with hash 1614984746, now seen corresponding path program 3 times [2022-11-03 02:26:51,426 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:26:51,427 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [369000608] [2022-11-03 02:26:51,427 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:26:51,427 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:26:51,447 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:26:52,282 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 0 proven. 44 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-11-03 02:26:52,282 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:26:52,282 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [369000608] [2022-11-03 02:26:52,282 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [369000608] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:26:52,282 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1140461186] [2022-11-03 02:26:52,283 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2022-11-03 02:26:52,283 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:26:52,283 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:26:52,286 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:26:52,320 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-11-03 02:26:52,419 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2022-11-03 02:26:52,419 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2022-11-03 02:26:52,423 INFO L263 TraceCheckSpWp]: Trace formula consists of 482 conjuncts, 22 conjunts are in the unsatisfiable core [2022-11-03 02:26:52,425 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:26:52,545 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 34 proven. 1 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-03 02:26:52,545 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 02:26:52,652 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 29 proven. 1 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2022-11-03 02:26:52,653 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1140461186] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 02:26:52,653 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [596661306] [2022-11-03 02:26:52,659 INFO L159 IcfgInterpreter]: Started Sifa with 30 locations of interest [2022-11-03 02:26:52,659 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 02:26:52,659 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 02:26:52,660 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 02:26:52,660 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 02:27:01,444 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 319 for LOIs [2022-11-03 02:27:01,544 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 28 for LOIs [2022-11-03 02:27:01,666 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 24 for LOIs [2022-11-03 02:27:01,688 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 02:27:09,719 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '7994#(and (= |timeShift_getWaterLevel_~retValue_acc~4#1| |timeShift_getWaterLevel_#res#1|) (= |timeShift_getWaterLevel_~retValue_acc~4#1| ~waterLevel~0) (<= 0 |old(~pumpRunning~0)|) (<= ~pumpRunning~0 1) (<= |old(~pumpRunning~0)| 1) (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp___0~0#1| 0)) (= ~head~0.offset 0) (<= 1 ~systemActive~0) (<= |#NULL.offset| 0) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~11#1|) (<= ~methaneLevelCritical~0 0) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~11#1|) (<= 0 ~head~0.base) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| |timeShift_getWaterLevel_#res#1|) (<= 0 ~methaneLevelCritical~0) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification4_spec__1_~tmp___0~0#1|) (<= 0 ~pumpRunning~0) (<= ~head~0.base 0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| 0) (<= 0 |#NULL.offset|) (<= 0 |#StackHeapBarrier|) (<= ~systemActive~0 1) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 02:27:09,719 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 02:27:09,719 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 02:27:09,719 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 6, 6] total 22 [2022-11-03 02:27:09,719 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [926947149] [2022-11-03 02:27:09,720 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 02:27:09,720 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2022-11-03 02:27:09,720 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:27:09,721 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2022-11-03 02:27:09,721 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=207, Invalid=1685, Unknown=0, NotChecked=0, Total=1892 [2022-11-03 02:27:09,722 INFO L87 Difference]: Start difference. First operand 567 states and 673 transitions. Second operand has 22 states, 21 states have (on average 4.333333333333333) internal successors, (91), 20 states have internal predecessors, (91), 8 states have call successors, (12), 5 states have call predecessors, (12), 6 states have return successors, (11), 7 states have call predecessors, (11), 7 states have call successors, (11) [2022-11-03 02:27:14,421 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:27:14,421 INFO L93 Difference]: Finished difference Result 1611 states and 2075 transitions. [2022-11-03 02:27:14,422 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 85 states. [2022-11-03 02:27:14,422 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 21 states have (on average 4.333333333333333) internal successors, (91), 20 states have internal predecessors, (91), 8 states have call successors, (12), 5 states have call predecessors, (12), 6 states have return successors, (11), 7 states have call predecessors, (11), 7 states have call successors, (11) Word has length 63 [2022-11-03 02:27:14,423 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:27:14,430 INFO L225 Difference]: With dead ends: 1611 [2022-11-03 02:27:14,430 INFO L226 Difference]: Without dead ends: 1240 [2022-11-03 02:27:14,436 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 318 GetRequests, 202 SyntacticMatches, 0 SemanticMatches, 116 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4962 ImplicationChecksByTransitivity, 11.0s TimeCoverageRelationStatistics Valid=1756, Invalid=12050, Unknown=0, NotChecked=0, Total=13806 [2022-11-03 02:27:14,437 INFO L413 NwaCegarLoop]: 88 mSDtfsCounter, 987 mSDsluCounter, 807 mSDsCounter, 0 mSdLazyCounter, 2110 mSolverCounterSat, 747 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 992 SdHoareTripleChecker+Valid, 713 SdHoareTripleChecker+Invalid, 2857 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 747 IncrementalHoareTripleChecker+Valid, 2110 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.7s IncrementalHoareTripleChecker+Time [2022-11-03 02:27:14,437 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [992 Valid, 713 Invalid, 2857 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [747 Valid, 2110 Invalid, 0 Unknown, 0 Unchecked, 1.7s Time] [2022-11-03 02:27:14,439 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1240 states. [2022-11-03 02:27:14,620 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1240 to 919. [2022-11-03 02:27:14,622 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 919 states, 644 states have (on average 1.1692546583850931) internal successors, (753), 700 states have internal predecessors, (753), 129 states have call successors, (129), 119 states have call predecessors, (129), 145 states have return successors, (237), 136 states have call predecessors, (237), 129 states have call successors, (237) [2022-11-03 02:27:14,627 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 919 states to 919 states and 1119 transitions. [2022-11-03 02:27:14,627 INFO L78 Accepts]: Start accepts. Automaton has 919 states and 1119 transitions. Word has length 63 [2022-11-03 02:27:14,628 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:27:14,628 INFO L495 AbstractCegarLoop]: Abstraction has 919 states and 1119 transitions. [2022-11-03 02:27:14,628 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 21 states have (on average 4.333333333333333) internal successors, (91), 20 states have internal predecessors, (91), 8 states have call successors, (12), 5 states have call predecessors, (12), 6 states have return successors, (11), 7 states have call predecessors, (11), 7 states have call successors, (11) [2022-11-03 02:27:14,628 INFO L276 IsEmpty]: Start isEmpty. Operand 919 states and 1119 transitions. [2022-11-03 02:27:14,630 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2022-11-03 02:27:14,630 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:27:14,630 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:27:14,671 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-11-03 02:27:14,846 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:27:14,846 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:27:14,847 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:27:14,847 INFO L85 PathProgramCache]: Analyzing trace with hash -1478018293, now seen corresponding path program 1 times [2022-11-03 02:27:14,847 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:27:14,847 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2048306778] [2022-11-03 02:27:14,847 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:27:14,847 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:27:14,869 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:27:15,964 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 8 proven. 37 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-03 02:27:15,964 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:27:15,964 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2048306778] [2022-11-03 02:27:15,964 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2048306778] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:27:15,964 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1285196287] [2022-11-03 02:27:15,964 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:27:15,965 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:27:15,965 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:27:15,972 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:27:15,998 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-11-03 02:27:16,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:27:16,103 INFO L263 TraceCheckSpWp]: Trace formula consists of 474 conjuncts, 18 conjunts are in the unsatisfiable core [2022-11-03 02:27:16,106 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:27:16,207 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 36 proven. 0 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2022-11-03 02:27:16,207 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2022-11-03 02:27:16,208 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1285196287] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 02:27:16,208 INFO L184 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2022-11-03 02:27:16,208 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [17] total 19 [2022-11-03 02:27:16,208 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [330878766] [2022-11-03 02:27:16,208 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 02:27:16,209 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-03 02:27:16,209 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:27:16,209 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-03 02:27:16,210 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=45, Invalid=297, Unknown=0, NotChecked=0, Total=342 [2022-11-03 02:27:16,210 INFO L87 Difference]: Start difference. First operand 919 states and 1119 transitions. Second operand has 5 states, 5 states have (on average 9.2) internal successors, (46), 5 states have internal predecessors, (46), 3 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (6), 3 states have call predecessors, (6), 2 states have call successors, (6) [2022-11-03 02:27:16,580 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:27:16,580 INFO L93 Difference]: Finished difference Result 1611 states and 2031 transitions. [2022-11-03 02:27:16,581 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-11-03 02:27:16,581 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.2) internal successors, (46), 5 states have internal predecessors, (46), 3 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (6), 3 states have call predecessors, (6), 2 states have call successors, (6) Word has length 66 [2022-11-03 02:27:16,582 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:27:16,588 INFO L225 Difference]: With dead ends: 1611 [2022-11-03 02:27:16,588 INFO L226 Difference]: Without dead ends: 954 [2022-11-03 02:27:16,590 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 94 GetRequests, 73 SyntacticMatches, 0 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 95 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=65, Invalid=441, Unknown=0, NotChecked=0, Total=506 [2022-11-03 02:27:16,592 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 54 mSDsluCounter, 165 mSDsCounter, 0 mSdLazyCounter, 121 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 128 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 121 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 02:27:16,593 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 189 Invalid, 128 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 121 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 02:27:16,594 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 954 states. [2022-11-03 02:27:16,766 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 954 to 932. [2022-11-03 02:27:16,768 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 932 states, 658 states have (on average 1.174772036474164) internal successors, (773), 715 states have internal predecessors, (773), 129 states have call successors, (129), 120 states have call predecessors, (129), 144 states have return successors, (216), 135 states have call predecessors, (216), 129 states have call successors, (216) [2022-11-03 02:27:16,775 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 932 states to 932 states and 1118 transitions. [2022-11-03 02:27:16,775 INFO L78 Accepts]: Start accepts. Automaton has 932 states and 1118 transitions. Word has length 66 [2022-11-03 02:27:16,776 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:27:16,776 INFO L495 AbstractCegarLoop]: Abstraction has 932 states and 1118 transitions. [2022-11-03 02:27:16,776 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.2) internal successors, (46), 5 states have internal predecessors, (46), 3 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (6), 3 states have call predecessors, (6), 2 states have call successors, (6) [2022-11-03 02:27:16,776 INFO L276 IsEmpty]: Start isEmpty. Operand 932 states and 1118 transitions. [2022-11-03 02:27:16,778 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2022-11-03 02:27:16,779 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 02:27:16,779 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:27:16,817 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-11-03 02:27:17,006 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2022-11-03 02:27:17,006 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 02:27:17,007 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 02:27:17,007 INFO L85 PathProgramCache]: Analyzing trace with hash -189931057, now seen corresponding path program 4 times [2022-11-03 02:27:17,007 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 02:27:17,007 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [859250097] [2022-11-03 02:27:17,007 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 02:27:17,007 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 02:27:17,036 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:27:18,150 INFO L134 CoverageAnalysis]: Checked inductivity of 91 backedges. 40 proven. 43 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2022-11-03 02:27:18,150 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 02:27:18,150 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [859250097] [2022-11-03 02:27:18,150 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [859250097] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 02:27:18,151 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [963505031] [2022-11-03 02:27:18,151 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2022-11-03 02:27:18,151 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:27:18,151 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 02:27:18,152 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 02:27:18,158 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2022-11-03 02:27:18,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 02:27:18,279 INFO L263 TraceCheckSpWp]: Trace formula consists of 545 conjuncts, 36 conjunts are in the unsatisfiable core [2022-11-03 02:27:18,283 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 02:27:18,800 INFO L134 CoverageAnalysis]: Checked inductivity of 91 backedges. 43 proven. 36 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-03 02:27:18,801 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 02:27:19,595 INFO L134 CoverageAnalysis]: Checked inductivity of 91 backedges. 62 proven. 19 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2022-11-03 02:27:19,595 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [963505031] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 02:27:19,596 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [36126390] [2022-11-03 02:27:19,598 INFO L159 IcfgInterpreter]: Started Sifa with 30 locations of interest [2022-11-03 02:27:19,598 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 02:27:19,599 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 02:27:19,599 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 02:27:19,599 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 02:27:31,319 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 319 for LOIs [2022-11-03 02:27:31,381 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 28 for LOIs [2022-11-03 02:27:31,490 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 24 for LOIs [2022-11-03 02:27:31,511 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 02:27:39,798 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '17166#(and (= |timeShift_getWaterLevel_~retValue_acc~4#1| |timeShift_getWaterLevel_#res#1|) (= |timeShift_getWaterLevel_~retValue_acc~4#1| ~waterLevel~0) (<= 0 |old(~pumpRunning~0)|) (<= ~pumpRunning~0 1) (<= |old(~pumpRunning~0)| 1) (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp___0~0#1| 0)) (= ~head~0.offset 0) (<= 1 ~systemActive~0) (<= |#NULL.offset| 0) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~11#1|) (<= ~methaneLevelCritical~0 0) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~11#1|) (<= 0 ~head~0.base) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| |timeShift_getWaterLevel_#res#1|) (<= 0 ~methaneLevelCritical~0) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification4_spec__1_~tmp___0~0#1|) (<= 0 ~pumpRunning~0) (<= ~head~0.base 0) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| 0) (<= 0 |#NULL.offset|) (<= 0 |#StackHeapBarrier|) (<= ~systemActive~0 1) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 02:27:39,798 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 02:27:39,798 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 02:27:39,798 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 13, 13] total 37 [2022-11-03 02:27:39,799 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [98242596] [2022-11-03 02:27:39,799 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 02:27:39,799 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 37 states [2022-11-03 02:27:39,799 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 02:27:39,800 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 37 interpolants. [2022-11-03 02:27:39,801 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=390, Invalid=3032, Unknown=0, NotChecked=0, Total=3422 [2022-11-03 02:27:39,801 INFO L87 Difference]: Start difference. First operand 932 states and 1118 transitions. Second operand has 37 states, 35 states have (on average 4.0285714285714285) internal successors, (141), 35 states have internal predecessors, (141), 14 states have call successors, (16), 8 states have call predecessors, (16), 14 states have return successors, (18), 14 states have call predecessors, (18), 13 states have call successors, (18) [2022-11-03 02:27:42,632 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 02:27:42,633 INFO L93 Difference]: Finished difference Result 1373 states and 1677 transitions. [2022-11-03 02:27:42,633 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 42 states. [2022-11-03 02:27:42,633 INFO L78 Accepts]: Start accepts. Automaton has has 37 states, 35 states have (on average 4.0285714285714285) internal successors, (141), 35 states have internal predecessors, (141), 14 states have call successors, (16), 8 states have call predecessors, (16), 14 states have return successors, (18), 14 states have call predecessors, (18), 13 states have call successors, (18) Word has length 79 [2022-11-03 02:27:42,634 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 02:27:42,634 INFO L225 Difference]: With dead ends: 1373 [2022-11-03 02:27:42,635 INFO L226 Difference]: Without dead ends: 0 [2022-11-03 02:27:42,640 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 301 GetRequests, 208 SyntacticMatches, 0 SemanticMatches, 93 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2940 ImplicationChecksByTransitivity, 10.5s TimeCoverageRelationStatistics Valid=1251, Invalid=7679, Unknown=0, NotChecked=0, Total=8930 [2022-11-03 02:27:42,641 INFO L413 NwaCegarLoop]: 104 mSDtfsCounter, 888 mSDsluCounter, 829 mSDsCounter, 0 mSdLazyCounter, 1197 mSolverCounterSat, 694 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 889 SdHoareTripleChecker+Valid, 721 SdHoareTripleChecker+Invalid, 1891 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 694 IncrementalHoareTripleChecker+Valid, 1197 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2022-11-03 02:27:42,641 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [889 Valid, 721 Invalid, 1891 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [694 Valid, 1197 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2022-11-03 02:27:42,641 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-03 02:27:42,641 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-03 02:27:42,642 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 02:27:42,642 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-03 02:27:42,642 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 79 [2022-11-03 02:27:42,642 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 02:27:42,643 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-03 02:27:42,643 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 37 states, 35 states have (on average 4.0285714285714285) internal successors, (141), 35 states have internal predecessors, (141), 14 states have call successors, (16), 8 states have call predecessors, (16), 14 states have return successors, (18), 14 states have call predecessors, (18), 13 states have call successors, (18) [2022-11-03 02:27:42,643 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-03 02:27:42,643 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-03 02:27:42,646 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-03 02:27:42,688 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2022-11-03 02:27:42,858 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 02:27:42,860 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-03 02:27:50,421 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 731 737) no Hoare annotation was computed. [2022-11-03 02:27:50,421 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 731 737) the Hoare annotation is: true [2022-11-03 02:27:50,422 INFO L895 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 487 498) the Hoare annotation is: (let ((.cse5 (= ~methaneLevelCritical~0 0)) (.cse0 (not (= ~waterLevel~0 1))) (.cse6 (not (= ~pumpRunning~0 0)))) (let ((.cse4 (and (or .cse6 (not (<= 2 ~waterLevel~0))) (or .cse0 .cse6))) (.cse1 (= |old(~methaneLevelCritical~0)| 0)) (.cse2 (not .cse5)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or (not .cse1) .cse5 (not (<= ~waterLevel~0 2)) .cse3 .cse4) (or .cse6 (not (= 2 ~waterLevel~0)) .cse1 .cse2 .cse3)))) [2022-11-03 02:27:50,422 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 487 498) no Hoare annotation was computed. [2022-11-03 02:27:50,424 INFO L895 garLoopResultBuilder]: At program point L779(line 779) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~waterLevel~0)| 2)) .cse0) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0))) [2022-11-03 02:27:50,424 INFO L895 garLoopResultBuilder]: At program point L449(line 449) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~waterLevel~0)| 2)) .cse0) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0))) [2022-11-03 02:27:50,424 INFO L895 garLoopResultBuilder]: At program point L784(line 784) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or (and .cse0 .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (not (= |old(~waterLevel~0)| 2)) .cse2) (or (not .cse1) (not (= |old(~waterLevel~0)| 1)) (and .cse0 (= ~waterLevel~0 1)) .cse2))) [2022-11-03 02:27:50,424 INFO L895 garLoopResultBuilder]: At program point L784-1(lines 765 789) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse0 (not .cse7)) (.cse3 (= ~pumpRunning~0 0)) (.cse6 (= ~waterLevel~0 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (not .cse1) .cse2 (not (<= |old(~waterLevel~0)| 2)) (and (not .cse3) .cse4) (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (and .cse3 .cse4) .cse1 .cse5 .cse2) (or (and .cse3 (<= 1 |timeShift_processEnvironment_~tmp~6#1|) .cse6) .cse7 .cse5 .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse6) .cse2)))) [2022-11-03 02:27:50,425 INFO L895 garLoopResultBuilder]: At program point L718-1(lines 718 724) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse0 (not .cse7)) (.cse3 (= ~pumpRunning~0 0)) (.cse6 (= ~waterLevel~0 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (not .cse1) .cse2 (not (<= |old(~waterLevel~0)| 2)) (and (not .cse3) .cse4) (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (and .cse3 .cse4) .cse1 .cse5 .cse2) (or (and .cse3 (<= 1 |timeShift_processEnvironment_~tmp~6#1|) .cse6) .cse7 .cse5 .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse6) .cse2)))) [2022-11-03 02:27:50,425 INFO L899 garLoopResultBuilder]: For program point L711-1(lines 710 729) no Hoare annotation was computed. [2022-11-03 02:27:50,425 INFO L895 garLoopResultBuilder]: At program point L773(lines 773 781) the Hoare annotation is: (let ((.cse1 (not (= |old(~waterLevel~0)| 2))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2) (or (and (not (= ~pumpRunning~0 0)) (<= 1 |timeShift_processEnvironment_~tmp~6#1|) (= ~waterLevel~0 1)) .cse1 .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse2))) [2022-11-03 02:27:50,425 INFO L895 garLoopResultBuilder]: At program point L769(lines 769 786) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse5 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse5)) (.cse1 (and .cse4 (= |old(~waterLevel~0)| ~waterLevel~0))) (.cse3 (not (= |old(~waterLevel~0)| 2))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 1)) .cse2) (or .cse0 .cse1 .cse3 .cse2) (or (and (not .cse4) (= ~waterLevel~0 1)) .cse5 .cse3 .cse2)))) [2022-11-03 02:27:50,425 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 707 730) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and .cse0 (= ~waterLevel~0 1)) (not (= |old(~waterLevel~0)| 1)) .cse1) (or (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (not (= |old(~waterLevel~0)| 2)) .cse1))) [2022-11-03 02:27:50,426 INFO L899 garLoopResultBuilder]: For program point L431(lines 431 437) no Hoare annotation was computed. [2022-11-03 02:27:50,426 INFO L895 garLoopResultBuilder]: At program point L427(lines 427 440) the Hoare annotation is: (let ((.cse2 (= |old(~pumpRunning~0)| 0))) (let ((.cse3 (not .cse2)) (.cse4 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| 1)) (.cse5 (= ~waterLevel~0 1)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse6 (not (= |old(~waterLevel~0)| 2))) (.cse7 (= 0 ~systemActive~0))) (and (or (and (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| ~waterLevel~0) (or (not .cse0) (not .cse1)) .cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (and .cse3 .cse4 .cse0 (<= 1 |timeShift_processEnvironment_~tmp~6#1|) .cse5) .cse6 .cse7) (or .cse3 (not (= |old(~waterLevel~0)| 1)) .cse7 (and .cse4 .cse0 .cse5)) (or .cse0 .cse1 .cse6 .cse7)))) [2022-11-03 02:27:50,426 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 707 730) no Hoare annotation was computed. [2022-11-03 02:27:50,426 INFO L895 garLoopResultBuilder]: At program point L427-1(lines 419 443) the Hoare annotation is: (let ((.cse3 (= |old(~pumpRunning~0)| 0))) (let ((.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (not (= |old(~waterLevel~0)| 2))) (.cse4 (not .cse3)) (.cse7 (= 0 ~systemActive~0)) (.cse0 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| ~waterLevel~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~waterLevel~0 1))) (and (or (and .cse0 (or (not .cse1) (not .cse2)) .cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (and .cse4 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~3#1| 1) .cse1 (<= 1 |timeShift_processEnvironment_~tmp~6#1|) .cse5) .cse6 .cse7) (or .cse1 .cse2 .cse6 .cse7) (or .cse4 (not (= |old(~waterLevel~0)| 1)) .cse7 (and .cse0 .cse1 .cse5))))) [2022-11-03 02:27:50,426 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 449) no Hoare annotation was computed. [2022-11-03 02:27:50,426 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 566 595) no Hoare annotation was computed. [2022-11-03 02:27:50,426 INFO L902 garLoopResultBuilder]: At program point L576-2(lines 576 590) the Hoare annotation is: true [2022-11-03 02:27:50,426 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 566 595) the Hoare annotation is: true [2022-11-03 02:27:50,427 INFO L902 garLoopResultBuilder]: At program point L572(line 572) the Hoare annotation is: true [2022-11-03 02:27:50,427 INFO L899 garLoopResultBuilder]: For program point L572-1(line 572) no Hoare annotation was computed. [2022-11-03 02:27:50,427 INFO L902 garLoopResultBuilder]: At program point L591(lines 566 595) the Hoare annotation is: true [2022-11-03 02:27:50,427 INFO L899 garLoopResultBuilder]: For program point L587(line 587) no Hoare annotation was computed. [2022-11-03 02:27:50,427 INFO L899 garLoopResultBuilder]: For program point L580(lines 580 584) no Hoare annotation was computed. [2022-11-03 02:27:50,427 INFO L902 garLoopResultBuilder]: At program point L580-1(lines 580 584) the Hoare annotation is: true [2022-11-03 02:27:50,427 INFO L895 garLoopResultBuilder]: At program point L985(lines 936 986) the Hoare annotation is: false [2022-11-03 02:27:50,427 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-11-03 02:27:50,427 INFO L899 garLoopResultBuilder]: For program point L957(lines 957 963) no Hoare annotation was computed. [2022-11-03 02:27:50,428 INFO L895 garLoopResultBuilder]: At program point L957-1(lines 957 963) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (not (= 0 ~systemActive~0)))) (or (and (= 2 ~waterLevel~0) .cse0 .cse1) (and (= ~pumpRunning~0 0) .cse0 (= ~waterLevel~0 1) .cse1))) [2022-11-03 02:27:50,428 INFO L895 garLoopResultBuilder]: At program point L982(lines 937 984) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (not (= 0 ~systemActive~0)))) (or (and (= 2 ~waterLevel~0) (or (not .cse0) (not (= ~methaneLevelCritical~0 0))) .cse1 .cse2) (and .cse0 .cse1 (= ~waterLevel~0 1) .cse2))) [2022-11-03 02:27:50,428 INFO L895 garLoopResultBuilder]: At program point L949(line 949) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (not (= 0 ~systemActive~0)))) (or (and (= 2 ~waterLevel~0) (or (not .cse0) (not (= ~methaneLevelCritical~0 0))) .cse1 .cse2) (and .cse0 .cse1 (= ~waterLevel~0 1) .cse2))) [2022-11-03 02:27:50,428 INFO L895 garLoopResultBuilder]: At program point L652(lines 652 659) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-11-03 02:27:50,428 INFO L902 garLoopResultBuilder]: At program point L652-2(lines 652 659) the Hoare annotation is: true [2022-11-03 02:27:50,428 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-03 02:27:50,428 INFO L895 garLoopResultBuilder]: At program point L975-2(lines 967 980) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (not (= 0 ~systemActive~0)))) (or (and (= 2 ~waterLevel~0) .cse0 .cse1) (and (= ~pumpRunning~0 0) .cse0 (= ~waterLevel~0 1) .cse1))) [2022-11-03 02:27:50,428 INFO L899 garLoopResultBuilder]: For program point L938(lines 937 984) no Hoare annotation was computed. [2022-11-03 02:27:50,429 INFO L895 garLoopResultBuilder]: At program point L959(line 959) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (not (= 0 ~systemActive~0)))) (or (and (= 2 ~waterLevel~0) .cse0 .cse1) (and (= ~pumpRunning~0 0) .cse0 (= ~waterLevel~0 1) .cse1))) [2022-11-03 02:27:50,429 INFO L902 garLoopResultBuilder]: At program point L988(lines 927 992) the Hoare annotation is: true [2022-11-03 02:27:50,429 INFO L899 garLoopResultBuilder]: For program point L947(lines 947 953) no Hoare annotation was computed. [2022-11-03 02:27:50,429 INFO L899 garLoopResultBuilder]: For program point L947-1(lines 947 953) no Hoare annotation was computed. [2022-11-03 02:27:50,429 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 739 763) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2022-11-03 02:27:50,429 INFO L895 garLoopResultBuilder]: At program point L758(line 758) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= 2 ~waterLevel~0)) .cse1) (or (not (= ~waterLevel~0 1)) .cse0 .cse1))) [2022-11-03 02:27:50,429 INFO L899 garLoopResultBuilder]: For program point L758-1(lines 739 763) no Hoare annotation was computed. [2022-11-03 02:27:50,429 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 739 763) no Hoare annotation was computed. [2022-11-03 02:27:50,429 INFO L895 garLoopResultBuilder]: At program point L753(line 753) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= 2 ~waterLevel~0)) .cse1) (or (not (= ~waterLevel~0 1)) .cse0 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~5#1| 0)) .cse1))) [2022-11-03 02:27:50,430 INFO L895 garLoopResultBuilder]: At program point L747(lines 747 755) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (not (= 2 ~waterLevel~0)) (and .cse1 (= |processEnvironment__wrappee__highWaterSensor_~tmp~5#1| 1)) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 (and .cse1 (= |processEnvironment__wrappee__highWaterSensor_~tmp~5#1| 0)) .cse2))) [2022-11-03 02:27:50,430 INFO L895 garLoopResultBuilder]: At program point L743(lines 743 760) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2022-11-03 02:27:50,430 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 475 486) no Hoare annotation was computed. [2022-11-03 02:27:50,430 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 475 486) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (not (= |old(~waterLevel~0)| 2))) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3) (or (not .cse0) (not (= |old(~waterLevel~0)| 1)) .cse3 (= ~waterLevel~0 1)) (or (= ~methaneLevelCritical~0 0) .cse1 .cse2 .cse3))) [2022-11-03 02:27:50,433 INFO L444 BasicCegarLoop]: Path program histogram: [4, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 02:27:50,435 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-03 02:27:50,458 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 03.11 02:27:50 BoogieIcfgContainer [2022-11-03 02:27:50,458 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-03 02:27:50,459 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-03 02:27:50,459 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-03 02:27:50,459 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-03 02:27:50,460 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 02:26:21" (3/4) ... [2022-11-03 02:27:50,463 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-03 02:27:50,468 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-03 02:27:50,469 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-03 02:27:50,469 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-03 02:27:50,469 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-03 02:27:50,469 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 02:27:50,469 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-03 02:27:50,476 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 80 nodes and edges [2022-11-03 02:27:50,477 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 28 nodes and edges [2022-11-03 02:27:50,478 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2022-11-03 02:27:50,478 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-11-03 02:27:50,479 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-11-03 02:27:50,479 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-03 02:27:50,480 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-03 02:27:50,505 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || (pumpRunning == \old(pumpRunning) && waterLevel == 1)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && (((pumpRunning == \old(pumpRunning) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) == 2)) || 0 == systemActive) [2022-11-03 02:27:50,506 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((((pumpRunning == 0 && 1 <= tmp) && waterLevel == 1) || \old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) [2022-11-03 02:27:50,506 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && ((((!(pumpRunning == 0) && waterLevel == 1) || \old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive) [2022-11-03 02:27:50,507 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((((pumpRunning == 0 && 1 <= tmp) && waterLevel == 1) || \old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) [2022-11-03 02:27:50,507 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(2 == waterLevel)) || 0 == systemActive) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || pumpRunning == 0) || 0 == systemActive) [2022-11-03 02:27:50,508 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == waterLevel && (!(pumpRunning == 0) || !(methaneLevelCritical == 0))) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) || ((((!(\old(pumpRunning) == 0) && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && waterLevel == 1)) || !(\old(waterLevel) == 2)) || 0 == systemActive) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((tmp == 1 && pumpRunning == 0) && waterLevel == 1))) && (((pumpRunning == 0 || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive) [2022-11-03 02:27:50,508 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == waterLevel && (!(pumpRunning == 0) || !(methaneLevelCritical == 0))) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) || ((((!(\old(pumpRunning) == 0) && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && waterLevel == 1)) || !(\old(waterLevel) == 2)) || 0 == systemActive) && (((pumpRunning == 0 || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((tmp == waterLevel && pumpRunning == 0) && waterLevel == 1)) [2022-11-03 02:27:50,509 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(waterLevel) == 2) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) [2022-11-03 02:27:50,509 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive) && ((((!(pumpRunning == 0) && 1 <= tmp) && waterLevel == 1) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) [2022-11-03 02:27:50,509 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(2 == waterLevel)) || (pumpRunning == 0 && tmp == 1)) || 0 == systemActive) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && tmp == 0)) || 0 == systemActive) [2022-11-03 02:27:50,534 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/witness.graphml [2022-11-03 02:27:50,534 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-03 02:27:50,535 INFO L158 Benchmark]: Toolchain (without parser) took 90489.89ms. Allocated memory was 127.9MB in the beginning and 931.1MB in the end (delta: 803.2MB). Free memory was 91.5MB in the beginning and 746.6MB in the end (delta: -655.0MB). Peak memory consumption was 147.6MB. Max. memory is 16.1GB. [2022-11-03 02:27:50,535 INFO L158 Benchmark]: CDTParser took 0.30ms. Allocated memory is still 127.9MB. Free memory is still 109.3MB. There was no memory consumed. Max. memory is 16.1GB. [2022-11-03 02:27:50,536 INFO L158 Benchmark]: CACSL2BoogieTranslator took 521.11ms. Allocated memory is still 127.9MB. Free memory was 91.2MB in the beginning and 96.6MB in the end (delta: -5.4MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. [2022-11-03 02:27:50,536 INFO L158 Benchmark]: Boogie Procedure Inliner took 48.44ms. Allocated memory is still 127.9MB. Free memory was 96.2MB in the beginning and 93.6MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-03 02:27:50,536 INFO L158 Benchmark]: Boogie Preprocessor took 55.89ms. Allocated memory is still 127.9MB. Free memory was 93.6MB in the beginning and 92.0MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-03 02:27:50,537 INFO L158 Benchmark]: RCFGBuilder took 752.15ms. Allocated memory is still 127.9MB. Free memory was 92.0MB in the beginning and 60.5MB in the end (delta: 31.5MB). Peak memory consumption was 31.5MB. Max. memory is 16.1GB. [2022-11-03 02:27:50,537 INFO L158 Benchmark]: TraceAbstraction took 89024.48ms. Allocated memory was 127.9MB in the beginning and 931.1MB in the end (delta: 803.2MB). Free memory was 60.0MB in the beginning and 752.8MB in the end (delta: -692.8MB). Peak memory consumption was 535.9MB. Max. memory is 16.1GB. [2022-11-03 02:27:50,537 INFO L158 Benchmark]: Witness Printer took 75.51ms. Allocated memory is still 931.1MB. Free memory was 752.8MB in the beginning and 746.6MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-11-03 02:27:50,539 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.30ms. Allocated memory is still 127.9MB. Free memory is still 109.3MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 521.11ms. Allocated memory is still 127.9MB. Free memory was 91.2MB in the beginning and 96.6MB in the end (delta: -5.4MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 48.44ms. Allocated memory is still 127.9MB. Free memory was 96.2MB in the beginning and 93.6MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 55.89ms. Allocated memory is still 127.9MB. Free memory was 93.6MB in the beginning and 92.0MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 752.15ms. Allocated memory is still 127.9MB. Free memory was 92.0MB in the beginning and 60.5MB in the end (delta: 31.5MB). Peak memory consumption was 31.5MB. Max. memory is 16.1GB. * TraceAbstraction took 89024.48ms. Allocated memory was 127.9MB in the beginning and 931.1MB in the end (delta: 803.2MB). Free memory was 60.0MB in the beginning and 752.8MB in the end (delta: -692.8MB). Peak memory consumption was 535.9MB. Max. memory is 16.1GB. * Witness Printer took 75.51ms. Allocated memory is still 931.1MB. Free memory was 752.8MB in the beginning and 746.6MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 449]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 51 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 88.9s, OverallIterations: 11, TraceHistogramMax: 4, PathProgramHistogramMax: 4, EmptinessCheckTime: 0.0s, AutomataDifference: 17.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 7.6s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3680 SdHoareTripleChecker+Valid, 6.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3648 mSDsluCounter, 3330 SdHoareTripleChecker+Invalid, 5.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 3450 mSDsCounter, 2744 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 6871 IncrementalHoareTripleChecker+Invalid, 9615 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 2744 mSolverCounterUnsat, 679 mSDtfsCounter, 6871 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 1030 GetRequests, 613 SyntacticMatches, 0 SemanticMatches, 417 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 17275 ImplicationChecksByTransitivity, 32.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=932occurred in iteration=10, InterpolantAutomatonStates: 294, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.8s AutomataMinimizationTime, 11 MinimizatonAttempts, 689 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 33 LocationsWithAnnotation, 2098 PreInvPairs, 2501 NumberOfFragments, 1023 HoareAnnotationTreeSize, 2098 FomulaSimplifications, 60577 FormulaSimplificationTreeSizeReduction, 2.0s HoareSimplificationTime, 33 FomulaSimplificationsInter, 46107 FormulaSimplificationTreeSizeReductionInter, 5.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 7.7s InterpolantComputationTime, 691 NumberOfCodeBlocks, 691 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 857 ConstructedInterpolants, 0 QuantifiedInterpolants, 4482 SizeOfPredicates, 40 NumberOfNonLiveVariables, 1899 ConjunctsInSsa, 104 ConjunctsInUnsatCore, 18 InterpolantComputations, 8 PerfectInterpolantSequences, 398/609 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 419]: Loop Invariant Derived loop invariant: (((((((tmp == waterLevel && (!(pumpRunning == 0) || !(methaneLevelCritical == 0))) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) || ((((!(\old(pumpRunning) == 0) && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && waterLevel == 1)) || !(\old(waterLevel) == 2)) || 0 == systemActive) && (((pumpRunning == 0 || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((tmp == waterLevel && pumpRunning == 0) && waterLevel == 1)) - InvariantResult [Line: 773]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive) && ((((!(pumpRunning == 0) && 1 <= tmp) && waterLevel == 1) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) - InvariantResult [Line: 718]: Loop Invariant Derived loop invariant: (((((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((((pumpRunning == 0 && 1 <= tmp) && waterLevel == 1) || \old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) - InvariantResult [Line: 937]: Loop Invariant Derived loop invariant: (((2 == waterLevel && (!(pumpRunning == 0) || !(methaneLevelCritical == 0))) && splverifierCounter == 0) && !(0 == systemActive)) || (((pumpRunning == 0 && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) - InvariantResult [Line: 927]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 707]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || (pumpRunning == \old(pumpRunning) && waterLevel == 1)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && (((pumpRunning == \old(pumpRunning) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) == 2)) || 0 == systemActive) - InvariantResult [Line: 743]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(2 == waterLevel)) || 0 == systemActive) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || pumpRunning == 0) || 0 == systemActive) - InvariantResult [Line: 957]: Loop Invariant Derived loop invariant: ((2 == waterLevel && splverifierCounter == 0) && !(0 == systemActive)) || (((pumpRunning == 0 && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) - InvariantResult [Line: 576]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 652]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 765]: Loop Invariant Derived loop invariant: (((((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((((pumpRunning == 0 && 1 <= tmp) && waterLevel == 1) || \old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) - InvariantResult [Line: 769]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) == 2)) || 0 == systemActive)) && ((((!(pumpRunning == 0) && waterLevel == 1) || \old(pumpRunning) == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive) - InvariantResult [Line: 449]: Loop Invariant Derived loop invariant: (!(\old(waterLevel) == 2) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) - InvariantResult [Line: 652]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 747]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(2 == waterLevel)) || (pumpRunning == 0 && tmp == 1)) || 0 == systemActive) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && tmp == 0)) || 0 == systemActive) - InvariantResult [Line: 936]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 566]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 427]: Loop Invariant Derived loop invariant: (((((((tmp == waterLevel && (!(pumpRunning == 0) || !(methaneLevelCritical == 0))) && \old(pumpRunning) == 0) && \old(waterLevel) == waterLevel) || ((((!(\old(pumpRunning) == 0) && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && waterLevel == 1)) || !(\old(waterLevel) == 2)) || 0 == systemActive) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((tmp == 1 && pumpRunning == 0) && waterLevel == 1))) && (((pumpRunning == 0 || methaneLevelCritical == 0) || !(\old(waterLevel) == 2)) || 0 == systemActive) RESULT: Ultimate proved your program to be correct! [2022-11-03 02:27:50,620 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_01d5c562-802f-4b75-b778-087990cc141b/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE