./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 5e519f3a Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash e7a194b3d6e079d2329a0d70eaa59b34ff3d58300de8b046ef1cd7cff7f67b94 --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-5e519f3 [2022-11-03 01:53:07,492 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-03 01:53:07,496 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-03 01:53:07,525 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-03 01:53:07,526 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-03 01:53:07,527 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-03 01:53:07,529 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-03 01:53:07,531 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-03 01:53:07,533 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-03 01:53:07,534 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-03 01:53:07,536 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-03 01:53:07,537 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-03 01:53:07,538 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-03 01:53:07,539 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-03 01:53:07,541 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-03 01:53:07,542 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-03 01:53:07,543 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-03 01:53:07,544 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-03 01:53:07,546 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-03 01:53:07,548 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-03 01:53:07,550 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-03 01:53:07,551 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-03 01:53:07,553 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-03 01:53:07,554 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-03 01:53:07,558 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-03 01:53:07,559 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-03 01:53:07,559 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-03 01:53:07,560 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-03 01:53:07,561 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-03 01:53:07,563 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-03 01:53:07,563 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-03 01:53:07,564 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-03 01:53:07,565 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-03 01:53:07,566 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-03 01:53:07,568 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-03 01:53:07,568 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-03 01:53:07,569 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-03 01:53:07,570 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-03 01:53:07,570 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-03 01:53:07,572 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-03 01:53:07,573 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-03 01:53:07,574 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-11-03 01:53:07,601 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-03 01:53:07,601 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-03 01:53:07,602 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-03 01:53:07,602 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-03 01:53:07,603 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-03 01:53:07,604 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-03 01:53:07,604 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-03 01:53:07,605 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-03 01:53:07,605 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-03 01:53:07,605 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-03 01:53:07,606 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-03 01:53:07,606 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-03 01:53:07,607 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-03 01:53:07,607 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-03 01:53:07,607 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-03 01:53:07,608 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-03 01:53:07,608 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-03 01:53:07,609 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-03 01:53:07,610 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-03 01:53:07,610 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-03 01:53:07,610 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-03 01:53:07,611 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-03 01:53:07,611 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-03 01:53:07,611 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-03 01:53:07,612 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-03 01:53:07,612 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-03 01:53:07,612 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-03 01:53:07,613 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-03 01:53:07,613 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-03 01:53:07,613 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-03 01:53:07,614 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-03 01:53:07,614 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-03 01:53:07,614 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-03 01:53:07,615 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-03 01:53:07,615 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-03 01:53:07,616 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-03 01:53:07,616 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-03 01:53:07,616 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-03 01:53:07,617 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-03 01:53:07,617 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-03 01:53:07,617 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-03 01:53:07,617 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> e7a194b3d6e079d2329a0d70eaa59b34ff3d58300de8b046ef1cd7cff7f67b94 [2022-11-03 01:53:07,985 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-03 01:53:08,046 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-03 01:53:08,050 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-03 01:53:08,051 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-03 01:53:08,052 INFO L275 PluginConnector]: CDTParser initialized [2022-11-03 01:53:08,054 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/../../sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c [2022-11-03 01:53:08,147 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/data/8ec3c975e/eb8e3c688455403b85e88481897f6e66/FLAG94b3d0260 [2022-11-03 01:53:08,828 INFO L306 CDTParser]: Found 1 translation units. [2022-11-03 01:53:08,829 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c [2022-11-03 01:53:08,842 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/data/8ec3c975e/eb8e3c688455403b85e88481897f6e66/FLAG94b3d0260 [2022-11-03 01:53:09,079 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/data/8ec3c975e/eb8e3c688455403b85e88481897f6e66 [2022-11-03 01:53:09,082 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-03 01:53:09,084 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-03 01:53:09,089 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-03 01:53:09,090 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-03 01:53:09,094 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-03 01:53:09,096 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,099 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@23110d5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09, skipping insertion in model container [2022-11-03 01:53:09,100 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,111 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-03 01:53:09,179 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-03 01:53:09,523 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c[17915,17928] [2022-11-03 01:53:09,534 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-03 01:53:09,545 INFO L203 MainTranslator]: Completed pre-run [2022-11-03 01:53:09,682 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c[17915,17928] [2022-11-03 01:53:09,706 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-03 01:53:09,740 INFO L208 MainTranslator]: Completed translation [2022-11-03 01:53:09,741 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09 WrapperNode [2022-11-03 01:53:09,741 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-03 01:53:09,743 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-03 01:53:09,743 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-03 01:53:09,743 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-03 01:53:09,752 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,783 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,836 INFO L138 Inliner]: procedures = 58, calls = 161, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 286 [2022-11-03 01:53:09,836 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-03 01:53:09,837 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-03 01:53:09,838 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-03 01:53:09,838 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-03 01:53:09,851 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,852 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,867 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,867 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,873 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,878 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,891 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,892 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,895 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-03 01:53:09,896 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-03 01:53:09,896 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-03 01:53:09,897 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-03 01:53:09,906 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (1/1) ... [2022-11-03 01:53:09,915 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-03 01:53:09,928 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 01:53:09,947 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-03 01:53:09,950 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-03 01:53:10,004 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-03 01:53:10,004 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-03 01:53:10,004 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-03 01:53:10,005 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-03 01:53:10,005 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-03 01:53:10,005 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-03 01:53:10,005 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-03 01:53:10,006 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 01:53:10,006 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 01:53:10,006 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-03 01:53:10,006 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-03 01:53:10,007 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2022-11-03 01:53:10,007 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2022-11-03 01:53:10,007 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2022-11-03 01:53:10,007 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2022-11-03 01:53:10,008 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-11-03 01:53:10,008 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-11-03 01:53:10,008 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-03 01:53:10,008 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-03 01:53:10,009 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-03 01:53:10,009 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-03 01:53:10,009 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-03 01:53:10,123 INFO L235 CfgBuilder]: Building ICFG [2022-11-03 01:53:10,126 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-03 01:53:10,601 INFO L276 CfgBuilder]: Performing block encoding [2022-11-03 01:53:10,796 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-03 01:53:10,797 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-03 01:53:10,800 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 01:53:10 BoogieIcfgContainer [2022-11-03 01:53:10,800 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-03 01:53:10,814 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-03 01:53:10,815 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-03 01:53:10,819 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-03 01:53:10,819 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 03.11 01:53:09" (1/3) ... [2022-11-03 01:53:10,820 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@25f18775 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 03.11 01:53:10, skipping insertion in model container [2022-11-03 01:53:10,821 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 03.11 01:53:09" (2/3) ... [2022-11-03 01:53:10,821 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@25f18775 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 03.11 01:53:10, skipping insertion in model container [2022-11-03 01:53:10,821 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 01:53:10" (3/3) ... [2022-11-03 01:53:10,823 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product53.cil.c [2022-11-03 01:53:10,850 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-03 01:53:10,850 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-03 01:53:10,952 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-03 01:53:10,967 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@1e153eb6, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-03 01:53:10,967 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-03 01:53:10,973 INFO L276 IsEmpty]: Start isEmpty. Operand has 69 states, 42 states have (on average 1.4285714285714286) internal successors, (60), 52 states have internal predecessors, (60), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) [2022-11-03 01:53:10,988 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2022-11-03 01:53:10,988 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:10,989 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:10,990 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:10,997 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:10,998 INFO L85 PathProgramCache]: Analyzing trace with hash 1080362011, now seen corresponding path program 1 times [2022-11-03 01:53:11,010 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:11,011 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2025048524] [2022-11-03 01:53:11,012 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:11,012 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:11,213 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:11,375 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-03 01:53:11,376 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:11,377 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2025048524] [2022-11-03 01:53:11,377 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2025048524] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:11,378 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 01:53:11,378 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-03 01:53:11,380 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [709107998] [2022-11-03 01:53:11,382 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:11,390 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-03 01:53:11,391 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:11,433 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-03 01:53:11,435 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-03 01:53:11,438 INFO L87 Difference]: Start difference. First operand has 69 states, 42 states have (on average 1.4285714285714286) internal successors, (60), 52 states have internal predecessors, (60), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) Second operand has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-03 01:53:11,587 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:11,587 INFO L93 Difference]: Finished difference Result 136 states and 185 transitions. [2022-11-03 01:53:11,589 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-03 01:53:11,591 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 21 [2022-11-03 01:53:11,592 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:11,608 INFO L225 Difference]: With dead ends: 136 [2022-11-03 01:53:11,609 INFO L226 Difference]: Without dead ends: 64 [2022-11-03 01:53:11,615 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-03 01:53:11,624 INFO L413 NwaCegarLoop]: 71 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 71 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:11,626 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 71 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 01:53:11,648 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 64 states. [2022-11-03 01:53:11,687 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 64 to 64. [2022-11-03 01:53:11,689 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 64 states, 39 states have (on average 1.3333333333333333) internal successors, (52), 48 states have internal predecessors, (52), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-03 01:53:11,701 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 64 states to 64 states and 83 transitions. [2022-11-03 01:53:11,702 INFO L78 Accepts]: Start accepts. Automaton has 64 states and 83 transitions. Word has length 21 [2022-11-03 01:53:11,703 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:11,703 INFO L495 AbstractCegarLoop]: Abstraction has 64 states and 83 transitions. [2022-11-03 01:53:11,705 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-03 01:53:11,705 INFO L276 IsEmpty]: Start isEmpty. Operand 64 states and 83 transitions. [2022-11-03 01:53:11,711 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2022-11-03 01:53:11,712 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:11,712 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:11,713 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-03 01:53:11,713 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:11,715 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:11,715 INFO L85 PathProgramCache]: Analyzing trace with hash 1884563309, now seen corresponding path program 1 times [2022-11-03 01:53:11,716 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:11,716 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1280760100] [2022-11-03 01:53:11,716 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:11,717 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:11,783 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:11,908 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-03 01:53:11,909 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:11,909 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1280760100] [2022-11-03 01:53:11,909 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1280760100] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:11,910 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 01:53:11,910 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-03 01:53:11,910 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [997401166] [2022-11-03 01:53:11,910 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:11,912 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 01:53:11,912 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:11,913 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 01:53:11,913 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 01:53:11,913 INFO L87 Difference]: Start difference. First operand 64 states and 83 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-03 01:53:11,989 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:11,990 INFO L93 Difference]: Finished difference Result 126 states and 167 transitions. [2022-11-03 01:53:11,990 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 01:53:11,991 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 24 [2022-11-03 01:53:11,991 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:11,992 INFO L225 Difference]: With dead ends: 126 [2022-11-03 01:53:11,993 INFO L226 Difference]: Without dead ends: 64 [2022-11-03 01:53:11,994 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 01:53:11,996 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 70 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 65 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:11,996 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [70 Valid, 65 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 01:53:11,998 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 64 states. [2022-11-03 01:53:12,007 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 64 to 64. [2022-11-03 01:53:12,008 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 64 states, 39 states have (on average 1.3076923076923077) internal successors, (51), 48 states have internal predecessors, (51), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-03 01:53:12,009 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 64 states to 64 states and 82 transitions. [2022-11-03 01:53:12,009 INFO L78 Accepts]: Start accepts. Automaton has 64 states and 82 transitions. Word has length 24 [2022-11-03 01:53:12,011 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:12,011 INFO L495 AbstractCegarLoop]: Abstraction has 64 states and 82 transitions. [2022-11-03 01:53:12,011 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-03 01:53:12,012 INFO L276 IsEmpty]: Start isEmpty. Operand 64 states and 82 transitions. [2022-11-03 01:53:12,013 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2022-11-03 01:53:12,013 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:12,014 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:12,014 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-03 01:53:12,014 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:12,015 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:12,015 INFO L85 PathProgramCache]: Analyzing trace with hash -250429362, now seen corresponding path program 1 times [2022-11-03 01:53:12,015 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:12,015 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [325131278] [2022-11-03 01:53:12,016 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:12,016 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:12,041 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:12,157 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-03 01:53:12,158 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:12,159 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [325131278] [2022-11-03 01:53:12,160 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [325131278] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:12,160 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 01:53:12,162 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-03 01:53:12,162 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1505168028] [2022-11-03 01:53:12,163 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:12,163 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 01:53:12,165 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:12,166 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 01:53:12,167 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 01:53:12,167 INFO L87 Difference]: Start difference. First operand 64 states and 82 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-03 01:53:12,334 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:12,334 INFO L93 Difference]: Finished difference Result 175 states and 238 transitions. [2022-11-03 01:53:12,338 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 01:53:12,338 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 30 [2022-11-03 01:53:12,339 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:12,341 INFO L225 Difference]: With dead ends: 175 [2022-11-03 01:53:12,341 INFO L226 Difference]: Without dead ends: 113 [2022-11-03 01:53:12,343 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 01:53:12,344 INFO L413 NwaCegarLoop]: 91 mSDtfsCounter, 57 mSDsluCounter, 66 mSDsCounter, 0 mSdLazyCounter, 34 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 57 SdHoareTripleChecker+Valid, 150 SdHoareTripleChecker+Invalid, 40 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 34 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:12,345 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [57 Valid, 150 Invalid, 40 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 34 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 01:53:12,346 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 113 states. [2022-11-03 01:53:12,385 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 113 to 111. [2022-11-03 01:53:12,386 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 111 states, 71 states have (on average 1.2535211267605635) internal successors, (89), 79 states have internal predecessors, (89), 24 states have call successors, (24), 17 states have call predecessors, (24), 15 states have return successors, (32), 20 states have call predecessors, (32), 22 states have call successors, (32) [2022-11-03 01:53:12,390 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 111 states to 111 states and 145 transitions. [2022-11-03 01:53:12,390 INFO L78 Accepts]: Start accepts. Automaton has 111 states and 145 transitions. Word has length 30 [2022-11-03 01:53:12,390 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:12,391 INFO L495 AbstractCegarLoop]: Abstraction has 111 states and 145 transitions. [2022-11-03 01:53:12,393 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-03 01:53:12,393 INFO L276 IsEmpty]: Start isEmpty. Operand 111 states and 145 transitions. [2022-11-03 01:53:12,401 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2022-11-03 01:53:12,401 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:12,401 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:12,402 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-03 01:53:12,402 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:12,405 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:12,408 INFO L85 PathProgramCache]: Analyzing trace with hash 851485166, now seen corresponding path program 1 times [2022-11-03 01:53:12,409 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:12,409 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1406333755] [2022-11-03 01:53:12,409 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:12,410 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:12,444 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:12,574 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-03 01:53:12,574 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:12,575 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1406333755] [2022-11-03 01:53:12,575 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1406333755] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:12,575 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 01:53:12,575 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-03 01:53:12,576 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1267603879] [2022-11-03 01:53:12,576 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:12,577 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 01:53:12,577 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:12,578 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 01:53:12,578 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 01:53:12,579 INFO L87 Difference]: Start difference. First operand 111 states and 145 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-11-03 01:53:12,662 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:12,663 INFO L93 Difference]: Finished difference Result 178 states and 228 transitions. [2022-11-03 01:53:12,663 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 01:53:12,664 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 35 [2022-11-03 01:53:12,664 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:12,686 INFO L225 Difference]: With dead ends: 178 [2022-11-03 01:53:12,686 INFO L226 Difference]: Without dead ends: 95 [2022-11-03 01:53:12,689 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-03 01:53:12,699 INFO L413 NwaCegarLoop]: 56 mSDtfsCounter, 7 mSDsluCounter, 59 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 103 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:12,705 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 103 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 01:53:12,707 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 95 states. [2022-11-03 01:53:12,725 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 95 to 95. [2022-11-03 01:53:12,726 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 95 states, 61 states have (on average 1.2622950819672132) internal successors, (77), 69 states have internal predecessors, (77), 18 states have call successors, (18), 15 states have call predecessors, (18), 15 states have return successors, (24), 16 states have call predecessors, (24), 18 states have call successors, (24) [2022-11-03 01:53:12,727 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 95 states to 95 states and 119 transitions. [2022-11-03 01:53:12,728 INFO L78 Accepts]: Start accepts. Automaton has 95 states and 119 transitions. Word has length 35 [2022-11-03 01:53:12,728 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:12,728 INFO L495 AbstractCegarLoop]: Abstraction has 95 states and 119 transitions. [2022-11-03 01:53:12,729 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-11-03 01:53:12,729 INFO L276 IsEmpty]: Start isEmpty. Operand 95 states and 119 transitions. [2022-11-03 01:53:12,730 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2022-11-03 01:53:12,730 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:12,731 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:12,731 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-03 01:53:12,731 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:12,732 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:12,736 INFO L85 PathProgramCache]: Analyzing trace with hash 1402126779, now seen corresponding path program 1 times [2022-11-03 01:53:12,736 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:12,737 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [341917837] [2022-11-03 01:53:12,737 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:12,737 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:12,795 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:13,244 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-03 01:53:13,244 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:13,244 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [341917837] [2022-11-03 01:53:13,245 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [341917837] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:13,245 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 01:53:13,245 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-11-03 01:53:13,245 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1620951554] [2022-11-03 01:53:13,246 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:13,246 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-03 01:53:13,246 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:13,247 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-03 01:53:13,247 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2022-11-03 01:53:13,247 INFO L87 Difference]: Start difference. First operand 95 states and 119 transitions. Second operand has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 4 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2022-11-03 01:53:13,487 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:13,487 INFO L93 Difference]: Finished difference Result 277 states and 346 transitions. [2022-11-03 01:53:13,487 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-03 01:53:13,488 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 4 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) Word has length 37 [2022-11-03 01:53:13,488 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:13,490 INFO L225 Difference]: With dead ends: 277 [2022-11-03 01:53:13,490 INFO L226 Difference]: Without dead ends: 184 [2022-11-03 01:53:13,491 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=26, Unknown=0, NotChecked=0, Total=42 [2022-11-03 01:53:13,492 INFO L413 NwaCegarLoop]: 91 mSDtfsCounter, 109 mSDsluCounter, 160 mSDsCounter, 0 mSdLazyCounter, 131 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 110 SdHoareTripleChecker+Valid, 233 SdHoareTripleChecker+Invalid, 156 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 131 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:13,493 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [110 Valid, 233 Invalid, 156 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 131 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-03 01:53:13,494 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 184 states. [2022-11-03 01:53:13,524 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 184 to 176. [2022-11-03 01:53:13,525 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 176 states, 113 states have (on average 1.238938053097345) internal successors, (140), 125 states have internal predecessors, (140), 33 states have call successors, (33), 28 states have call predecessors, (33), 29 states have return successors, (45), 30 states have call predecessors, (45), 33 states have call successors, (45) [2022-11-03 01:53:13,527 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 176 states to 176 states and 218 transitions. [2022-11-03 01:53:13,527 INFO L78 Accepts]: Start accepts. Automaton has 176 states and 218 transitions. Word has length 37 [2022-11-03 01:53:13,528 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:13,528 INFO L495 AbstractCegarLoop]: Abstraction has 176 states and 218 transitions. [2022-11-03 01:53:13,528 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 4 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2022-11-03 01:53:13,528 INFO L276 IsEmpty]: Start isEmpty. Operand 176 states and 218 transitions. [2022-11-03 01:53:13,529 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-11-03 01:53:13,530 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:13,530 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:13,530 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-03 01:53:13,530 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:13,531 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:13,531 INFO L85 PathProgramCache]: Analyzing trace with hash 775405151, now seen corresponding path program 1 times [2022-11-03 01:53:13,531 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:13,531 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [212308029] [2022-11-03 01:53:13,532 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:13,532 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:13,557 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:13,876 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-03 01:53:13,876 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:13,876 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [212308029] [2022-11-03 01:53:13,877 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [212308029] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:13,877 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 01:53:13,877 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-03 01:53:13,877 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1136367605] [2022-11-03 01:53:13,877 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:13,878 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-03 01:53:13,878 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:13,879 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-03 01:53:13,879 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2022-11-03 01:53:13,879 INFO L87 Difference]: Start difference. First operand 176 states and 218 transitions. Second operand has 8 states, 7 states have (on average 4.0) internal successors, (28), 7 states have internal predecessors, (28), 5 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2022-11-03 01:53:14,649 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:14,649 INFO L93 Difference]: Finished difference Result 424 states and 540 transitions. [2022-11-03 01:53:14,650 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2022-11-03 01:53:14,650 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 4.0) internal successors, (28), 7 states have internal predecessors, (28), 5 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) Word has length 40 [2022-11-03 01:53:14,651 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:14,654 INFO L225 Difference]: With dead ends: 424 [2022-11-03 01:53:14,654 INFO L226 Difference]: Without dead ends: 304 [2022-11-03 01:53:14,655 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 4 SyntacticMatches, 1 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 30 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2022-11-03 01:53:14,656 INFO L413 NwaCegarLoop]: 92 mSDtfsCounter, 174 mSDsluCounter, 254 mSDsCounter, 0 mSdLazyCounter, 439 mSolverCounterSat, 72 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 182 SdHoareTripleChecker+Valid, 305 SdHoareTripleChecker+Invalid, 511 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 72 IncrementalHoareTripleChecker+Valid, 439 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:14,657 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [182 Valid, 305 Invalid, 511 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [72 Valid, 439 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2022-11-03 01:53:14,658 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 304 states. [2022-11-03 01:53:14,708 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 304 to 261. [2022-11-03 01:53:14,709 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 261 states, 172 states have (on average 1.244186046511628) internal successors, (214), 189 states have internal predecessors, (214), 46 states have call successors, (46), 35 states have call predecessors, (46), 42 states have return successors, (65), 47 states have call predecessors, (65), 46 states have call successors, (65) [2022-11-03 01:53:14,711 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 261 states to 261 states and 325 transitions. [2022-11-03 01:53:14,711 INFO L78 Accepts]: Start accepts. Automaton has 261 states and 325 transitions. Word has length 40 [2022-11-03 01:53:14,712 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:14,712 INFO L495 AbstractCegarLoop]: Abstraction has 261 states and 325 transitions. [2022-11-03 01:53:14,712 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 4.0) internal successors, (28), 7 states have internal predecessors, (28), 5 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 4 states have call predecessors, (5), 5 states have call successors, (5) [2022-11-03 01:53:14,712 INFO L276 IsEmpty]: Start isEmpty. Operand 261 states and 325 transitions. [2022-11-03 01:53:14,713 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-11-03 01:53:14,714 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:14,714 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:14,714 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-03 01:53:14,714 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:14,715 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:14,715 INFO L85 PathProgramCache]: Analyzing trace with hash 1685826622, now seen corresponding path program 1 times [2022-11-03 01:53:14,715 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:14,715 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [677020063] [2022-11-03 01:53:14,716 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:14,716 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:14,734 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:14,915 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-03 01:53:14,915 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:14,915 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [677020063] [2022-11-03 01:53:14,915 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [677020063] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:14,916 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-03 01:53:14,916 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-11-03 01:53:14,916 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1228027881] [2022-11-03 01:53:14,916 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:14,917 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-11-03 01:53:14,917 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:14,917 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-11-03 01:53:14,918 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-11-03 01:53:14,918 INFO L87 Difference]: Start difference. First operand 261 states and 325 transitions. Second operand has 7 states, 6 states have (on average 4.833333333333333) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) [2022-11-03 01:53:15,331 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:15,331 INFO L93 Difference]: Finished difference Result 555 states and 698 transitions. [2022-11-03 01:53:15,332 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2022-11-03 01:53:15,332 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 6 states have (on average 4.833333333333333) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) Word has length 40 [2022-11-03 01:53:15,333 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:15,337 INFO L225 Difference]: With dead ends: 555 [2022-11-03 01:53:15,337 INFO L226 Difference]: Without dead ends: 296 [2022-11-03 01:53:15,338 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 22 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=53, Invalid=157, Unknown=0, NotChecked=0, Total=210 [2022-11-03 01:53:15,341 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 68 mSDsluCounter, 260 mSDsCounter, 0 mSdLazyCounter, 266 mSolverCounterSat, 40 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 277 SdHoareTripleChecker+Invalid, 306 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 40 IncrementalHoareTripleChecker+Valid, 266 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:15,341 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 277 Invalid, 306 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [40 Valid, 266 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-11-03 01:53:15,343 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 296 states. [2022-11-03 01:53:15,405 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 296 to 268. [2022-11-03 01:53:15,406 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 268 states, 176 states have (on average 1.2102272727272727) internal successors, (213), 193 states have internal predecessors, (213), 47 states have call successors, (47), 35 states have call predecessors, (47), 44 states have return successors, (70), 50 states have call predecessors, (70), 47 states have call successors, (70) [2022-11-03 01:53:15,408 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 268 states to 268 states and 330 transitions. [2022-11-03 01:53:15,409 INFO L78 Accepts]: Start accepts. Automaton has 268 states and 330 transitions. Word has length 40 [2022-11-03 01:53:15,409 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:15,409 INFO L495 AbstractCegarLoop]: Abstraction has 268 states and 330 transitions. [2022-11-03 01:53:15,409 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 6 states have (on average 4.833333333333333) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) [2022-11-03 01:53:15,410 INFO L276 IsEmpty]: Start isEmpty. Operand 268 states and 330 transitions. [2022-11-03 01:53:15,412 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 71 [2022-11-03 01:53:15,412 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:15,412 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:15,412 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-03 01:53:15,413 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:15,413 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:15,413 INFO L85 PathProgramCache]: Analyzing trace with hash 1803947791, now seen corresponding path program 1 times [2022-11-03 01:53:15,413 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:15,414 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1840642460] [2022-11-03 01:53:15,414 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:15,414 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:15,434 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:15,581 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 8 proven. 12 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-03 01:53:15,583 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:15,584 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1840642460] [2022-11-03 01:53:15,584 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1840642460] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 01:53:15,584 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1222244791] [2022-11-03 01:53:15,585 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:15,586 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 01:53:15,586 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 01:53:15,592 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 01:53:15,610 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-03 01:53:15,761 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:15,765 INFO L263 TraceCheckSpWp]: Trace formula consists of 460 conjuncts, 4 conjunts are in the unsatisfiable core [2022-11-03 01:53:15,774 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 01:53:15,936 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 32 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 01:53:15,936 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2022-11-03 01:53:15,937 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1222244791] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-03 01:53:15,937 INFO L184 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2022-11-03 01:53:15,937 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [7] total 8 [2022-11-03 01:53:15,937 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [284895606] [2022-11-03 01:53:15,938 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-03 01:53:15,938 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-03 01:53:15,939 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:15,939 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-03 01:53:15,939 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=35, Unknown=0, NotChecked=0, Total=56 [2022-11-03 01:53:15,940 INFO L87 Difference]: Start difference. First operand 268 states and 330 transitions. Second operand has 3 states, 3 states have (on average 17.0) internal successors, (51), 3 states have internal predecessors, (51), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2022-11-03 01:53:16,056 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:16,056 INFO L93 Difference]: Finished difference Result 405 states and 503 transitions. [2022-11-03 01:53:16,057 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-03 01:53:16,057 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 17.0) internal successors, (51), 3 states have internal predecessors, (51), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) Word has length 70 [2022-11-03 01:53:16,060 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:16,061 INFO L225 Difference]: With dead ends: 405 [2022-11-03 01:53:16,062 INFO L226 Difference]: Without dead ends: 258 [2022-11-03 01:53:16,063 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 77 GetRequests, 71 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=35, Unknown=0, NotChecked=0, Total=56 [2022-11-03 01:53:16,064 INFO L413 NwaCegarLoop]: 80 mSDtfsCounter, 35 mSDsluCounter, 46 mSDsCounter, 0 mSdLazyCounter, 36 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 119 SdHoareTripleChecker+Invalid, 38 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 36 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:16,066 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 119 Invalid, 38 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 36 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-03 01:53:16,068 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 258 states. [2022-11-03 01:53:16,114 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 258 to 258. [2022-11-03 01:53:16,115 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 258 states, 169 states have (on average 1.1775147928994083) internal successors, (199), 185 states have internal predecessors, (199), 45 states have call successors, (45), 35 states have call predecessors, (45), 43 states have return successors, (56), 48 states have call predecessors, (56), 45 states have call successors, (56) [2022-11-03 01:53:16,117 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 258 states to 258 states and 300 transitions. [2022-11-03 01:53:16,119 INFO L78 Accepts]: Start accepts. Automaton has 258 states and 300 transitions. Word has length 70 [2022-11-03 01:53:16,120 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:16,120 INFO L495 AbstractCegarLoop]: Abstraction has 258 states and 300 transitions. [2022-11-03 01:53:16,121 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 17.0) internal successors, (51), 3 states have internal predecessors, (51), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2022-11-03 01:53:16,121 INFO L276 IsEmpty]: Start isEmpty. Operand 258 states and 300 transitions. [2022-11-03 01:53:16,122 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 75 [2022-11-03 01:53:16,123 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:16,123 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:16,162 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2022-11-03 01:53:16,350 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 01:53:16,351 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:16,351 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:16,351 INFO L85 PathProgramCache]: Analyzing trace with hash -925446459, now seen corresponding path program 1 times [2022-11-03 01:53:16,352 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:16,352 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2078596938] [2022-11-03 01:53:16,352 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:16,352 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:16,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:16,585 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 5 proven. 16 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2022-11-03 01:53:16,585 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:16,586 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2078596938] [2022-11-03 01:53:16,586 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2078596938] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 01:53:16,586 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [47743255] [2022-11-03 01:53:16,586 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:16,587 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 01:53:16,587 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 01:53:16,591 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 01:53:16,623 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-11-03 01:53:16,739 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:16,741 INFO L263 TraceCheckSpWp]: Trace formula consists of 480 conjuncts, 8 conjunts are in the unsatisfiable core [2022-11-03 01:53:16,749 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 01:53:16,920 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 20 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-03 01:53:16,920 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 01:53:17,206 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 13 proven. 8 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2022-11-03 01:53:17,207 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [47743255] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 01:53:17,207 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [970391541] [2022-11-03 01:53:17,234 INFO L159 IcfgInterpreter]: Started Sifa with 48 locations of interest [2022-11-03 01:53:17,234 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 01:53:17,239 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 01:53:17,245 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 01:53:17,246 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 01:53:24,943 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 50 for LOIs [2022-11-03 01:53:24,953 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 29 for LOIs [2022-11-03 01:53:25,301 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__lowWaterSensor with input of size 65 for LOIs [2022-11-03 01:53:26,040 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 57 for LOIs [2022-11-03 01:53:26,148 INFO L197 IcfgInterpreter]: Interpreting procedure isPumpRunning with input of size 53 for LOIs [2022-11-03 01:53:26,163 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 39 for LOIs [2022-11-03 01:53:26,167 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 01:53:34,817 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '6317#(and (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| |timeShift_getWaterLevel_#res#1|) (= |timeShift_getWaterLevel_~retValue_acc~11#1| ~waterLevel~0) (= ~methaneLevelCritical~0 0) (<= 0 (+ 2147483648 |old(~pumpRunning~0)|)) (= ~head~0.offset 0) (<= |timeShift___utac_acc__Specification5_spec__3_~tmp___0~3#1| 2147483647) (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp___0~3#1| 0)) (<= |old(~pumpRunning~0)| 2147483647) (= |timeShift_getWaterLevel_~retValue_acc~11#1| |timeShift_getWaterLevel_#res#1|) (= 1 ~systemActive~0) (<= 0 (+ |timeShift___utac_acc__Specification5_spec__3_~tmp___0~3#1| 2147483648)) (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| 2)) (<= 0 (+ 2147483648 |timeShift_getWaterLevel_#res#1|)) (<= |timeShift_getWaterLevel_#res#1| 2147483647) (= ~head~0.base 0) (= |#NULL.offset| 0) (= ~switchedOnBeforeTS~0 0) (<= 0 |#StackHeapBarrier|) (= ~pumpRunning~0 |timeShift___utac_acc__Specification5_spec__3_~tmp___0~3#1|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 01:53:34,817 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 01:53:34,817 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 01:53:34,817 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 6, 6] total 15 [2022-11-03 01:53:34,817 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [407109689] [2022-11-03 01:53:34,818 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 01:53:34,818 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2022-11-03 01:53:34,819 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:34,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2022-11-03 01:53:34,820 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=293, Invalid=1963, Unknown=0, NotChecked=0, Total=2256 [2022-11-03 01:53:34,821 INFO L87 Difference]: Start difference. First operand 258 states and 300 transitions. Second operand has 15 states, 12 states have (on average 7.916666666666667) internal successors, (95), 13 states have internal predecessors, (95), 7 states have call successors, (23), 4 states have call predecessors, (23), 8 states have return successors, (22), 10 states have call predecessors, (22), 7 states have call successors, (22) [2022-11-03 01:53:35,916 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:35,916 INFO L93 Difference]: Finished difference Result 338 states and 403 transitions. [2022-11-03 01:53:35,917 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2022-11-03 01:53:35,917 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 12 states have (on average 7.916666666666667) internal successors, (95), 13 states have internal predecessors, (95), 7 states have call successors, (23), 4 states have call predecessors, (23), 8 states have return successors, (22), 10 states have call predecessors, (22), 7 states have call successors, (22) Word has length 74 [2022-11-03 01:53:35,918 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:35,920 INFO L225 Difference]: With dead ends: 338 [2022-11-03 01:53:35,921 INFO L226 Difference]: Without dead ends: 336 [2022-11-03 01:53:35,923 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 250 GetRequests, 175 SyntacticMatches, 15 SemanticMatches, 60 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1565 ImplicationChecksByTransitivity, 9.2s TimeCoverageRelationStatistics Valid=466, Invalid=3316, Unknown=0, NotChecked=0, Total=3782 [2022-11-03 01:53:35,924 INFO L413 NwaCegarLoop]: 118 mSDtfsCounter, 173 mSDsluCounter, 703 mSDsCounter, 0 mSdLazyCounter, 524 mSolverCounterSat, 124 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 175 SdHoareTripleChecker+Valid, 663 SdHoareTripleChecker+Invalid, 648 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 124 IncrementalHoareTripleChecker+Valid, 524 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:35,924 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [175 Valid, 663 Invalid, 648 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [124 Valid, 524 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2022-11-03 01:53:35,925 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 336 states. [2022-11-03 01:53:35,960 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 336 to 294. [2022-11-03 01:53:35,961 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 294 states, 190 states have (on average 1.168421052631579) internal successors, (222), 211 states have internal predecessors, (222), 53 states have call successors, (53), 43 states have call predecessors, (53), 50 states have return successors, (68), 54 states have call predecessors, (68), 53 states have call successors, (68) [2022-11-03 01:53:35,963 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 294 states to 294 states and 343 transitions. [2022-11-03 01:53:35,964 INFO L78 Accepts]: Start accepts. Automaton has 294 states and 343 transitions. Word has length 74 [2022-11-03 01:53:35,964 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:35,965 INFO L495 AbstractCegarLoop]: Abstraction has 294 states and 343 transitions. [2022-11-03 01:53:35,965 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 12 states have (on average 7.916666666666667) internal successors, (95), 13 states have internal predecessors, (95), 7 states have call successors, (23), 4 states have call predecessors, (23), 8 states have return successors, (22), 10 states have call predecessors, (22), 7 states have call successors, (22) [2022-11-03 01:53:35,965 INFO L276 IsEmpty]: Start isEmpty. Operand 294 states and 343 transitions. [2022-11-03 01:53:35,967 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 94 [2022-11-03 01:53:35,967 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:35,968 INFO L195 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:36,011 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-11-03 01:53:36,182 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable8 [2022-11-03 01:53:36,182 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:36,183 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:36,183 INFO L85 PathProgramCache]: Analyzing trace with hash 979712234, now seen corresponding path program 1 times [2022-11-03 01:53:36,183 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:36,183 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [414804835] [2022-11-03 01:53:36,183 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:36,184 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:36,222 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:36,537 INFO L134 CoverageAnalysis]: Checked inductivity of 70 backedges. 33 proven. 3 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2022-11-03 01:53:36,538 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:36,538 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [414804835] [2022-11-03 01:53:36,538 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [414804835] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 01:53:36,538 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [477869419] [2022-11-03 01:53:36,539 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:36,540 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 01:53:36,541 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 01:53:36,542 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 01:53:36,566 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-11-03 01:53:36,704 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:36,707 INFO L263 TraceCheckSpWp]: Trace formula consists of 545 conjuncts, 18 conjunts are in the unsatisfiable core [2022-11-03 01:53:36,713 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 01:53:37,029 INFO L134 CoverageAnalysis]: Checked inductivity of 70 backedges. 63 proven. 3 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-03 01:53:37,029 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 01:53:37,478 INFO L134 CoverageAnalysis]: Checked inductivity of 70 backedges. 45 proven. 3 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2022-11-03 01:53:37,479 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [477869419] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 01:53:37,479 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1065426307] [2022-11-03 01:53:37,487 INFO L159 IcfgInterpreter]: Started Sifa with 45 locations of interest [2022-11-03 01:53:37,488 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 01:53:37,489 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 01:53:37,490 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 01:53:37,490 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 01:53:44,063 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 53 for LOIs [2022-11-03 01:53:44,075 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 49 for LOIs [2022-11-03 01:53:44,748 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__lowWaterSensor with input of size 29 for LOIs [2022-11-03 01:53:44,800 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 26 for LOIs [2022-11-03 01:53:44,826 INFO L197 IcfgInterpreter]: Interpreting procedure isPumpRunning with input of size 42 for LOIs [2022-11-03 01:53:44,833 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 01:53:52,424 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '7923#(and (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| |timeShift_getWaterLevel_#res#1|) (= |timeShift_getWaterLevel_~retValue_acc~11#1| ~waterLevel~0) (= ~methaneLevelCritical~0 0) (= ~head~0.offset 0) (= |timeShift_getWaterLevel_~retValue_acc~11#1| |timeShift_getWaterLevel_#res#1|) (= 1 ~systemActive~0) (= |old(~pumpRunning~0)| 0) (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| 2)) (= |old(~waterLevel~0)| ~waterLevel~0) (<= |timeShift_getWaterLevel_#res#1| 2147483647) (<= 2 |timeShift_getWaterLevel_#res#1|) (= ~head~0.base 0) (= |#NULL.offset| 0) (= ~switchedOnBeforeTS~0 0) (<= 0 |#StackHeapBarrier|) (= ~pumpRunning~0 |timeShift___utac_acc__Specification5_spec__3_~tmp___0~3#1|) (= ~pumpRunning~0 1) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 01:53:52,425 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 01:53:52,425 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 01:53:52,425 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 9, 9] total 20 [2022-11-03 01:53:52,425 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1875646295] [2022-11-03 01:53:52,426 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 01:53:52,427 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2022-11-03 01:53:52,427 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:53:52,428 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2022-11-03 01:53:52,429 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=271, Invalid=1891, Unknown=0, NotChecked=0, Total=2162 [2022-11-03 01:53:52,429 INFO L87 Difference]: Start difference. First operand 294 states and 343 transitions. Second operand has 20 states, 20 states have (on average 5.4) internal successors, (108), 20 states have internal predecessors, (108), 9 states have call successors, (23), 5 states have call predecessors, (23), 8 states have return successors, (24), 10 states have call predecessors, (24), 9 states have call successors, (24) [2022-11-03 01:53:54,550 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:53:54,550 INFO L93 Difference]: Finished difference Result 859 states and 1094 transitions. [2022-11-03 01:53:54,550 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2022-11-03 01:53:54,551 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 20 states have (on average 5.4) internal successors, (108), 20 states have internal predecessors, (108), 9 states have call successors, (23), 5 states have call predecessors, (23), 8 states have return successors, (24), 10 states have call predecessors, (24), 9 states have call successors, (24) Word has length 93 [2022-11-03 01:53:54,551 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:53:54,555 INFO L225 Difference]: With dead ends: 859 [2022-11-03 01:53:54,556 INFO L226 Difference]: Without dead ends: 559 [2022-11-03 01:53:54,559 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 332 GetRequests, 249 SyntacticMatches, 11 SemanticMatches, 72 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2118 ImplicationChecksByTransitivity, 8.8s TimeCoverageRelationStatistics Valid=647, Invalid=4755, Unknown=0, NotChecked=0, Total=5402 [2022-11-03 01:53:54,560 INFO L413 NwaCegarLoop]: 86 mSDtfsCounter, 521 mSDsluCounter, 391 mSDsCounter, 0 mSdLazyCounter, 1049 mSolverCounterSat, 374 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 524 SdHoareTripleChecker+Valid, 400 SdHoareTripleChecker+Invalid, 1423 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 374 IncrementalHoareTripleChecker+Valid, 1049 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2022-11-03 01:53:54,561 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [524 Valid, 400 Invalid, 1423 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [374 Valid, 1049 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2022-11-03 01:53:54,562 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 559 states. [2022-11-03 01:53:54,616 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 559 to 368. [2022-11-03 01:53:54,617 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 368 states, 238 states have (on average 1.1302521008403361) internal successors, (269), 261 states have internal predecessors, (269), 63 states have call successors, (63), 56 states have call predecessors, (63), 66 states have return successors, (83), 67 states have call predecessors, (83), 63 states have call successors, (83) [2022-11-03 01:53:54,620 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 368 states to 368 states and 415 transitions. [2022-11-03 01:53:54,620 INFO L78 Accepts]: Start accepts. Automaton has 368 states and 415 transitions. Word has length 93 [2022-11-03 01:53:54,621 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:53:54,621 INFO L495 AbstractCegarLoop]: Abstraction has 368 states and 415 transitions. [2022-11-03 01:53:54,621 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 20 states have (on average 5.4) internal successors, (108), 20 states have internal predecessors, (108), 9 states have call successors, (23), 5 states have call predecessors, (23), 8 states have return successors, (24), 10 states have call predecessors, (24), 9 states have call successors, (24) [2022-11-03 01:53:54,622 INFO L276 IsEmpty]: Start isEmpty. Operand 368 states and 415 transitions. [2022-11-03 01:53:54,623 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 99 [2022-11-03 01:53:54,624 INFO L187 NwaCegarLoop]: Found error trace [2022-11-03 01:53:54,624 INFO L195 NwaCegarLoop]: trace histogram [5, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:53:54,672 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-11-03 01:53:54,838 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 01:53:54,839 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-03 01:53:54,839 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-03 01:53:54,839 INFO L85 PathProgramCache]: Analyzing trace with hash 72161971, now seen corresponding path program 1 times [2022-11-03 01:53:54,839 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-03 01:53:54,840 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [166042860] [2022-11-03 01:53:54,840 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:54,840 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-03 01:53:54,869 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:56,160 INFO L134 CoverageAnalysis]: Checked inductivity of 81 backedges. 17 proven. 39 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2022-11-03 01:53:56,160 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-03 01:53:56,160 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [166042860] [2022-11-03 01:53:56,160 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [166042860] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-03 01:53:56,160 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1520325606] [2022-11-03 01:53:56,161 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-03 01:53:56,161 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 01:53:56,161 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 [2022-11-03 01:53:56,163 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-03 01:53:56,185 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2022-11-03 01:53:56,321 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-03 01:53:56,325 INFO L263 TraceCheckSpWp]: Trace formula consists of 559 conjuncts, 30 conjunts are in the unsatisfiable core [2022-11-03 01:53:56,328 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-03 01:53:56,773 INFO L134 CoverageAnalysis]: Checked inductivity of 81 backedges. 60 proven. 15 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2022-11-03 01:53:56,774 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-03 01:53:57,544 INFO L134 CoverageAnalysis]: Checked inductivity of 81 backedges. 51 proven. 5 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2022-11-03 01:53:57,544 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1520325606] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-03 01:53:57,544 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [434785237] [2022-11-03 01:53:57,547 INFO L159 IcfgInterpreter]: Started Sifa with 45 locations of interest [2022-11-03 01:53:57,548 INFO L166 IcfgInterpreter]: Building call graph [2022-11-03 01:53:57,548 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-03 01:53:57,548 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-03 01:53:57,548 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-03 01:54:03,150 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 35 for LOIs [2022-11-03 01:54:03,155 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 30 for LOIs [2022-11-03 01:54:03,321 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__lowWaterSensor with input of size 26 for LOIs [2022-11-03 01:54:03,365 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 26 for LOIs [2022-11-03 01:54:03,388 INFO L197 IcfgInterpreter]: Interpreting procedure isPumpRunning with input of size 56 for LOIs [2022-11-03 01:54:03,402 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-03 01:54:09,781 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '10513#(and (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| |timeShift_getWaterLevel_#res#1|) (= |timeShift_getWaterLevel_~retValue_acc~11#1| ~waterLevel~0) (= ~methaneLevelCritical~0 0) (= ~head~0.offset 0) (= |timeShift_getWaterLevel_~retValue_acc~11#1| |timeShift_getWaterLevel_#res#1|) (= 1 ~systemActive~0) (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| 2)) (= |old(~waterLevel~0)| ~waterLevel~0) (<= |timeShift_getWaterLevel_#res#1| 2147483647) (<= 2 |timeShift_getWaterLevel_#res#1|) (= ~head~0.base 0) (= |#NULL.offset| 0) (= ~switchedOnBeforeTS~0 |old(~pumpRunning~0)|) (= ~switchedOnBeforeTS~0 0) (<= 0 |#StackHeapBarrier|) (= ~pumpRunning~0 |timeShift___utac_acc__Specification5_spec__3_~tmp___0~3#1|) (= ~pumpRunning~0 1) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-03 01:54:09,781 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-03 01:54:09,781 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-03 01:54:09,782 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 11, 11] total 34 [2022-11-03 01:54:09,782 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1976830817] [2022-11-03 01:54:09,782 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-03 01:54:09,783 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 34 states [2022-11-03 01:54:09,783 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-03 01:54:09,784 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 34 interpolants. [2022-11-03 01:54:09,785 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=466, Invalid=3194, Unknown=0, NotChecked=0, Total=3660 [2022-11-03 01:54:09,786 INFO L87 Difference]: Start difference. First operand 368 states and 415 transitions. Second operand has 34 states, 33 states have (on average 4.515151515151516) internal successors, (149), 34 states have internal predecessors, (149), 18 states have call successors, (32), 8 states have call predecessors, (32), 12 states have return successors, (32), 20 states have call predecessors, (32), 17 states have call successors, (32) [2022-11-03 01:54:14,911 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-03 01:54:14,911 INFO L93 Difference]: Finished difference Result 901 states and 1050 transitions. [2022-11-03 01:54:14,911 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 56 states. [2022-11-03 01:54:14,912 INFO L78 Accepts]: Start accepts. Automaton has has 34 states, 33 states have (on average 4.515151515151516) internal successors, (149), 34 states have internal predecessors, (149), 18 states have call successors, (32), 8 states have call predecessors, (32), 12 states have return successors, (32), 20 states have call predecessors, (32), 17 states have call successors, (32) Word has length 98 [2022-11-03 01:54:14,912 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-03 01:54:14,913 INFO L225 Difference]: With dead ends: 901 [2022-11-03 01:54:14,913 INFO L226 Difference]: Without dead ends: 0 [2022-11-03 01:54:14,919 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 401 GetRequests, 278 SyntacticMatches, 11 SemanticMatches, 112 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4816 ImplicationChecksByTransitivity, 9.4s TimeCoverageRelationStatistics Valid=1685, Invalid=11197, Unknown=0, NotChecked=0, Total=12882 [2022-11-03 01:54:14,919 INFO L413 NwaCegarLoop]: 143 mSDtfsCounter, 2386 mSDsluCounter, 746 mSDsCounter, 0 mSdLazyCounter, 2213 mSolverCounterSat, 1898 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2387 SdHoareTripleChecker+Valid, 725 SdHoareTripleChecker+Invalid, 4111 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1898 IncrementalHoareTripleChecker+Valid, 2213 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.4s IncrementalHoareTripleChecker+Time [2022-11-03 01:54:14,920 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [2387 Valid, 725 Invalid, 4111 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1898 Valid, 2213 Invalid, 0 Unknown, 0 Unchecked, 2.4s Time] [2022-11-03 01:54:14,920 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-03 01:54:14,920 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-03 01:54:14,921 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-03 01:54:14,921 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-03 01:54:14,921 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 98 [2022-11-03 01:54:14,921 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-03 01:54:14,922 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-03 01:54:14,922 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 34 states, 33 states have (on average 4.515151515151516) internal successors, (149), 34 states have internal predecessors, (149), 18 states have call successors, (32), 8 states have call predecessors, (32), 12 states have return successors, (32), 20 states have call predecessors, (32), 17 states have call successors, (32) [2022-11-03 01:54:14,922 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-03 01:54:14,922 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-03 01:54:14,925 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-03 01:54:14,956 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2022-11-03 01:54:15,138 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-03 01:54:15,141 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-03 01:54:22,541 INFO L895 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 551 558) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,541 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 551 558) no Hoare annotation was computed. [2022-11-03 01:54:22,542 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 458 464) no Hoare annotation was computed. [2022-11-03 01:54:22,542 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 458 464) the Hoare annotation is: true [2022-11-03 01:54:22,542 INFO L902 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 943 954) the Hoare annotation is: true [2022-11-03 01:54:22,542 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 943 954) no Hoare annotation was computed. [2022-11-03 01:54:22,542 INFO L899 garLoopResultBuilder]: For program point L833(line 833) no Hoare annotation was computed. [2022-11-03 01:54:22,543 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 812 841) no Hoare annotation was computed. [2022-11-03 01:54:22,543 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 812 841) the Hoare annotation is: true [2022-11-03 01:54:22,543 INFO L899 garLoopResultBuilder]: For program point L826(lines 826 830) no Hoare annotation was computed. [2022-11-03 01:54:22,543 INFO L902 garLoopResultBuilder]: At program point L826-1(lines 826 830) the Hoare annotation is: true [2022-11-03 01:54:22,543 INFO L902 garLoopResultBuilder]: At program point L822-2(lines 822 836) the Hoare annotation is: true [2022-11-03 01:54:22,543 INFO L902 garLoopResultBuilder]: At program point L818(line 818) the Hoare annotation is: true [2022-11-03 01:54:22,543 INFO L899 garLoopResultBuilder]: For program point L818-1(line 818) no Hoare annotation was computed. [2022-11-03 01:54:22,544 INFO L902 garLoopResultBuilder]: At program point L837(lines 812 841) the Hoare annotation is: true [2022-11-03 01:54:22,544 INFO L895 garLoopResultBuilder]: At program point L791(line 791) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse6 (= ~pumpRunning~0 1)) (.cse7 (not (= |old(~pumpRunning~0)| 1))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| ~waterLevel~0)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (<= 1 ~switchedOnBeforeTS~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and .cse1 (<= ~waterLevel~0 1) .cse2 .cse3) (not (< |old(~waterLevel~0)| 3))) (let ((.cse4 (= ~waterLevel~0 1))) (or .cse0 (and .cse2 .cse4 .cse5 .cse6) .cse7 (and .cse1 .cse2 .cse4 .cse5) (not (= |old(~waterLevel~0)| 2)))) (let ((.cse9 (< 0 |old(~waterLevel~0)|))) (let ((.cse8 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse9))) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 (and (<= ~waterLevel~0 0) .cse2 (or .cse8 .cse3) .cse5 .cse6) .cse7 (and .cse1 .cse2 (or (and (not .cse9) .cse3) .cse8) .cse5) (not (<= 1 |old(~switchedOnBeforeTS~0)|))))))) [2022-11-03 01:54:22,544 INFO L899 garLoopResultBuilder]: For program point L791-1(line 791) no Hoare annotation was computed. [2022-11-03 01:54:22,545 INFO L895 garLoopResultBuilder]: At program point L445-1(lines 445 451) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (= ~pumpRunning~0 1)) (.cse5 (= ~pumpRunning~0 0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (<= 1 ~switchedOnBeforeTS~0))) (and (let ((.cse2 (= ~waterLevel~0 1))) (or .cse0 .cse1 (and .cse2 .cse3 .cse4) (not (= |old(~waterLevel~0)| 2)) (and .cse5 .cse2 .cse3))) (or (and (= 2 ~waterLevel~0) .cse6 .cse4) (not (= |old(~pumpRunning~0)| 0)) (and .cse5 .cse6) .cse0 (not (< |old(~waterLevel~0)| 3))) (let ((.cse8 (< 0 |old(~waterLevel~0)|))) (let ((.cse7 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse8))) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 (and (<= ~waterLevel~0 0) (or .cse7 .cse6) .cse3 .cse4) (not (<= 1 |old(~switchedOnBeforeTS~0)|)) (and .cse5 (or (and (not .cse8) .cse6) .cse7) .cse3)))))) [2022-11-03 01:54:22,545 INFO L895 garLoopResultBuilder]: At program point L532(line 532) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (= ~pumpRunning~0 1)) (.cse4 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (and (= ~waterLevel~0 1) .cse2 .cse3) (not (= |old(~waterLevel~0)| 2))) (or (not (= |old(~waterLevel~0)| 1)) .cse0 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse2 .cse3) .cse1 .cse4) (or .cse0 .cse1 (and (= |old(~waterLevel~0)| ~waterLevel~0) .cse2 .cse3) (not (<= |old(~waterLevel~0)| 0)) .cse4) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (< |old(~waterLevel~0)| 3))))) [2022-11-03 01:54:22,545 INFO L895 garLoopResultBuilder]: At program point L528(line 528) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (= ~pumpRunning~0 1)) (.cse4 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (and (= ~waterLevel~0 1) .cse2 .cse3) (not (= |old(~waterLevel~0)| 2))) (or (not (= |old(~waterLevel~0)| 1)) .cse0 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse2 .cse3) .cse1 .cse4) (or .cse0 .cse1 (and (= |old(~waterLevel~0)| ~waterLevel~0) .cse2 .cse3) (not (<= |old(~waterLevel~0)| 0)) .cse4) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (< |old(~waterLevel~0)| 3))))) [2022-11-03 01:54:22,545 INFO L895 garLoopResultBuilder]: At program point L912(line 912) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (< |old(~waterLevel~0)| 3)))) (and (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 2))) (or .cse0 .cse1 (not (<= 1 |old(~switchedOnBeforeTS~0)|)) .cse2) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse2))) [2022-11-03 01:54:22,546 INFO L895 garLoopResultBuilder]: At program point L776(line 776) the Hoare annotation is: (let ((.cse7 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (.cse5 (not (< |old(~waterLevel~0)| 3))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (and .cse7 (= ~pumpRunning~0 1)))) (and (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse1 .cse4 .cse3 .cse5) (or .cse6 (and (= ~pumpRunning~0 0) .cse7) .cse0 .cse5) (or .cse6 .cse0 .cse4 .cse3 .cse5) (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 2)) .cse2)))) [2022-11-03 01:54:22,546 INFO L895 garLoopResultBuilder]: At program point L776-1(line 776) the Hoare annotation is: (let ((.cse3 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (and (<= 1 |timeShift___utac_acc__Specification5_spec__2_#t~ret46#1|) .cse3 (= ~pumpRunning~0 1))) (.cse2 (not (= |old(~pumpRunning~0)| 1)))) (and (or .cse0 .cse1 .cse2 (not (= |old(~waterLevel~0)| 2))) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse3) .cse0 (not (< |old(~waterLevel~0)| 3))) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2 (not (<= 1 |old(~switchedOnBeforeTS~0)|)))))) [2022-11-03 01:54:22,546 INFO L895 garLoopResultBuilder]: At program point L537(line 537) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (< |old(~waterLevel~0)| 3)))) (and (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 2))) (or .cse0 .cse1 (not (<= 1 |old(~switchedOnBeforeTS~0)|)) .cse2) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 .cse2))) [2022-11-03 01:54:22,547 INFO L899 garLoopResultBuilder]: For program point L793(lines 793 803) no Hoare annotation was computed. [2022-11-03 01:54:22,547 INFO L895 garLoopResultBuilder]: At program point L537-1(lines 518 542) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (= ~pumpRunning~0 1)) (.cse5 (= ~pumpRunning~0 0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (<= 1 ~switchedOnBeforeTS~0))) (and (let ((.cse2 (= ~waterLevel~0 1))) (or .cse0 .cse1 (and .cse2 .cse3 .cse4) (not (= |old(~waterLevel~0)| 2)) (and .cse5 .cse2 .cse3))) (or (and (= 2 ~waterLevel~0) .cse6 .cse4) (not (= |old(~pumpRunning~0)| 0)) (and .cse5 .cse6) .cse0 (not (< |old(~waterLevel~0)| 3))) (let ((.cse8 (< 0 |old(~waterLevel~0)|))) (let ((.cse7 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse8))) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 (and (<= ~waterLevel~0 0) (or .cse7 .cse6) .cse3 .cse4) (not (<= 1 |old(~switchedOnBeforeTS~0)|)) (and .cse5 (or (and (not .cse8) .cse6) .cse7) .cse3)))))) [2022-11-03 01:54:22,547 INFO L899 garLoopResultBuilder]: For program point L789(lines 789 806) no Hoare annotation was computed. [2022-11-03 01:54:22,547 INFO L899 garLoopResultBuilder]: For program point L438-2(lines 434 456) no Hoare annotation was computed. [2022-11-03 01:54:22,548 INFO L895 garLoopResultBuilder]: At program point L789-1(lines 781 809) the Hoare annotation is: (let ((.cse5 (= 1 ~systemActive~0))) (let ((.cse4 (= ~pumpRunning~0 0)) (.cse3 (not .cse5)) (.cse0 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| ~waterLevel~0)) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse7 (<= 1 ~switchedOnBeforeTS~0)) (.cse2 (= ~pumpRunning~0 1)) (.cse8 (not (= |old(~pumpRunning~0)| 1)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and .cse0 .cse1 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| 2) .cse2) .cse3 (and .cse4 .cse5 .cse0 .cse1) (not (< |old(~waterLevel~0)| 3))) (let ((.cse6 (= ~waterLevel~0 1))) (or (and .cse4 .cse5 .cse0 .cse6 .cse7) .cse3 (and .cse0 .cse6 .cse7 .cse2) .cse8 (not (= |old(~waterLevel~0)| 2)))) (let ((.cse9 (< 0 |old(~waterLevel~0)|))) (let ((.cse10 (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse9))) (or (and .cse4 .cse5 .cse0 (or (and (not .cse9) .cse1) .cse10) .cse7) (not (<= |old(~waterLevel~0)| 1)) .cse3 (and (<= ~waterLevel~0 0) .cse0 (or .cse10 .cse1) .cse7 .cse2) .cse8 (not (<= 1 |old(~switchedOnBeforeTS~0)|)))))))) [2022-11-03 01:54:22,548 INFO L899 garLoopResultBuilder]: For program point L794(lines 794 800) no Hoare annotation was computed. [2022-11-03 01:54:22,548 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 431 457) the Hoare annotation is: (let ((.cse7 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (not (<= 1 |old(~switchedOnBeforeTS~0)|))) (.cse5 (not (< |old(~waterLevel~0)| 3))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (and .cse7 (= ~pumpRunning~0 1)))) (and (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse1 .cse4 .cse3 .cse5) (or .cse6 (and (= ~pumpRunning~0 0) .cse7) .cse0 .cse5) (or .cse6 .cse0 .cse4 .cse3 .cse5) (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 2)) .cse2)))) [2022-11-03 01:54:22,548 INFO L899 garLoopResultBuilder]: For program point L526(lines 526 534) no Hoare annotation was computed. [2022-11-03 01:54:22,548 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 431 457) no Hoare annotation was computed. [2022-11-03 01:54:22,549 INFO L895 garLoopResultBuilder]: At program point L522(lines 522 539) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (= ~pumpRunning~0 1))) (and (or .cse0 .cse1 (and (= ~waterLevel~0 1) .cse2 .cse3) (not (= |old(~waterLevel~0)| 2))) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse4) .cse0 (not (< |old(~waterLevel~0)| 3))) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 (and (<= ~waterLevel~0 0) (or (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (< 0 |old(~waterLevel~0)|)) .cse4) .cse2 .cse3) (not (<= 1 |old(~switchedOnBeforeTS~0)|))))) [2022-11-03 01:54:22,549 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 912) no Hoare annotation was computed. [2022-11-03 01:54:22,549 INFO L895 garLoopResultBuilder]: At program point L894(lines 894 901) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-11-03 01:54:22,549 INFO L902 garLoopResultBuilder]: At program point L894-2(lines 894 901) the Hoare annotation is: true [2022-11-03 01:54:22,549 INFO L899 garLoopResultBuilder]: For program point L725(lines 725 731) no Hoare annotation was computed. [2022-11-03 01:54:22,549 INFO L899 garLoopResultBuilder]: For program point L725-1(lines 725 731) no Hoare annotation was computed. [2022-11-03 01:54:22,550 INFO L902 garLoopResultBuilder]: At program point L754(lines 695 758) the Hoare annotation is: true [2022-11-03 01:54:22,550 INFO L895 garLoopResultBuilder]: At program point L717(line 717) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (<= 1 ~switchedOnBeforeTS~0) (< ~waterLevel~0 3) .cse2) (and (= ~pumpRunning~0 0) .cse0 .cse1 (<= ~waterLevel~0 2)) (and (= 2 ~waterLevel~0) .cse0 .cse1 .cse2))) [2022-11-03 01:54:22,550 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-11-03 01:54:22,550 INFO L895 garLoopResultBuilder]: At program point L751(lines 704 752) the Hoare annotation is: false [2022-11-03 01:54:22,550 INFO L899 garLoopResultBuilder]: For program point L706(lines 705 750) no Hoare annotation was computed. [2022-11-03 01:54:22,551 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-03 01:54:22,551 INFO L895 garLoopResultBuilder]: At program point L727(line 727) the Hoare annotation is: (let ((.cse2 (< ~waterLevel~0 3)) (.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= ~pumpRunning~0 1))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2) (and .cse0 .cse1 (<= 1 ~switchedOnBeforeTS~0) .cse2 .cse3) (and (= 2 ~waterLevel~0) .cse0 .cse1 .cse3))) [2022-11-03 01:54:22,551 INFO L895 garLoopResultBuilder]: At program point L748(lines 705 750) the Hoare annotation is: (let ((.cse2 (< ~waterLevel~0 3)) (.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= ~pumpRunning~0 1))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2) (and .cse0 .cse1 (<= 1 ~switchedOnBeforeTS~0) .cse2 .cse3) (and (= 2 ~waterLevel~0) .cse0 .cse1 .cse3))) [2022-11-03 01:54:22,551 INFO L899 garLoopResultBuilder]: For program point L715(lines 715 721) no Hoare annotation was computed. [2022-11-03 01:54:22,551 INFO L899 garLoopResultBuilder]: For program point L715-1(lines 715 721) no Hoare annotation was computed. [2022-11-03 01:54:22,552 INFO L895 garLoopResultBuilder]: At program point L741-2(lines 735 746) the Hoare annotation is: (let ((.cse2 (< ~waterLevel~0 3)) (.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= ~pumpRunning~0 1))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2) (and .cse0 .cse1 (<= 1 ~switchedOnBeforeTS~0) .cse2 .cse3) (and (= 2 ~waterLevel~0) .cse0 .cse1 .cse3))) [2022-11-03 01:54:22,552 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 466 490) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 (not (< ~waterLevel~0 3))) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,552 INFO L895 garLoopResultBuilder]: At program point L480(line 480) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (not (<= 1 ~switchedOnBeforeTS~0)))) (and (or .cse0 (= ~pumpRunning~0 0) .cse1 (not (< ~waterLevel~0 3))) (or .cse0 .cse1 (not (<= ~waterLevel~0 1)) (= |processEnvironment__wrappee__highWaterSensor_~tmp~3#1| 0)) (or (not (= ~waterLevel~0 1)) .cse1 .cse2 .cse3) (or (not (<= ~waterLevel~0 0)) .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,552 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 466 490) no Hoare annotation was computed. [2022-11-03 01:54:22,553 INFO L895 garLoopResultBuilder]: At program point L474(lines 474 482) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (not (<= 1 ~switchedOnBeforeTS~0)))) (and (or .cse0 (= ~pumpRunning~0 0) .cse1 (not (< ~waterLevel~0 3))) (or .cse0 .cse1 (not (<= ~waterLevel~0 1)) (= |processEnvironment__wrappee__highWaterSensor_~tmp~3#1| 0)) (or (not (= ~waterLevel~0 1)) .cse1 .cse2 .cse3) (or (not (<= ~waterLevel~0 0)) .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,553 INFO L895 garLoopResultBuilder]: At program point L470(lines 470 487) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 (not (< ~waterLevel~0 3))) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,553 INFO L895 garLoopResultBuilder]: At program point L485(line 485) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (< ~waterLevel~0 3))) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,553 INFO L899 garLoopResultBuilder]: For program point L485-1(lines 466 490) no Hoare annotation was computed. [2022-11-03 01:54:22,553 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 931 942) no Hoare annotation was computed. [2022-11-03 01:54:22,554 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 931 942) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~pumpRunning~0 1))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (not (< |old(~waterLevel~0)| 3)))) (and (or (not (= ~pumpRunning~0 0)) .cse0 .cse1 .cse2) (or .cse0 .cse3 (not (= |old(~waterLevel~0)| 2)) .cse1) (or .cse0 .cse3 .cse1 (not (<= 1 ~switchedOnBeforeTS~0)) .cse2))) [2022-11-03 01:54:22,554 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__lowWaterSensorENTRY(lines 492 516) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 (not (< ~waterLevel~0 3))) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,554 INFO L895 garLoopResultBuilder]: At program point L506(line 506) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (< ~waterLevel~0 3))) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,554 INFO L895 garLoopResultBuilder]: At program point L502(line 502) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (< ~waterLevel~0 3))) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,555 INFO L899 garLoopResultBuilder]: For program point L500(lines 500 508) no Hoare annotation was computed. [2022-11-03 01:54:22,555 INFO L895 garLoopResultBuilder]: At program point L496(lines 496 513) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0))) (.cse3 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 (not (< ~waterLevel~0 3))) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3))) [2022-11-03 01:54:22,555 INFO L895 garLoopResultBuilder]: At program point L511(line 511) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (<= 1 ~switchedOnBeforeTS~0)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 (not (< ~waterLevel~0 3))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2) (or (not (<= ~waterLevel~0 0)) .cse0 .cse1 .cse2))) [2022-11-03 01:54:22,555 INFO L899 garLoopResultBuilder]: For program point L511-1(lines 492 516) no Hoare annotation was computed. [2022-11-03 01:54:22,555 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 492 516) no Hoare annotation was computed. [2022-11-03 01:54:22,556 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 570 578) no Hoare annotation was computed. [2022-11-03 01:54:22,556 INFO L902 garLoopResultBuilder]: At program point isPumpRunningENTRY(lines 570 578) the Hoare annotation is: true [2022-11-03 01:54:22,559 INFO L444 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-03 01:54:22,562 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-03 01:54:22,595 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 03.11 01:54:22 BoogieIcfgContainer [2022-11-03 01:54:22,595 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-03 01:54:22,596 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-03 01:54:22,596 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-03 01:54:22,596 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-03 01:54:22,597 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 03.11 01:53:10" (3/4) ... [2022-11-03 01:54:22,601 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-03 01:54:22,607 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-11-03 01:54:22,607 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-03 01:54:22,608 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-03 01:54:22,608 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-03 01:54:22,608 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-03 01:54:22,608 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2022-11-03 01:54:22,609 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-03 01:54:22,609 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2022-11-03 01:54:22,609 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2022-11-03 01:54:22,618 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 82 nodes and edges [2022-11-03 01:54:22,619 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 28 nodes and edges [2022-11-03 01:54:22,619 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2022-11-03 01:54:22,620 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-11-03 01:54:22,621 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-11-03 01:54:22,621 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-03 01:54:22,622 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-03 01:54:22,650 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(1 == systemActive) || ((1 <= aux-isPumpRunning()-aux && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) == 2)) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && ((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || ((1 <= aux-isPumpRunning()-aux && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) [2022-11-03 01:54:22,651 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((waterLevel == 1 && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(waterLevel) == 2)) || ((pumpRunning == 0 && waterLevel == 1) && 1 <= switchedOnBeforeTS)) && ((((((2 == waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && (((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || (((waterLevel <= 0 && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(1 <= \old(switchedOnBeforeTS))) || ((pumpRunning == 0 && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && 1 <= switchedOnBeforeTS)) [2022-11-03 01:54:22,652 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || (((tmp == waterLevel && \old(waterLevel) == waterLevel) && tmp == 2) && pumpRunning == 1)) || !(1 == systemActive)) || (((pumpRunning == 0 && 1 == systemActive) && tmp == waterLevel) && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) < 3)) && ((((((((pumpRunning == 0 && 1 == systemActive) && tmp == waterLevel) && waterLevel == 1) && 1 <= switchedOnBeforeTS) || !(1 == systemActive)) || (((tmp == waterLevel && waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) == 2))) && (((((((((pumpRunning == 0 && 1 == systemActive) && tmp == waterLevel) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && 1 <= switchedOnBeforeTS) || !(\old(waterLevel) <= 1)) || !(1 == systemActive)) || ((((waterLevel <= 0 && tmp == waterLevel) && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) [2022-11-03 01:54:22,652 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((waterLevel == 1 && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(waterLevel) == 2)) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && ((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || (((waterLevel <= 0 && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(1 <= \old(switchedOnBeforeTS))) [2022-11-03 01:54:22,652 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) == 2)) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) || !(\old(waterLevel) < 3))) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) < 3)) [2022-11-03 01:54:22,653 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((waterLevel == 1 && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(waterLevel) == 2)) || ((pumpRunning == 0 && waterLevel == 1) && 1 <= switchedOnBeforeTS)) && ((((((2 == waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && (((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || (((waterLevel <= 0 && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(1 <= \old(switchedOnBeforeTS))) || ((pumpRunning == 0 && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && 1 <= switchedOnBeforeTS)) [2022-11-03 01:54:22,653 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(waterLevel < 3)) && ((((!(waterLevel <= 0) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1)) && ((((!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1) [2022-11-03 01:54:22,653 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(waterLevel < 3)) && ((((!(waterLevel <= 0) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1)) && ((((!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1) [2022-11-03 01:54:22,655 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(waterLevel < 3)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(waterLevel <= 1)) || tmp == 0)) && (((!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS))) && (((!(waterLevel <= 0) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) [2022-11-03 01:54:22,688 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/witness.graphml [2022-11-03 01:54:22,688 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-03 01:54:22,689 INFO L158 Benchmark]: Toolchain (without parser) took 73605.37ms. Allocated memory was 111.1MB in the beginning and 553.6MB in the end (delta: 442.5MB). Free memory was 75.1MB in the beginning and 349.6MB in the end (delta: -274.5MB). Peak memory consumption was 167.7MB. Max. memory is 16.1GB. [2022-11-03 01:54:22,689 INFO L158 Benchmark]: CDTParser took 0.39ms. Allocated memory is still 111.1MB. Free memory is still 92.1MB. There was no memory consumed. Max. memory is 16.1GB. [2022-11-03 01:54:22,690 INFO L158 Benchmark]: CACSL2BoogieTranslator took 652.18ms. Allocated memory is still 111.1MB. Free memory was 74.8MB in the beginning and 78.8MB in the end (delta: -4.0MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. [2022-11-03 01:54:22,690 INFO L158 Benchmark]: Boogie Procedure Inliner took 93.94ms. Allocated memory is still 111.1MB. Free memory was 78.8MB in the beginning and 76.3MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-03 01:54:22,690 INFO L158 Benchmark]: Boogie Preprocessor took 58.10ms. Allocated memory is still 111.1MB. Free memory was 76.3MB in the beginning and 74.3MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-03 01:54:22,691 INFO L158 Benchmark]: RCFGBuilder took 903.93ms. Allocated memory is still 111.1MB. Free memory was 74.3MB in the beginning and 85.0MB in the end (delta: -10.7MB). Peak memory consumption was 36.9MB. Max. memory is 16.1GB. [2022-11-03 01:54:22,691 INFO L158 Benchmark]: TraceAbstraction took 71781.05ms. Allocated memory was 111.1MB in the beginning and 553.6MB in the end (delta: 442.5MB). Free memory was 84.4MB in the beginning and 355.9MB in the end (delta: -271.5MB). Peak memory consumption was 336.7MB. Max. memory is 16.1GB. [2022-11-03 01:54:22,692 INFO L158 Benchmark]: Witness Printer took 92.50ms. Allocated memory is still 553.6MB. Free memory was 355.9MB in the beginning and 349.6MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-11-03 01:54:22,694 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.39ms. Allocated memory is still 111.1MB. Free memory is still 92.1MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 652.18ms. Allocated memory is still 111.1MB. Free memory was 74.8MB in the beginning and 78.8MB in the end (delta: -4.0MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 93.94ms. Allocated memory is still 111.1MB. Free memory was 78.8MB in the beginning and 76.3MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 58.10ms. Allocated memory is still 111.1MB. Free memory was 76.3MB in the beginning and 74.3MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 903.93ms. Allocated memory is still 111.1MB. Free memory was 74.3MB in the beginning and 85.0MB in the end (delta: -10.7MB). Peak memory consumption was 36.9MB. Max. memory is 16.1GB. * TraceAbstraction took 71781.05ms. Allocated memory was 111.1MB in the beginning and 553.6MB in the end (delta: 442.5MB). Free memory was 84.4MB in the beginning and 355.9MB in the end (delta: -271.5MB). Peak memory consumption was 336.7MB. Max. memory is 16.1GB. * Witness Printer took 92.50ms. Allocated memory is still 553.6MB. Free memory was 355.9MB in the beginning and 349.6MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 912]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 69 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 71.6s, OverallIterations: 11, TraceHistogramMax: 5, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 10.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 7.4s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3624 SdHoareTripleChecker+Valid, 5.5s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3600 mSDsluCounter, 3111 SdHoareTripleChecker+Invalid, 4.5s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2685 mSDsCounter, 2542 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 4754 IncrementalHoareTripleChecker+Invalid, 7296 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 2542 mSolverCounterUnsat, 955 mSDtfsCounter, 4754 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 1119 GetRequests, 797 SyntacticMatches, 38 SemanticMatches, 284 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8561 ImplicationChecksByTransitivity, 27.8s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=368occurred in iteration=10, InterpolantAutomatonStates: 153, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 11 MinimizatonAttempts, 314 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 41 LocationsWithAnnotation, 1400 PreInvPairs, 1588 NumberOfFragments, 2060 HoareAnnotationTreeSize, 1400 FomulaSimplifications, 6113 FormulaSimplificationTreeSizeReduction, 0.8s HoareSimplificationTime, 41 FomulaSimplificationsInter, 24892 FormulaSimplificationTreeSizeReductionInter, 6.5s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.6s SatisfiabilityAnalysisTime, 6.1s InterpolantComputationTime, 897 NumberOfCodeBlocks, 897 NumberOfCodeBlocksAsserted, 15 NumberOfCheckSat, 1144 ConstructedInterpolants, 0 QuantifiedInterpolants, 3311 SizeOfPredicates, 26 NumberOfNonLiveVariables, 2044 ConjunctsInSsa, 60 ConjunctsInUnsatCore, 18 InterpolantComputations, 8 PerfectInterpolantSequences, 505/618 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 518]: Loop Invariant Derived loop invariant: (((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((waterLevel == 1 && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(waterLevel) == 2)) || ((pumpRunning == 0 && waterLevel == 1) && 1 <= switchedOnBeforeTS)) && ((((((2 == waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && (((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || (((waterLevel <= 0 && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(1 <= \old(switchedOnBeforeTS))) || ((pumpRunning == 0 && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && 1 <= switchedOnBeforeTS)) - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 695]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 705]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && 1 == systemActive) && splverifierCounter == 0) && waterLevel < 3) || ((((1 == systemActive && splverifierCounter == 0) && 1 <= switchedOnBeforeTS) && waterLevel < 3) && pumpRunning == 1)) || (((2 == waterLevel && 1 == systemActive) && splverifierCounter == 0) && pumpRunning == 1) - InvariantResult [Line: 445]: Loop Invariant Derived loop invariant: (((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((waterLevel == 1 && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(waterLevel) == 2)) || ((pumpRunning == 0 && waterLevel == 1) && 1 <= switchedOnBeforeTS)) && ((((((2 == waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && (((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || (((waterLevel <= 0 && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(1 <= \old(switchedOnBeforeTS))) || ((pumpRunning == 0 && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && 1 <= switchedOnBeforeTS)) - InvariantResult [Line: 704]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 496]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(waterLevel < 3)) && ((((!(waterLevel <= 0) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1)) && ((((!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1) - InvariantResult [Line: 781]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || (((tmp == waterLevel && \old(waterLevel) == waterLevel) && tmp == 2) && pumpRunning == 1)) || !(1 == systemActive)) || (((pumpRunning == 0 && 1 == systemActive) && tmp == waterLevel) && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) < 3)) && ((((((((pumpRunning == 0 && 1 == systemActive) && tmp == waterLevel) && waterLevel == 1) && 1 <= switchedOnBeforeTS) || !(1 == systemActive)) || (((tmp == waterLevel && waterLevel == 1) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) == 2))) && (((((((((pumpRunning == 0 && 1 == systemActive) && tmp == waterLevel) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && 1 <= switchedOnBeforeTS) || !(\old(waterLevel) <= 1)) || !(1 == systemActive)) || ((((waterLevel <= 0 && tmp == waterLevel) && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) - InvariantResult [Line: 912]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) == 2)) && (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) || !(\old(waterLevel) < 3))) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) < 3)) - InvariantResult [Line: 776]: Loop Invariant Derived loop invariant: ((((!(1 == systemActive) || ((1 <= aux-isPumpRunning()-aux && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) == 2)) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && ((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || ((1 <= aux-isPumpRunning()-aux && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(pumpRunning) == 1)) || !(1 <= \old(switchedOnBeforeTS))) - InvariantResult [Line: 470]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(waterLevel < 3)) && ((((!(waterLevel <= 0) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1)) && ((((!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) || pumpRunning == 1) - InvariantResult [Line: 822]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 894]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 522]: Loop Invariant Derived loop invariant: ((((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((waterLevel == 1 && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(\old(waterLevel) == 2)) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) < 3))) && ((((!(\old(waterLevel) <= 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || (((waterLevel <= 0 && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && 1 <= switchedOnBeforeTS) && pumpRunning == 1)) || !(1 <= \old(switchedOnBeforeTS))) - InvariantResult [Line: 894]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 474]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(waterLevel < 3)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(waterLevel <= 1)) || tmp == 0)) && (((!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS))) && (((!(waterLevel <= 0) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(1 <= switchedOnBeforeTS)) RESULT: Ultimate proved your program to be correct! [2022-11-03 01:54:22,758 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_db0619b9-fc7e-4961-bfdc-b466cb6726c3/bin/utaipan-7li7fVZpFI/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE