./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 8393723b Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash c4da108453cefa034e9e2f20ae1a945f7f6bf5ea54205b9ec625406680c7ecea --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-8393723 [2022-11-19 07:39:26,727 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-19 07:39:26,729 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-19 07:39:26,764 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-19 07:39:26,766 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-19 07:39:26,771 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-19 07:39:26,774 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-19 07:39:26,778 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-19 07:39:26,781 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-19 07:39:26,783 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-19 07:39:26,785 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-19 07:39:26,788 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-19 07:39:26,789 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-19 07:39:26,797 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-19 07:39:26,798 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-19 07:39:26,800 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-19 07:39:26,802 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-19 07:39:26,805 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-19 07:39:26,807 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-19 07:39:26,813 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-19 07:39:26,817 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-19 07:39:26,818 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-19 07:39:26,820 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-19 07:39:26,821 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-19 07:39:26,826 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-19 07:39:26,830 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-19 07:39:26,831 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-19 07:39:26,832 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-19 07:39:26,833 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-19 07:39:26,835 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-19 07:39:26,835 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-19 07:39:26,836 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-19 07:39:26,837 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-19 07:39:26,840 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-19 07:39:26,841 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-19 07:39:26,841 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-19 07:39:26,842 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-19 07:39:26,842 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-19 07:39:26,842 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-19 07:39:26,843 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-19 07:39:26,844 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-19 07:39:26,845 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-11-19 07:39:26,886 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-19 07:39:26,886 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-19 07:39:26,887 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-19 07:39:26,887 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-19 07:39:26,888 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-19 07:39:26,888 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-19 07:39:26,888 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-19 07:39:26,889 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-19 07:39:26,889 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-19 07:39:26,889 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-19 07:39:26,890 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-19 07:39:26,891 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-19 07:39:26,891 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-19 07:39:26,891 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-19 07:39:26,891 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-19 07:39:26,892 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-19 07:39:26,892 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-19 07:39:26,892 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-19 07:39:26,893 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-19 07:39:26,893 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-19 07:39:26,893 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-19 07:39:26,894 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-19 07:39:26,894 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-19 07:39:26,895 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-19 07:39:26,896 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-19 07:39:26,896 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-19 07:39:26,896 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-19 07:39:26,896 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-19 07:39:26,897 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-19 07:39:26,897 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-19 07:39:26,897 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-19 07:39:26,898 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-19 07:39:26,898 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-19 07:39:26,898 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-19 07:39:26,898 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-19 07:39:26,899 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-19 07:39:26,899 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-19 07:39:26,899 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-19 07:39:26,899 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-19 07:39:26,900 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-19 07:39:26,900 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-19 07:39:26,900 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> c4da108453cefa034e9e2f20ae1a945f7f6bf5ea54205b9ec625406680c7ecea [2022-11-19 07:39:27,185 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-19 07:39:27,215 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-19 07:39:27,217 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-19 07:39:27,219 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-19 07:39:27,219 INFO L275 PluginConnector]: CDTParser initialized [2022-11-19 07:39:27,221 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/../../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c [2022-11-19 07:39:27,282 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/data/392247ce6/01e14e16e99e45ef949f026ecd89d131/FLAG39376521b [2022-11-19 07:39:27,770 INFO L306 CDTParser]: Found 1 translation units. [2022-11-19 07:39:27,771 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c [2022-11-19 07:39:27,799 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/data/392247ce6/01e14e16e99e45ef949f026ecd89d131/FLAG39376521b [2022-11-19 07:39:28,106 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/data/392247ce6/01e14e16e99e45ef949f026ecd89d131 [2022-11-19 07:39:28,108 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-19 07:39:28,109 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-19 07:39:28,111 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-19 07:39:28,111 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-19 07:39:28,117 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-19 07:39:28,117 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,118 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@62504638 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28, skipping insertion in model container [2022-11-19 07:39:28,119 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,126 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-19 07:39:28,196 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-19 07:39:28,449 WARN L234 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c[2044,2057] [2022-11-19 07:39:28,622 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-19 07:39:28,631 INFO L203 MainTranslator]: Completed pre-run [2022-11-19 07:39:28,645 WARN L234 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c[2044,2057] [2022-11-19 07:39:28,688 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-19 07:39:28,706 INFO L208 MainTranslator]: Completed translation [2022-11-19 07:39:28,706 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28 WrapperNode [2022-11-19 07:39:28,706 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-19 07:39:28,708 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-19 07:39:28,708 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-19 07:39:28,708 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-19 07:39:28,716 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,729 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,759 INFO L138 Inliner]: procedures = 55, calls = 101, calls flagged for inlining = 21, calls inlined = 18, statements flattened = 185 [2022-11-19 07:39:28,764 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-19 07:39:28,765 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-19 07:39:28,765 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-19 07:39:28,765 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-19 07:39:28,775 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,775 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,777 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,777 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,781 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,786 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,801 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,802 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,804 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-19 07:39:28,805 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-19 07:39:28,805 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-19 07:39:28,806 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-19 07:39:28,807 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (1/1) ... [2022-11-19 07:39:28,816 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-19 07:39:28,832 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/z3 [2022-11-19 07:39:28,845 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-19 07:39:28,858 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-19 07:39:28,894 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-19 07:39:28,894 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-19 07:39:28,894 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-19 07:39:28,895 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-19 07:39:28,895 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-19 07:39:28,895 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-19 07:39:28,895 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-19 07:39:28,895 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-11-19 07:39:28,895 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-11-19 07:39:28,896 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-19 07:39:28,896 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-19 07:39:28,896 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2022-11-19 07:39:28,896 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2022-11-19 07:39:28,896 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2022-11-19 07:39:28,896 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2022-11-19 07:39:28,897 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-11-19 07:39:28,897 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-11-19 07:39:28,897 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-19 07:39:28,897 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-19 07:39:28,897 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-19 07:39:28,897 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-19 07:39:28,898 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-19 07:39:28,972 INFO L235 CfgBuilder]: Building ICFG [2022-11-19 07:39:28,974 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-19 07:39:29,344 INFO L276 CfgBuilder]: Performing block encoding [2022-11-19 07:39:29,492 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-19 07:39:29,496 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-19 07:39:29,499 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 07:39:29 BoogieIcfgContainer [2022-11-19 07:39:29,499 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-19 07:39:29,501 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-19 07:39:29,503 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-19 07:39:29,506 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-19 07:39:29,507 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 19.11 07:39:28" (1/3) ... [2022-11-19 07:39:29,508 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4910cb22 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 07:39:29, skipping insertion in model container [2022-11-19 07:39:29,508 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:39:28" (2/3) ... [2022-11-19 07:39:29,508 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4910cb22 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 07:39:29, skipping insertion in model container [2022-11-19 07:39:29,508 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 07:39:29" (3/3) ... [2022-11-19 07:39:29,512 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product47.cil.c [2022-11-19 07:39:29,535 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-19 07:39:29,535 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-19 07:39:29,608 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-19 07:39:29,633 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@51dc1b84, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-19 07:39:29,633 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-19 07:39:29,641 INFO L276 IsEmpty]: Start isEmpty. Operand has 71 states, 44 states have (on average 1.4090909090909092) internal successors, (62), 53 states have internal predecessors, (62), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) [2022-11-19 07:39:29,652 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2022-11-19 07:39:29,653 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:29,653 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:29,654 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:29,661 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:29,662 INFO L85 PathProgramCache]: Analyzing trace with hash 1389225086, now seen corresponding path program 1 times [2022-11-19 07:39:29,671 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:29,671 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1371134243] [2022-11-19 07:39:29,678 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:29,679 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:29,817 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:29,892 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:39:29,892 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:29,893 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1371134243] [2022-11-19 07:39:29,893 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1371134243] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:29,894 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:29,894 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-19 07:39:29,895 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [361125920] [2022-11-19 07:39:29,896 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:29,900 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-19 07:39:29,901 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:29,928 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-19 07:39:29,929 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-19 07:39:29,931 INFO L87 Difference]: Start difference. First operand has 71 states, 44 states have (on average 1.4090909090909092) internal successors, (62), 53 states have internal predecessors, (62), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,011 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:30,011 INFO L93 Difference]: Finished difference Result 140 states and 189 transitions. [2022-11-19 07:39:30,013 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-19 07:39:30,014 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2022-11-19 07:39:30,015 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:30,024 INFO L225 Difference]: With dead ends: 140 [2022-11-19 07:39:30,024 INFO L226 Difference]: Without dead ends: 66 [2022-11-19 07:39:30,028 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-19 07:39:30,031 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 74 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:30,032 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 74 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-19 07:39:30,050 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 66 states. [2022-11-19 07:39:30,071 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 66 to 66. [2022-11-19 07:39:30,073 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 66 states, 41 states have (on average 1.3170731707317074) internal successors, (54), 49 states have internal predecessors, (54), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 12 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-19 07:39:30,075 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 66 states to 66 states and 85 transitions. [2022-11-19 07:39:30,077 INFO L78 Accepts]: Start accepts. Automaton has 66 states and 85 transitions. Word has length 16 [2022-11-19 07:39:30,077 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:30,078 INFO L495 AbstractCegarLoop]: Abstraction has 66 states and 85 transitions. [2022-11-19 07:39:30,078 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,078 INFO L276 IsEmpty]: Start isEmpty. Operand 66 states and 85 transitions. [2022-11-19 07:39:30,080 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2022-11-19 07:39:30,080 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:30,080 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:30,081 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-19 07:39:30,081 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:30,082 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:30,082 INFO L85 PathProgramCache]: Analyzing trace with hash 2076250531, now seen corresponding path program 1 times [2022-11-19 07:39:30,082 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:30,082 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [53259584] [2022-11-19 07:39:30,083 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:30,083 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:30,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:30,181 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:39:30,181 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:30,181 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [53259584] [2022-11-19 07:39:30,182 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [53259584] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:30,182 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:30,182 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-19 07:39:30,182 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [530138167] [2022-11-19 07:39:30,182 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:30,184 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-19 07:39:30,184 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:30,185 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-19 07:39:30,185 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 07:39:30,185 INFO L87 Difference]: Start difference. First operand 66 states and 85 transitions. Second operand has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,230 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:30,230 INFO L93 Difference]: Finished difference Result 104 states and 132 transitions. [2022-11-19 07:39:30,231 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-19 07:39:30,231 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2022-11-19 07:39:30,232 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:30,233 INFO L225 Difference]: With dead ends: 104 [2022-11-19 07:39:30,233 INFO L226 Difference]: Without dead ends: 58 [2022-11-19 07:39:30,234 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 07:39:30,235 INFO L413 NwaCegarLoop]: 60 mSDtfsCounter, 14 mSDsluCounter, 43 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 103 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:30,236 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 103 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-19 07:39:30,237 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2022-11-19 07:39:30,244 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 58. [2022-11-19 07:39:30,244 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 36 states have (on average 1.3333333333333333) internal successors, (48), 44 states have internal predecessors, (48), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2022-11-19 07:39:30,246 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 74 transitions. [2022-11-19 07:39:30,246 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 74 transitions. Word has length 17 [2022-11-19 07:39:30,246 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:30,247 INFO L495 AbstractCegarLoop]: Abstraction has 58 states and 74 transitions. [2022-11-19 07:39:30,247 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,247 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 74 transitions. [2022-11-19 07:39:30,248 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2022-11-19 07:39:30,248 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:30,249 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:30,249 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-19 07:39:30,249 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:30,250 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:30,250 INFO L85 PathProgramCache]: Analyzing trace with hash 1098084997, now seen corresponding path program 1 times [2022-11-19 07:39:30,250 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:30,250 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1568050577] [2022-11-19 07:39:30,251 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:30,251 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:30,268 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:30,321 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:39:30,322 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:30,322 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1568050577] [2022-11-19 07:39:30,322 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1568050577] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:30,322 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:30,323 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-19 07:39:30,323 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1511496274] [2022-11-19 07:39:30,323 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:30,324 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-19 07:39:30,324 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:30,324 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-19 07:39:30,324 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 07:39:30,325 INFO L87 Difference]: Start difference. First operand 58 states and 74 transitions. Second operand has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,402 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:30,402 INFO L93 Difference]: Finished difference Result 170 states and 219 transitions. [2022-11-19 07:39:30,403 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-19 07:39:30,403 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2022-11-19 07:39:30,404 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:30,405 INFO L225 Difference]: With dead ends: 170 [2022-11-19 07:39:30,406 INFO L226 Difference]: Without dead ends: 114 [2022-11-19 07:39:30,406 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 07:39:30,408 INFO L413 NwaCegarLoop]: 79 mSDtfsCounter, 61 mSDsluCounter, 58 mSDsCounter, 0 mSdLazyCounter, 32 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 32 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 32 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:30,408 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 137 Invalid, 32 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 32 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-19 07:39:30,409 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 114 states. [2022-11-19 07:39:30,439 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 114 to 111. [2022-11-19 07:39:30,442 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 111 states, 68 states have (on average 1.338235294117647) internal successors, (91), 83 states have internal predecessors, (91), 26 states have call successors, (26), 16 states have call predecessors, (26), 16 states have return successors, (26), 19 states have call predecessors, (26), 26 states have call successors, (26) [2022-11-19 07:39:30,445 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 111 states to 111 states and 143 transitions. [2022-11-19 07:39:30,448 INFO L78 Accepts]: Start accepts. Automaton has 111 states and 143 transitions. Word has length 20 [2022-11-19 07:39:30,448 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:30,448 INFO L495 AbstractCegarLoop]: Abstraction has 111 states and 143 transitions. [2022-11-19 07:39:30,449 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,449 INFO L276 IsEmpty]: Start isEmpty. Operand 111 states and 143 transitions. [2022-11-19 07:39:30,451 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2022-11-19 07:39:30,452 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:30,457 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:30,457 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-19 07:39:30,457 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:30,458 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:30,458 INFO L85 PathProgramCache]: Analyzing trace with hash 534805225, now seen corresponding path program 1 times [2022-11-19 07:39:30,458 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:30,458 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [558971340] [2022-11-19 07:39:30,458 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:30,459 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:30,490 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:30,635 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:39:30,636 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:30,636 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [558971340] [2022-11-19 07:39:30,636 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [558971340] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:30,636 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:30,636 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-19 07:39:30,637 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1760270004] [2022-11-19 07:39:30,637 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:30,637 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-19 07:39:30,637 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:30,638 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-19 07:39:30,638 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-19 07:39:30,638 INFO L87 Difference]: Start difference. First operand 111 states and 143 transitions. Second operand has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,753 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:30,756 INFO L93 Difference]: Finished difference Result 306 states and 403 transitions. [2022-11-19 07:39:30,757 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-19 07:39:30,757 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23 [2022-11-19 07:39:30,758 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:30,760 INFO L225 Difference]: With dead ends: 306 [2022-11-19 07:39:30,763 INFO L226 Difference]: Without dead ends: 197 [2022-11-19 07:39:30,764 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-19 07:39:30,773 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 43 mSDsluCounter, 114 mSDsCounter, 0 mSdLazyCounter, 49 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 43 SdHoareTripleChecker+Valid, 181 SdHoareTripleChecker+Invalid, 57 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 49 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:30,773 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [43 Valid, 181 Invalid, 57 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 49 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 07:39:30,774 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 197 states. [2022-11-19 07:39:30,825 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 197 to 188. [2022-11-19 07:39:30,827 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 188 states, 121 states have (on average 1.28099173553719) internal successors, (155), 136 states have internal predecessors, (155), 36 states have call successors, (36), 30 states have call predecessors, (36), 30 states have return successors, (44), 33 states have call predecessors, (44), 36 states have call successors, (44) [2022-11-19 07:39:30,831 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 188 states to 188 states and 235 transitions. [2022-11-19 07:39:30,836 INFO L78 Accepts]: Start accepts. Automaton has 188 states and 235 transitions. Word has length 23 [2022-11-19 07:39:30,836 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:30,837 INFO L495 AbstractCegarLoop]: Abstraction has 188 states and 235 transitions. [2022-11-19 07:39:30,837 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:39:30,837 INFO L276 IsEmpty]: Start isEmpty. Operand 188 states and 235 transitions. [2022-11-19 07:39:30,838 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2022-11-19 07:39:30,842 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:30,842 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:30,842 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-19 07:39:30,843 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:30,843 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:30,843 INFO L85 PathProgramCache]: Analyzing trace with hash -1999689507, now seen corresponding path program 1 times [2022-11-19 07:39:30,844 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:30,844 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1403280045] [2022-11-19 07:39:30,844 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:30,845 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:30,881 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:31,228 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-19 07:39:31,229 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:31,229 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1403280045] [2022-11-19 07:39:31,229 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1403280045] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:31,230 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:31,230 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-11-19 07:39:31,230 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2096258767] [2022-11-19 07:39:31,230 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:31,231 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-11-19 07:39:31,231 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:31,232 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-11-19 07:39:31,232 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2022-11-19 07:39:31,232 INFO L87 Difference]: Start difference. First operand 188 states and 235 transitions. Second operand has 7 states, 7 states have (on average 3.7142857142857144) internal successors, (26), 7 states have internal predecessors, (26), 5 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2022-11-19 07:39:31,565 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:31,570 INFO L93 Difference]: Finished difference Result 535 states and 671 transitions. [2022-11-19 07:39:31,571 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-11-19 07:39:31,571 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 3.7142857142857144) internal successors, (26), 7 states have internal predecessors, (26), 5 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) Word has length 36 [2022-11-19 07:39:31,571 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:31,580 INFO L225 Difference]: With dead ends: 535 [2022-11-19 07:39:31,580 INFO L226 Difference]: Without dead ends: 349 [2022-11-19 07:39:31,582 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=26, Invalid=46, Unknown=0, NotChecked=0, Total=72 [2022-11-19 07:39:31,590 INFO L413 NwaCegarLoop]: 103 mSDtfsCounter, 202 mSDsluCounter, 132 mSDsCounter, 0 mSdLazyCounter, 137 mSolverCounterSat, 55 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 204 SdHoareTripleChecker+Valid, 235 SdHoareTripleChecker+Invalid, 192 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 55 IncrementalHoareTripleChecker+Valid, 137 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:31,593 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [204 Valid, 235 Invalid, 192 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [55 Valid, 137 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-19 07:39:31,594 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 349 states. [2022-11-19 07:39:31,659 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 349 to 318. [2022-11-19 07:39:31,660 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 318 states, 211 states have (on average 1.2748815165876777) internal successors, (269), 231 states have internal predecessors, (269), 53 states have call successors, (53), 49 states have call predecessors, (53), 53 states have return successors, (65), 53 states have call predecessors, (65), 53 states have call successors, (65) [2022-11-19 07:39:31,662 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 318 states to 318 states and 387 transitions. [2022-11-19 07:39:31,662 INFO L78 Accepts]: Start accepts. Automaton has 318 states and 387 transitions. Word has length 36 [2022-11-19 07:39:31,662 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:31,663 INFO L495 AbstractCegarLoop]: Abstraction has 318 states and 387 transitions. [2022-11-19 07:39:31,663 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 3.7142857142857144) internal successors, (26), 7 states have internal predecessors, (26), 5 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2022-11-19 07:39:31,663 INFO L276 IsEmpty]: Start isEmpty. Operand 318 states and 387 transitions. [2022-11-19 07:39:31,664 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2022-11-19 07:39:31,665 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:31,665 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:31,665 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-19 07:39:31,665 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:31,665 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:31,666 INFO L85 PathProgramCache]: Analyzing trace with hash 2109786405, now seen corresponding path program 1 times [2022-11-19 07:39:31,666 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:31,666 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [156192913] [2022-11-19 07:39:31,666 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:31,666 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:31,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:31,782 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-19 07:39:31,782 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:31,783 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [156192913] [2022-11-19 07:39:31,783 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [156192913] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:31,783 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:31,783 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-11-19 07:39:31,783 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [408884755] [2022-11-19 07:39:31,783 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:31,784 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-19 07:39:31,784 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:31,784 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-19 07:39:31,784 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-11-19 07:39:31,785 INFO L87 Difference]: Start difference. First operand 318 states and 387 transitions. Second operand has 6 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) [2022-11-19 07:39:31,985 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:31,985 INFO L93 Difference]: Finished difference Result 948 states and 1176 transitions. [2022-11-19 07:39:31,986 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-11-19 07:39:31,986 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) Word has length 39 [2022-11-19 07:39:31,986 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:31,990 INFO L225 Difference]: With dead ends: 948 [2022-11-19 07:39:31,990 INFO L226 Difference]: Without dead ends: 632 [2022-11-19 07:39:31,991 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2022-11-19 07:39:31,992 INFO L413 NwaCegarLoop]: 71 mSDtfsCounter, 51 mSDsluCounter, 241 mSDsCounter, 0 mSdLazyCounter, 106 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 312 SdHoareTripleChecker+Invalid, 107 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 106 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:31,993 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 312 Invalid, 107 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 106 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 07:39:31,994 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 632 states. [2022-11-19 07:39:32,061 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 632 to 600. [2022-11-19 07:39:32,063 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 600 states, 403 states have (on average 1.2580645161290323) internal successors, (507), 434 states have internal predecessors, (507), 98 states have call successors, (98), 90 states have call predecessors, (98), 98 states have return successors, (122), 98 states have call predecessors, (122), 98 states have call successors, (122) [2022-11-19 07:39:32,066 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 600 states to 600 states and 727 transitions. [2022-11-19 07:39:32,066 INFO L78 Accepts]: Start accepts. Automaton has 600 states and 727 transitions. Word has length 39 [2022-11-19 07:39:32,067 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:32,067 INFO L495 AbstractCegarLoop]: Abstraction has 600 states and 727 transitions. [2022-11-19 07:39:32,067 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) [2022-11-19 07:39:32,067 INFO L276 IsEmpty]: Start isEmpty. Operand 600 states and 727 transitions. [2022-11-19 07:39:32,069 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2022-11-19 07:39:32,069 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:32,069 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:32,069 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-19 07:39:32,069 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:32,070 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:32,070 INFO L85 PathProgramCache]: Analyzing trace with hash 180958450, now seen corresponding path program 1 times [2022-11-19 07:39:32,070 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:32,070 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1639859337] [2022-11-19 07:39:32,070 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:32,070 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:32,083 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:32,340 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-19 07:39:32,340 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:32,340 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1639859337] [2022-11-19 07:39:32,340 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1639859337] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:32,341 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:32,341 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [13] imperfect sequences [] total 13 [2022-11-19 07:39:32,341 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1502295187] [2022-11-19 07:39:32,341 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:32,341 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2022-11-19 07:39:32,342 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:32,342 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2022-11-19 07:39:32,342 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=29, Invalid=127, Unknown=0, NotChecked=0, Total=156 [2022-11-19 07:39:32,342 INFO L87 Difference]: Start difference. First operand 600 states and 727 transitions. Second operand has 13 states, 11 states have (on average 2.5454545454545454) internal successors, (28), 10 states have internal predecessors, (28), 4 states have call successors, (7), 3 states have call predecessors, (7), 4 states have return successors, (6), 5 states have call predecessors, (6), 4 states have call successors, (6) [2022-11-19 07:39:33,384 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:33,385 INFO L93 Difference]: Finished difference Result 1163 states and 1504 transitions. [2022-11-19 07:39:33,385 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 28 states. [2022-11-19 07:39:33,385 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 11 states have (on average 2.5454545454545454) internal successors, (28), 10 states have internal predecessors, (28), 4 states have call successors, (7), 3 states have call predecessors, (7), 4 states have return successors, (6), 5 states have call predecessors, (6), 4 states have call successors, (6) Word has length 42 [2022-11-19 07:39:33,387 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:33,394 INFO L225 Difference]: With dead ends: 1163 [2022-11-19 07:39:33,394 INFO L226 Difference]: Without dead ends: 917 [2022-11-19 07:39:33,396 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 40 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 283 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=267, Invalid=993, Unknown=0, NotChecked=0, Total=1260 [2022-11-19 07:39:33,398 INFO L413 NwaCegarLoop]: 50 mSDtfsCounter, 420 mSDsluCounter, 295 mSDsCounter, 0 mSdLazyCounter, 622 mSolverCounterSat, 274 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 426 SdHoareTripleChecker+Valid, 345 SdHoareTripleChecker+Invalid, 896 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 274 IncrementalHoareTripleChecker+Valid, 622 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:33,398 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [426 Valid, 345 Invalid, 896 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [274 Valid, 622 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2022-11-19 07:39:33,401 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 917 states. [2022-11-19 07:39:33,524 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 917 to 769. [2022-11-19 07:39:33,526 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 769 states, 518 states have (on average 1.2606177606177607) internal successors, (653), 557 states have internal predecessors, (653), 126 states have call successors, (126), 108 states have call predecessors, (126), 124 states have return successors, (172), 128 states have call predecessors, (172), 126 states have call successors, (172) [2022-11-19 07:39:33,533 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 769 states to 769 states and 951 transitions. [2022-11-19 07:39:33,534 INFO L78 Accepts]: Start accepts. Automaton has 769 states and 951 transitions. Word has length 42 [2022-11-19 07:39:33,534 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:33,534 INFO L495 AbstractCegarLoop]: Abstraction has 769 states and 951 transitions. [2022-11-19 07:39:33,535 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 11 states have (on average 2.5454545454545454) internal successors, (28), 10 states have internal predecessors, (28), 4 states have call successors, (7), 3 states have call predecessors, (7), 4 states have return successors, (6), 5 states have call predecessors, (6), 4 states have call successors, (6) [2022-11-19 07:39:33,535 INFO L276 IsEmpty]: Start isEmpty. Operand 769 states and 951 transitions. [2022-11-19 07:39:33,541 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2022-11-19 07:39:33,542 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:33,542 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:33,542 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-19 07:39:33,543 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:33,543 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:33,543 INFO L85 PathProgramCache]: Analyzing trace with hash 397534519, now seen corresponding path program 1 times [2022-11-19 07:39:33,544 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:33,544 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1808496184] [2022-11-19 07:39:33,544 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:33,544 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:33,568 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:33,606 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2022-11-19 07:39:33,609 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:33,610 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1808496184] [2022-11-19 07:39:33,610 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1808496184] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:33,610 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:33,610 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-19 07:39:33,611 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [202738150] [2022-11-19 07:39:33,611 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:33,612 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-19 07:39:33,614 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:33,614 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-19 07:39:33,614 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-19 07:39:33,614 INFO L87 Difference]: Start difference. First operand 769 states and 951 transitions. Second operand has 4 states, 3 states have (on average 14.666666666666666) internal successors, (44), 4 states have internal predecessors, (44), 4 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (8), 3 states have call predecessors, (8), 4 states have call successors, (8) [2022-11-19 07:39:33,775 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:33,775 INFO L93 Difference]: Finished difference Result 885 states and 1097 transitions. [2022-11-19 07:39:33,776 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-19 07:39:33,776 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 14.666666666666666) internal successors, (44), 4 states have internal predecessors, (44), 4 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (8), 3 states have call predecessors, (8), 4 states have call successors, (8) Word has length 63 [2022-11-19 07:39:33,776 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:33,778 INFO L225 Difference]: With dead ends: 885 [2022-11-19 07:39:33,778 INFO L226 Difference]: Without dead ends: 357 [2022-11-19 07:39:33,780 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-19 07:39:33,780 INFO L413 NwaCegarLoop]: 82 mSDtfsCounter, 94 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 82 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 94 SdHoareTripleChecker+Valid, 130 SdHoareTripleChecker+Invalid, 84 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 82 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:33,781 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [94 Valid, 130 Invalid, 84 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 82 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 07:39:33,782 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 357 states. [2022-11-19 07:39:33,825 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 357 to 329. [2022-11-19 07:39:33,826 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 329 states, 219 states have (on average 1.182648401826484) internal successors, (259), 233 states have internal predecessors, (259), 54 states have call successors, (54), 48 states have call predecessors, (54), 55 states have return successors, (73), 56 states have call predecessors, (73), 54 states have call successors, (73) [2022-11-19 07:39:33,828 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 329 states to 329 states and 386 transitions. [2022-11-19 07:39:33,829 INFO L78 Accepts]: Start accepts. Automaton has 329 states and 386 transitions. Word has length 63 [2022-11-19 07:39:33,829 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:33,829 INFO L495 AbstractCegarLoop]: Abstraction has 329 states and 386 transitions. [2022-11-19 07:39:33,829 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 14.666666666666666) internal successors, (44), 4 states have internal predecessors, (44), 4 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (8), 3 states have call predecessors, (8), 4 states have call successors, (8) [2022-11-19 07:39:33,829 INFO L276 IsEmpty]: Start isEmpty. Operand 329 states and 386 transitions. [2022-11-19 07:39:33,832 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2022-11-19 07:39:33,832 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:39:33,832 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:33,832 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-11-19 07:39:33,833 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:39:33,833 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:39:33,833 INFO L85 PathProgramCache]: Analyzing trace with hash -1078060551, now seen corresponding path program 1 times [2022-11-19 07:39:33,834 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:39:33,834 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1285359311] [2022-11-19 07:39:33,834 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:39:33,834 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:39:33,859 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:39:34,067 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2022-11-19 07:39:34,068 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:39:34,068 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1285359311] [2022-11-19 07:39:34,068 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1285359311] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:39:34,068 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:39:34,068 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2022-11-19 07:39:34,069 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1135284183] [2022-11-19 07:39:34,069 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:39:34,069 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2022-11-19 07:39:34,070 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:39:34,070 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2022-11-19 07:39:34,070 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2022-11-19 07:39:34,071 INFO L87 Difference]: Start difference. First operand 329 states and 386 transitions. Second operand has 10 states, 8 states have (on average 5.25) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (11), 1 states have call predecessors, (11), 3 states have return successors, (12), 5 states have call predecessors, (12), 2 states have call successors, (12) [2022-11-19 07:39:34,453 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:39:34,453 INFO L93 Difference]: Finished difference Result 713 states and 867 transitions. [2022-11-19 07:39:34,453 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2022-11-19 07:39:34,454 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 8 states have (on average 5.25) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (11), 1 states have call predecessors, (11), 3 states have return successors, (12), 5 states have call predecessors, (12), 2 states have call successors, (12) Word has length 79 [2022-11-19 07:39:34,454 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:39:34,454 INFO L225 Difference]: With dead ends: 713 [2022-11-19 07:39:34,454 INFO L226 Difference]: Without dead ends: 0 [2022-11-19 07:39:34,456 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 41 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=64, Invalid=316, Unknown=0, NotChecked=0, Total=380 [2022-11-19 07:39:34,457 INFO L413 NwaCegarLoop]: 64 mSDtfsCounter, 63 mSDsluCounter, 327 mSDsCounter, 0 mSdLazyCounter, 363 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 391 SdHoareTripleChecker+Invalid, 371 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 363 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-19 07:39:34,457 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [70 Valid, 391 Invalid, 371 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 363 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-19 07:39:34,458 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-19 07:39:34,458 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-19 07:39:34,458 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-19 07:39:34,458 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-19 07:39:34,459 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 79 [2022-11-19 07:39:34,459 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:39:34,459 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-19 07:39:34,459 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 8 states have (on average 5.25) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (11), 1 states have call predecessors, (11), 3 states have return successors, (12), 5 states have call predecessors, (12), 2 states have call successors, (12) [2022-11-19 07:39:34,459 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-19 07:39:34,459 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-19 07:39:34,462 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-19 07:39:34,462 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-11-19 07:39:34,464 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-19 07:39:38,927 INFO L895 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 342 349) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or .cse0 (not (= 1 ~systemActive~0))) (or .cse0 (not (<= 2 ~waterLevel~0)) (= 0 ~systemActive~0)))) [2022-11-19 07:39:38,927 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 342 349) no Hoare annotation was computed. [2022-11-19 07:39:38,927 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 258 264) no Hoare annotation was computed. [2022-11-19 07:39:38,927 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 258 264) the Hoare annotation is: true [2022-11-19 07:39:38,927 INFO L895 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 158 169) the Hoare annotation is: (or (not (= |old(~methaneLevelCritical~0)| 0)) (= ~methaneLevelCritical~0 0) (not (= 1 ~systemActive~0))) [2022-11-19 07:39:38,927 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 158 169) no Hoare annotation was computed. [2022-11-19 07:39:38,927 INFO L899 garLoopResultBuilder]: For program point L897(line 897) no Hoare annotation was computed. [2022-11-19 07:39:38,927 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 876 905) no Hoare annotation was computed. [2022-11-19 07:39:38,928 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 876 905) the Hoare annotation is: true [2022-11-19 07:39:38,928 INFO L899 garLoopResultBuilder]: For program point L890(lines 890 894) no Hoare annotation was computed. [2022-11-19 07:39:38,928 INFO L902 garLoopResultBuilder]: At program point L890-1(lines 890 894) the Hoare annotation is: true [2022-11-19 07:39:38,928 INFO L902 garLoopResultBuilder]: At program point L886-2(lines 886 900) the Hoare annotation is: true [2022-11-19 07:39:38,928 INFO L902 garLoopResultBuilder]: At program point L882(line 882) the Hoare annotation is: true [2022-11-19 07:39:38,928 INFO L899 garLoopResultBuilder]: For program point L882-1(line 882) no Hoare annotation was computed. [2022-11-19 07:39:38,928 INFO L902 garLoopResultBuilder]: At program point L901(lines 876 905) the Hoare annotation is: true [2022-11-19 07:39:38,928 INFO L899 garLoopResultBuilder]: For program point L238-1(lines 237 256) no Hoare annotation was computed. [2022-11-19 07:39:38,928 INFO L899 garLoopResultBuilder]: For program point L300(lines 300 308) no Hoare annotation was computed. [2022-11-19 07:39:38,928 INFO L899 garLoopResultBuilder]: For program point L296(lines 296 313) no Hoare annotation was computed. [2022-11-19 07:39:38,928 INFO L899 garLoopResultBuilder]: For program point L65(lines 65 71) no Hoare annotation was computed. [2022-11-19 07:39:38,929 INFO L895 garLoopResultBuilder]: At program point L61(lines 61 74) the Hoare annotation is: (let ((.cse2 (not (= 0 ~systemActive~0))) (.cse5 (<= 2 ~waterLevel~0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse7 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2) (let ((.cse4 (= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 0))) (or .cse3 (and .cse4 .cse5) (not .cse6) (and .cse7 .cse4))) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 (<= ~waterLevel~0 1) .cse2) (or .cse0 (not (<= ~methaneLevelCritical~0 0)) (not (<= 0 ~methaneLevelCritical~0)) .cse2 (and (< 0 (+ |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 1)) (<= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 0))) (let ((.cse8 (= |timeShift_processEnvironment_~tmp~2#1| ~methaneLevelCritical~0))) (or (and .cse1 .cse8) .cse3 (and .cse6 .cse5) (and .cse8 .cse6) (and .cse7 .cse1))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse3 (= ~waterLevel~0 1)))) [2022-11-19 07:39:38,929 INFO L895 garLoopResultBuilder]: At program point L61-1(lines 53 77) the Hoare annotation is: (let ((.cse6 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse9 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0))) (let ((.cse2 (not (= 0 ~systemActive~0))) (.cse10 (= |timeShift_processEnvironment_~tmp~2#1| ~methaneLevelCritical~0)) (.cse7 (and .cse9 .cse1)) (.cse8 (and .cse1 (= |timeShift___utac_acc__Specification1_spec__1_~tmp___0~0#1| 0) .cse6 .cse5)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 (<= ~waterLevel~0 1) .cse2) (let ((.cse4 (= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 0))) (or .cse3 (and .cse4 .cse5) (not .cse6) (and .cse4 (or .cse7 .cse8)) (and .cse9 .cse10 .cse4))) (or .cse0 (not (<= ~methaneLevelCritical~0 0)) (not (<= 0 ~methaneLevelCritical~0)) .cse2 (and (< 0 (+ |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 1)) (<= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 0))) (or (and .cse1 .cse10) .cse6 .cse3 .cse7 .cse8) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse3 (= ~waterLevel~0 1))))) [2022-11-19 07:39:38,929 INFO L895 garLoopResultBuilder]: At program point L83(line 83) the Hoare annotation is: (and (not (= 1 ~systemActive~0)) (or (not (= |old(~pumpRunning~0)| 0)) (not (= 0 ~systemActive~0)))) [2022-11-19 07:39:38,929 INFO L895 garLoopResultBuilder]: At program point L306(line 306) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_processEnvironment_~tmp~2#1| ~methaneLevelCritical~0) (= ~methaneLevelCritical~0 0))) (or .cse1 .cse0) (or .cse1 (not (= 0 ~systemActive~0))))) [2022-11-19 07:39:38,930 INFO L895 garLoopResultBuilder]: At program point L302(line 302) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_processEnvironment_~tmp~2#1| ~methaneLevelCritical~0))) (or .cse0 (and .cse1 (not (= ~methaneLevelCritical~0 0)))) (or .cse1 (not (= 0 ~systemActive~0))))) [2022-11-19 07:39:38,930 INFO L895 garLoopResultBuilder]: At program point L298(line 298) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) (or .cse1 .cse0) (or .cse1 (not (= 0 ~systemActive~0))))) [2022-11-19 07:39:38,930 INFO L899 garLoopResultBuilder]: For program point L298-1(line 298) no Hoare annotation was computed. [2022-11-19 07:39:38,930 INFO L895 garLoopResultBuilder]: At program point L59(line 59) the Hoare annotation is: (let ((.cse7 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0))) (let ((.cse2 (not (= 0 ~systemActive~0))) (.cse3 (= |timeShift_processEnvironment_~tmp~2#1| ~methaneLevelCritical~0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse6 (and .cse7 .cse1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 (<= ~waterLevel~0 1) .cse2) (or (and .cse1 .cse3) .cse4 .cse5 .cse6) (or .cse5 (<= 2 ~waterLevel~0) (and .cse7 .cse3) (not .cse4) .cse6) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse5 (= ~waterLevel~0 1))))) [2022-11-19 07:39:38,930 INFO L899 garLoopResultBuilder]: For program point L59-1(line 59) no Hoare annotation was computed. [2022-11-19 07:39:38,930 INFO L895 garLoopResultBuilder]: At program point L311(line 311) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~pumpRunning~0 0))) (or (not (= |old(~waterLevel~0)| 1)) .cse0 (= ~waterLevel~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) (not (= 0 ~systemActive~0))))) [2022-11-19 07:39:38,931 INFO L895 garLoopResultBuilder]: At program point L311-1(lines 292 316) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse0 (= ~pumpRunning~0 0))) (let ((.cse1 (= |timeShift_processEnvironment_~tmp~2#1| ~methaneLevelCritical~0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse4 (and .cse5 .cse0)) (.cse3 (not (= 1 ~systemActive~0))) (.cse6 (not (= |old(~pumpRunning~0)| 0)))) (and (or (and .cse0 .cse1) .cse2 .cse3 .cse4) (or .cse3 (<= 2 ~waterLevel~0) (and .cse5 .cse1) (not .cse2) .cse4) (or .cse6 (not (= |old(~waterLevel~0)| 1)) .cse3 (= ~waterLevel~0 1)) (or .cse6 (not (= 0 ~systemActive~0)))))) [2022-11-19 07:39:38,931 INFO L899 garLoopResultBuilder]: For program point L245-1(lines 245 251) no Hoare annotation was computed. [2022-11-19 07:39:38,931 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 234 257) the Hoare annotation is: (let ((.cse1 (not (= 0 ~systemActive~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 (= ~pumpRunning~0 0) .cse1) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 (<= ~waterLevel~0 1) .cse1) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse2 (= ~waterLevel~0 1)))) [2022-11-19 07:39:38,931 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 234 257) no Hoare annotation was computed. [2022-11-19 07:39:38,931 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 83) no Hoare annotation was computed. [2022-11-19 07:39:38,932 INFO L902 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 170 178) the Hoare annotation is: true [2022-11-19 07:39:38,933 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 170 178) no Hoare annotation was computed. [2022-11-19 07:39:38,933 INFO L899 garLoopResultBuilder]: For program point L453(lines 452 499) no Hoare annotation was computed. [2022-11-19 07:39:38,933 INFO L899 garLoopResultBuilder]: For program point L482(lines 482 495) no Hoare annotation was computed. [2022-11-19 07:39:38,933 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-11-19 07:39:38,933 INFO L895 garLoopResultBuilder]: At program point L957(lines 957 964) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-11-19 07:39:38,933 INFO L902 garLoopResultBuilder]: At program point L957-2(lines 957 964) the Hoare annotation is: true [2022-11-19 07:39:38,934 INFO L895 garLoopResultBuilder]: At program point L474(line 474) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= 1 ~systemActive~0) .cse0) (and (= ~pumpRunning~0 0) .cse0 (= 0 ~systemActive~0)))) [2022-11-19 07:39:38,934 INFO L902 garLoopResultBuilder]: At program point L503(lines 442 507) the Hoare annotation is: true [2022-11-19 07:39:38,934 INFO L899 garLoopResultBuilder]: For program point L462(lines 462 468) no Hoare annotation was computed. [2022-11-19 07:39:38,934 INFO L899 garLoopResultBuilder]: For program point L462-1(lines 462 468) no Hoare annotation was computed. [2022-11-19 07:39:38,934 INFO L899 garLoopResultBuilder]: For program point L429(lines 429 435) no Hoare annotation was computed. [2022-11-19 07:39:38,934 INFO L895 garLoopResultBuilder]: At program point L429-1(lines 429 435) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-11-19 07:39:38,934 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-19 07:39:38,935 INFO L895 garLoopResultBuilder]: At program point L500(lines 451 501) the Hoare annotation is: false [2022-11-19 07:39:38,935 INFO L899 garLoopResultBuilder]: For program point L488(lines 488 494) no Hoare annotation was computed. [2022-11-19 07:39:38,935 INFO L895 garLoopResultBuilder]: At program point L488-2(lines 482 495) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= 1 ~systemActive~0) .cse0) (and (= ~pumpRunning~0 0) .cse0 (= 0 ~systemActive~0)))) [2022-11-19 07:39:38,935 INFO L899 garLoopResultBuilder]: For program point L472(lines 472 478) no Hoare annotation was computed. [2022-11-19 07:39:38,935 INFO L899 garLoopResultBuilder]: For program point L472-1(lines 472 478) no Hoare annotation was computed. [2022-11-19 07:39:38,936 INFO L895 garLoopResultBuilder]: At program point L497(lines 452 499) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= 1 ~systemActive~0) .cse0 (or .cse1 (= ~methaneLevelCritical~0 0))) (and .cse1 .cse0 (= 0 ~systemActive~0)))) [2022-11-19 07:39:38,936 INFO L895 garLoopResultBuilder]: At program point L464(line 464) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= 1 ~systemActive~0) .cse0 (or .cse1 (= ~methaneLevelCritical~0 0))) (and .cse1 .cse0 (= 0 ~systemActive~0)))) [2022-11-19 07:39:38,936 INFO L895 garLoopResultBuilder]: At program point L431(line 431) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= 1 ~systemActive~0) .cse0) (and (<= 2 ~waterLevel~0) .cse0 (not (= 0 ~systemActive~0))))) [2022-11-19 07:39:38,936 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 146 157) no Hoare annotation was computed. [2022-11-19 07:39:38,936 INFO L902 garLoopResultBuilder]: At program point waterRiseENTRY(lines 146 157) the Hoare annotation is: true [2022-11-19 07:39:38,936 INFO L895 garLoopResultBuilder]: At program point L285(line 285) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-11-19 07:39:38,937 INFO L899 garLoopResultBuilder]: For program point L285-1(lines 266 290) no Hoare annotation was computed. [2022-11-19 07:39:38,937 INFO L895 garLoopResultBuilder]: At program point L280(line 280) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~pumpRunning~0 0)) (and .cse1 (not (= ~methaneLevelCritical~0 0)))) (or .cse1 .cse0 (<= 2 ~waterLevel~0) (and (<= |processEnvironment__wrappee__methaneQuery_~tmp~1#1| 0) (< 0 (+ |processEnvironment__wrappee__methaneQuery_~tmp~1#1| 1)))))) [2022-11-19 07:39:38,937 INFO L899 garLoopResultBuilder]: For program point L274(lines 274 282) no Hoare annotation was computed. [2022-11-19 07:39:38,937 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryENTRY(lines 266 290) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0))) [2022-11-19 07:39:38,937 INFO L895 garLoopResultBuilder]: At program point L270(lines 270 287) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0))) [2022-11-19 07:39:38,938 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 266 290) no Hoare annotation was computed. [2022-11-19 07:39:38,938 INFO L895 garLoopResultBuilder]: At program point L330(line 330) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and .cse1 (<= 2 ~waterLevel~0))))) [2022-11-19 07:39:38,938 INFO L895 garLoopResultBuilder]: At program point L330-1(line 330) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and .cse1 (<= 2 ~waterLevel~0) (= |processEnvironment__wrappee__methaneQuery_activatePump_#t~ret14#1| ~methaneLevelCritical~0))))) [2022-11-19 07:39:38,938 INFO L902 garLoopResultBuilder]: At program point isMethaneAlarmENTRY(lines 350 360) the Hoare annotation is: true [2022-11-19 07:39:38,938 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 350 360) no Hoare annotation was computed. [2022-11-19 07:39:38,939 INFO L902 garLoopResultBuilder]: At program point L355(line 355) the Hoare annotation is: true [2022-11-19 07:39:38,939 INFO L899 garLoopResultBuilder]: For program point L355-1(line 355) no Hoare annotation was computed. [2022-11-19 07:39:38,942 INFO L444 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:39:38,944 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-19 07:39:38,963 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 19.11 07:39:38 BoogieIcfgContainer [2022-11-19 07:39:38,963 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-19 07:39:38,963 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-19 07:39:38,964 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-19 07:39:38,964 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-19 07:39:38,964 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 07:39:29" (3/4) ... [2022-11-19 07:39:38,967 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-19 07:39:38,972 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-11-19 07:39:38,972 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-19 07:39:38,973 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-19 07:39:38,973 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-19 07:39:38,973 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-19 07:39:38,973 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-11-19 07:39:38,973 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-19 07:39:38,974 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2022-11-19 07:39:38,974 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2022-11-19 07:39:38,980 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 44 nodes and edges [2022-11-19 07:39:38,980 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2022-11-19 07:39:38,981 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-11-19 07:39:38,981 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-19 07:39:38,982 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-19 07:39:39,006 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(0 == systemActive)) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || waterLevel <= 1) || !(0 == systemActive))) && (pumpRunning == \old(pumpRunning) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) [2022-11-19 07:39:39,008 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0 && tmp == methaneLevelCritical) || methaneLevelCritical == 0) || !(1 == systemActive)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) && ((((!(1 == systemActive) || 2 <= waterLevel) || (pumpRunning == \old(pumpRunning) && tmp == methaneLevelCritical)) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1)) && (!(\old(pumpRunning) == 0) || !(0 == systemActive)) [2022-11-19 07:39:39,008 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == \old(pumpRunning) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) [2022-11-19 07:39:39,010 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(0 == systemActive)) && (((!(1 == systemActive) || (tmp == 0 && 2 <= waterLevel)) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && tmp == 0))) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || waterLevel <= 1) || !(0 == systemActive))) && ((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical <= 0)) || !(0 <= methaneLevelCritical)) || !(0 == systemActive)) || (0 < tmp + 1 && tmp <= 0))) && (((((pumpRunning == 0 && tmp == methaneLevelCritical) || !(1 == systemActive)) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || (tmp == methaneLevelCritical && methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) [2022-11-19 07:39:39,010 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(0 == systemActive)) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || waterLevel <= 1) || !(0 == systemActive))) && ((((!(1 == systemActive) || (tmp == 0 && 2 <= waterLevel)) || !(methaneLevelCritical == 0)) || (tmp == 0 && ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) || (((pumpRunning == 0 && tmp___0 == 0) && methaneLevelCritical == 0) && 2 <= waterLevel)))) || ((pumpRunning == \old(pumpRunning) && tmp == methaneLevelCritical) && tmp == 0))) && ((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical <= 0)) || !(0 <= methaneLevelCritical)) || !(0 == systemActive)) || (0 < tmp + 1 && tmp <= 0))) && (((((pumpRunning == 0 && tmp == methaneLevelCritical) || methaneLevelCritical == 0) || !(1 == systemActive)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) || (((pumpRunning == 0 && tmp___0 == 0) && methaneLevelCritical == 0) && 2 <= waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) [2022-11-19 07:39:39,010 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((pumpRunning == 0 && 2 <= waterLevel) && aux-isMethaneAlarm()-aux == methaneLevelCritical)) [2022-11-19 07:39:39,011 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(1 == systemActive) && (!(\old(pumpRunning) == 0) || !(0 == systemActive)) [2022-11-19 07:39:39,054 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/witness.graphml [2022-11-19 07:39:39,054 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-19 07:39:39,055 INFO L158 Benchmark]: Toolchain (without parser) took 10945.71ms. Allocated memory was 83.9MB in the beginning and 176.2MB in the end (delta: 92.3MB). Free memory was 43.2MB in the beginning and 50.9MB in the end (delta: -7.7MB). Peak memory consumption was 85.0MB. Max. memory is 16.1GB. [2022-11-19 07:39:39,055 INFO L158 Benchmark]: CDTParser took 0.24ms. Allocated memory is still 83.9MB. Free memory was 60.6MB in the beginning and 60.6MB in the end (delta: 83.9kB). There was no memory consumed. Max. memory is 16.1GB. [2022-11-19 07:39:39,056 INFO L158 Benchmark]: CACSL2BoogieTranslator took 595.99ms. Allocated memory was 83.9MB in the beginning and 100.7MB in the end (delta: 16.8MB). Free memory was 43.0MB in the beginning and 69.5MB in the end (delta: -26.5MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-11-19 07:39:39,056 INFO L158 Benchmark]: Boogie Procedure Inliner took 56.58ms. Allocated memory is still 100.7MB. Free memory was 69.5MB in the beginning and 67.4MB in the end (delta: 2.1MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-11-19 07:39:39,057 INFO L158 Benchmark]: Boogie Preprocessor took 39.89ms. Allocated memory is still 100.7MB. Free memory was 67.4MB in the beginning and 65.8MB in the end (delta: 1.6MB). There was no memory consumed. Max. memory is 16.1GB. [2022-11-19 07:39:39,057 INFO L158 Benchmark]: RCFGBuilder took 694.10ms. Allocated memory is still 100.7MB. Free memory was 65.8MB in the beginning and 41.4MB in the end (delta: 24.3MB). Peak memory consumption was 25.2MB. Max. memory is 16.1GB. [2022-11-19 07:39:39,058 INFO L158 Benchmark]: TraceAbstraction took 9461.62ms. Allocated memory was 100.7MB in the beginning and 176.2MB in the end (delta: 75.5MB). Free memory was 40.6MB in the beginning and 57.3MB in the end (delta: -16.6MB). Peak memory consumption was 66.3MB. Max. memory is 16.1GB. [2022-11-19 07:39:39,058 INFO L158 Benchmark]: Witness Printer took 91.17ms. Allocated memory is still 176.2MB. Free memory was 56.2MB in the beginning and 50.9MB in the end (delta: 5.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-11-19 07:39:39,061 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.24ms. Allocated memory is still 83.9MB. Free memory was 60.6MB in the beginning and 60.6MB in the end (delta: 83.9kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 595.99ms. Allocated memory was 83.9MB in the beginning and 100.7MB in the end (delta: 16.8MB). Free memory was 43.0MB in the beginning and 69.5MB in the end (delta: -26.5MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 56.58ms. Allocated memory is still 100.7MB. Free memory was 69.5MB in the beginning and 67.4MB in the end (delta: 2.1MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Preprocessor took 39.89ms. Allocated memory is still 100.7MB. Free memory was 67.4MB in the beginning and 65.8MB in the end (delta: 1.6MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 694.10ms. Allocated memory is still 100.7MB. Free memory was 65.8MB in the beginning and 41.4MB in the end (delta: 24.3MB). Peak memory consumption was 25.2MB. Max. memory is 16.1GB. * TraceAbstraction took 9461.62ms. Allocated memory was 100.7MB in the beginning and 176.2MB in the end (delta: 75.5MB). Free memory was 40.6MB in the beginning and 57.3MB in the end (delta: -16.6MB). Peak memory consumption was 66.3MB. Max. memory is 16.1GB. * Witness Printer took 91.17ms. Allocated memory is still 176.2MB. Free memory was 56.2MB in the beginning and 50.9MB in the end (delta: 5.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 83]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 71 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 9.4s, OverallIterations: 9, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 4.5s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 970 SdHoareTripleChecker+Valid, 1.4s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 948 mSDsluCounter, 1908 SdHoareTripleChecker+Invalid, 1.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1258 mSDsCounter, 349 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1433 IncrementalHoareTripleChecker+Invalid, 1782 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 349 mSolverCounterUnsat, 650 mSDtfsCounter, 1433 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 99 GetRequests, 26 SyntacticMatches, 0 SemanticMatches, 73 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 332 ImplicationChecksByTransitivity, 0.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=769occurred in iteration=7, InterpolantAutomatonStates: 80, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 9 MinimizatonAttempts, 251 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 39 LocationsWithAnnotation, 1121 PreInvPairs, 1339 NumberOfFragments, 1004 HoareAnnotationTreeSize, 1121 FomulaSimplifications, 3901 FormulaSimplificationTreeSizeReduction, 0.6s HoareSimplificationTime, 39 FomulaSimplificationsInter, 16334 FormulaSimplificationTreeSizeReductionInter, 3.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 1.3s InterpolantComputationTime, 335 NumberOfCodeBlocks, 335 NumberOfCodeBlocksAsserted, 9 NumberOfCheckSat, 326 ConstructedInterpolants, 0 QuantifiedInterpolants, 781 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 9 InterpolantComputations, 9 PerfectInterpolantSequences, 62/62 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 270]: Loop Invariant Derived loop invariant: ((pumpRunning == \old(pumpRunning) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 876]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 452]: Loop Invariant Derived loop invariant: ((1 == systemActive && splverifierCounter == 0) && (pumpRunning == 0 || methaneLevelCritical == 0)) || ((pumpRunning == 0 && splverifierCounter == 0) && 0 == systemActive) - InvariantResult [Line: 957]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 234]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(0 == systemActive)) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || waterLevel <= 1) || !(0 == systemActive))) && (pumpRunning == \old(pumpRunning) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) - InvariantResult [Line: 83]: Loop Invariant Derived loop invariant: !(1 == systemActive) && (!(\old(pumpRunning) == 0) || !(0 == systemActive)) - InvariantResult [Line: 330]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((pumpRunning == 0 && 2 <= waterLevel) && aux-isMethaneAlarm()-aux == methaneLevelCritical)) - InvariantResult [Line: 53]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(0 == systemActive)) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || waterLevel <= 1) || !(0 == systemActive))) && ((((!(1 == systemActive) || (tmp == 0 && 2 <= waterLevel)) || !(methaneLevelCritical == 0)) || (tmp == 0 && ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) || (((pumpRunning == 0 && tmp___0 == 0) && methaneLevelCritical == 0) && 2 <= waterLevel)))) || ((pumpRunning == \old(pumpRunning) && tmp == methaneLevelCritical) && tmp == 0))) && ((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical <= 0)) || !(0 <= methaneLevelCritical)) || !(0 == systemActive)) || (0 < tmp + 1 && tmp <= 0))) && (((((pumpRunning == 0 && tmp == methaneLevelCritical) || methaneLevelCritical == 0) || !(1 == systemActive)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) || (((pumpRunning == 0 && tmp___0 == 0) && methaneLevelCritical == 0) && 2 <= waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) - InvariantResult [Line: 886]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 429]: Loop Invariant Derived loop invariant: pumpRunning == 0 && splverifierCounter == 0 - InvariantResult [Line: 957]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 292]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0 && tmp == methaneLevelCritical) || methaneLevelCritical == 0) || !(1 == systemActive)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) && ((((!(1 == systemActive) || 2 <= waterLevel) || (pumpRunning == \old(pumpRunning) && tmp == methaneLevelCritical)) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1)) && (!(\old(pumpRunning) == 0) || !(0 == systemActive)) - InvariantResult [Line: 61]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(0 == systemActive)) && (((!(1 == systemActive) || (tmp == 0 && 2 <= waterLevel)) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && tmp == 0))) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || waterLevel <= 1) || !(0 == systemActive))) && ((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical <= 0)) || !(0 <= methaneLevelCritical)) || !(0 == systemActive)) || (0 < tmp + 1 && tmp <= 0))) && (((((pumpRunning == 0 && tmp == methaneLevelCritical) || !(1 == systemActive)) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || (tmp == methaneLevelCritical && methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2022-11-19 07:39:39,109 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_35dc8cd7-61ed-405f-9b21-3bf17e6ccdf7/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE