./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product61.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 8393723b Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product61.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash f250833677b07ed1377ed852c7268af3b652ab26de7f7fe1fca27ae75baf167f --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-8393723 [2022-11-19 06:53:23,310 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-19 06:53:23,313 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-19 06:53:23,351 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-19 06:53:23,353 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-19 06:53:23,357 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-19 06:53:23,360 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-19 06:53:23,364 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-19 06:53:23,366 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-19 06:53:23,375 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-19 06:53:23,376 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-19 06:53:23,378 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-19 06:53:23,379 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-19 06:53:23,381 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-19 06:53:23,383 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-19 06:53:23,384 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-19 06:53:23,386 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-19 06:53:23,387 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-19 06:53:23,389 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-19 06:53:23,394 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-19 06:53:23,398 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-19 06:53:23,400 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-19 06:53:23,403 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-19 06:53:23,404 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-19 06:53:23,412 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-19 06:53:23,414 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-19 06:53:23,415 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-19 06:53:23,416 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-19 06:53:23,417 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-19 06:53:23,419 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-19 06:53:23,419 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-19 06:53:23,420 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-19 06:53:23,422 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-19 06:53:23,424 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-19 06:53:23,427 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-19 06:53:23,427 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-19 06:53:23,428 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-19 06:53:23,428 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-19 06:53:23,428 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-19 06:53:23,429 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-19 06:53:23,430 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-19 06:53:23,431 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-11-19 06:53:23,472 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-19 06:53:23,473 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-19 06:53:23,473 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-19 06:53:23,474 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-19 06:53:23,475 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-19 06:53:23,475 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-19 06:53:23,475 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-19 06:53:23,476 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-19 06:53:23,476 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-19 06:53:23,476 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-19 06:53:23,477 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-19 06:53:23,478 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-19 06:53:23,478 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-19 06:53:23,478 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-19 06:53:23,478 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-19 06:53:23,479 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-19 06:53:23,479 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-19 06:53:23,479 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-19 06:53:23,480 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-19 06:53:23,481 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-19 06:53:23,481 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-19 06:53:23,481 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-19 06:53:23,481 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-19 06:53:23,482 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-19 06:53:23,482 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-19 06:53:23,482 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-19 06:53:23,483 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-19 06:53:23,483 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-19 06:53:23,483 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-19 06:53:23,483 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-19 06:53:23,484 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-19 06:53:23,484 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-19 06:53:23,485 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-19 06:53:23,485 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-19 06:53:23,485 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-19 06:53:23,486 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-19 06:53:23,486 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-19 06:53:23,486 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-19 06:53:23,486 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-19 06:53:23,487 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-19 06:53:23,487 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-19 06:53:23,487 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> f250833677b07ed1377ed852c7268af3b652ab26de7f7fe1fca27ae75baf167f [2022-11-19 06:53:23,816 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-19 06:53:23,840 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-19 06:53:23,844 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-19 06:53:23,845 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-19 06:53:23,846 INFO L275 PluginConnector]: CDTParser initialized [2022-11-19 06:53:23,847 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/../../sv-benchmarks/c/product-lines/minepump_spec1_product61.cil.c [2022-11-19 06:53:23,932 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/data/336a1eedd/56854e551aab4c4e83803615e4734440/FLAG2d7897ee4 [2022-11-19 06:53:24,479 INFO L306 CDTParser]: Found 1 translation units. [2022-11-19 06:53:24,487 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/sv-benchmarks/c/product-lines/minepump_spec1_product61.cil.c [2022-11-19 06:53:24,503 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/data/336a1eedd/56854e551aab4c4e83803615e4734440/FLAG2d7897ee4 [2022-11-19 06:53:24,759 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/data/336a1eedd/56854e551aab4c4e83803615e4734440 [2022-11-19 06:53:24,763 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-19 06:53:24,766 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-19 06:53:24,770 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-19 06:53:24,770 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-19 06:53:24,773 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-19 06:53:24,774 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 06:53:24" (1/1) ... [2022-11-19 06:53:24,776 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@15d0fe1c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:24, skipping insertion in model container [2022-11-19 06:53:24,777 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 06:53:24" (1/1) ... [2022-11-19 06:53:24,784 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-19 06:53:24,844 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-19 06:53:25,065 WARN L234 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/sv-benchmarks/c/product-lines/minepump_spec1_product61.cil.c[3777,3790] [2022-11-19 06:53:25,221 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-19 06:53:25,231 INFO L203 MainTranslator]: Completed pre-run [2022-11-19 06:53:25,269 WARN L234 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/sv-benchmarks/c/product-lines/minepump_spec1_product61.cil.c[3777,3790] [2022-11-19 06:53:25,345 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-19 06:53:25,371 INFO L208 MainTranslator]: Completed translation [2022-11-19 06:53:25,371 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25 WrapperNode [2022-11-19 06:53:25,371 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-19 06:53:25,373 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-19 06:53:25,373 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-19 06:53:25,373 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-19 06:53:25,381 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,396 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,420 INFO L138 Inliner]: procedures = 57, calls = 104, calls flagged for inlining = 22, calls inlined = 19, statements flattened = 212 [2022-11-19 06:53:25,424 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-19 06:53:25,425 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-19 06:53:25,426 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-19 06:53:25,426 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-19 06:53:25,436 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,436 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,448 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,448 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,467 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,471 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,472 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,473 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,475 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-19 06:53:25,476 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-19 06:53:25,476 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-19 06:53:25,476 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-19 06:53:25,477 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (1/1) ... [2022-11-19 06:53:25,495 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-19 06:53:25,507 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 [2022-11-19 06:53:25,525 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-19 06:53:25,551 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-19 06:53:25,583 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-19 06:53:25,583 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-19 06:53:25,583 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-19 06:53:25,583 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-19 06:53:25,583 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-19 06:53:25,583 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-19 06:53:25,584 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-19 06:53:25,584 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-11-19 06:53:25,584 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-11-19 06:53:25,584 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2022-11-19 06:53:25,584 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2022-11-19 06:53:25,584 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-19 06:53:25,584 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-19 06:53:25,585 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2022-11-19 06:53:25,585 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2022-11-19 06:53:25,585 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2022-11-19 06:53:25,585 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2022-11-19 06:53:25,585 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-11-19 06:53:25,585 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-11-19 06:53:25,585 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-19 06:53:25,586 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-19 06:53:25,586 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-19 06:53:25,586 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-19 06:53:25,586 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-19 06:53:25,693 INFO L235 CfgBuilder]: Building ICFG [2022-11-19 06:53:25,694 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-19 06:53:26,013 INFO L276 CfgBuilder]: Performing block encoding [2022-11-19 06:53:26,165 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-19 06:53:26,181 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-19 06:53:26,184 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 06:53:26 BoogieIcfgContainer [2022-11-19 06:53:26,184 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-19 06:53:26,187 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-19 06:53:26,187 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-19 06:53:26,191 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-19 06:53:26,191 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 19.11 06:53:24" (1/3) ... [2022-11-19 06:53:26,192 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@430b08aa and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 06:53:26, skipping insertion in model container [2022-11-19 06:53:26,192 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 06:53:25" (2/3) ... [2022-11-19 06:53:26,192 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@430b08aa and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 06:53:26, skipping insertion in model container [2022-11-19 06:53:26,192 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 06:53:26" (3/3) ... [2022-11-19 06:53:26,193 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product61.cil.c [2022-11-19 06:53:26,213 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-19 06:53:26,213 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-19 06:53:26,270 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-19 06:53:26,277 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@4ddaccfb, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-19 06:53:26,277 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-19 06:53:26,281 INFO L276 IsEmpty]: Start isEmpty. Operand has 74 states, 44 states have (on average 1.3863636363636365) internal successors, (61), 54 states have internal predecessors, (61), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2022-11-19 06:53:26,290 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2022-11-19 06:53:26,291 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:26,291 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:26,292 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:26,302 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:26,302 INFO L85 PathProgramCache]: Analyzing trace with hash 1529820237, now seen corresponding path program 1 times [2022-11-19 06:53:26,313 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:26,314 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [943449527] [2022-11-19 06:53:26,315 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:26,315 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:26,459 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:26,558 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 06:53:26,558 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:26,559 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [943449527] [2022-11-19 06:53:26,559 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [943449527] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:26,560 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:26,560 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-19 06:53:26,561 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [186002628] [2022-11-19 06:53:26,562 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:26,566 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-19 06:53:26,568 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:26,603 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-19 06:53:26,604 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-19 06:53:26,607 INFO L87 Difference]: Start difference. First operand has 74 states, 44 states have (on average 1.3863636363636365) internal successors, (61), 54 states have internal predecessors, (61), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 06:53:26,723 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:26,723 INFO L93 Difference]: Finished difference Result 146 states and 195 transitions. [2022-11-19 06:53:26,726 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-19 06:53:26,727 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2022-11-19 06:53:26,728 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:26,736 INFO L225 Difference]: With dead ends: 146 [2022-11-19 06:53:26,736 INFO L226 Difference]: Without dead ends: 69 [2022-11-19 06:53:26,740 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-19 06:53:26,750 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 76 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:26,752 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 76 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 06:53:26,788 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2022-11-19 06:53:26,825 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 69. [2022-11-19 06:53:26,826 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 41 states have (on average 1.2926829268292683) internal successors, (53), 50 states have internal predecessors, (53), 18 states have call successors, (18), 10 states have call predecessors, (18), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2022-11-19 06:53:26,834 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 88 transitions. [2022-11-19 06:53:26,836 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 88 transitions. Word has length 16 [2022-11-19 06:53:26,837 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:26,838 INFO L495 AbstractCegarLoop]: Abstraction has 69 states and 88 transitions. [2022-11-19 06:53:26,839 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 06:53:26,839 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 88 transitions. [2022-11-19 06:53:26,843 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2022-11-19 06:53:26,844 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:26,844 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:26,845 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-19 06:53:26,845 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:26,846 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:26,846 INFO L85 PathProgramCache]: Analyzing trace with hash -2043320348, now seen corresponding path program 1 times [2022-11-19 06:53:26,847 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:26,847 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1595735876] [2022-11-19 06:53:26,847 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:26,847 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:26,872 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:26,996 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 06:53:26,996 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:26,997 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1595735876] [2022-11-19 06:53:26,998 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1595735876] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:26,998 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:26,999 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-19 06:53:27,000 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [467740065] [2022-11-19 06:53:27,004 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:27,007 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-19 06:53:27,007 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:27,008 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-19 06:53:27,009 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 06:53:27,010 INFO L87 Difference]: Start difference. First operand 69 states and 88 transitions. Second operand has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 06:53:27,109 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:27,113 INFO L93 Difference]: Finished difference Result 115 states and 147 transitions. [2022-11-19 06:53:27,118 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-19 06:53:27,119 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2022-11-19 06:53:27,119 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:27,120 INFO L225 Difference]: With dead ends: 115 [2022-11-19 06:53:27,120 INFO L226 Difference]: Without dead ends: 61 [2022-11-19 06:53:27,121 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 06:53:27,124 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 7 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:27,127 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 115 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 06:53:27,128 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 61 states. [2022-11-19 06:53:27,135 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 61 to 61. [2022-11-19 06:53:27,137 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 36 states have (on average 1.3055555555555556) internal successors, (47), 45 states have internal predecessors, (47), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-19 06:53:27,141 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 77 transitions. [2022-11-19 06:53:27,142 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 77 transitions. Word has length 17 [2022-11-19 06:53:27,146 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:27,146 INFO L495 AbstractCegarLoop]: Abstraction has 61 states and 77 transitions. [2022-11-19 06:53:27,148 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 06:53:27,148 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 77 transitions. [2022-11-19 06:53:27,149 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2022-11-19 06:53:27,150 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:27,150 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:27,150 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-19 06:53:27,151 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:27,151 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:27,153 INFO L85 PathProgramCache]: Analyzing trace with hash 729327852, now seen corresponding path program 1 times [2022-11-19 06:53:27,153 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:27,154 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1219954018] [2022-11-19 06:53:27,155 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:27,155 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:27,179 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:27,233 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 06:53:27,233 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:27,234 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1219954018] [2022-11-19 06:53:27,234 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1219954018] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:27,234 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:27,234 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-19 06:53:27,235 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [766340559] [2022-11-19 06:53:27,235 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:27,235 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-19 06:53:27,235 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:27,236 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-19 06:53:27,236 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 06:53:27,236 INFO L87 Difference]: Start difference. First operand 61 states and 77 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 06:53:27,277 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:27,277 INFO L93 Difference]: Finished difference Result 120 states and 153 transitions. [2022-11-19 06:53:27,278 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-19 06:53:27,278 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2022-11-19 06:53:27,278 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:27,279 INFO L225 Difference]: With dead ends: 120 [2022-11-19 06:53:27,279 INFO L226 Difference]: Without dead ends: 61 [2022-11-19 06:53:27,280 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 06:53:27,281 INFO L413 NwaCegarLoop]: 60 mSDtfsCounter, 66 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 16 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 66 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 16 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:27,282 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [66 Valid, 60 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 16 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-19 06:53:27,283 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 61 states. [2022-11-19 06:53:27,290 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 61 to 61. [2022-11-19 06:53:27,296 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 36 states have (on average 1.2777777777777777) internal successors, (46), 45 states have internal predecessors, (46), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-19 06:53:27,296 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 76 transitions. [2022-11-19 06:53:27,297 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 76 transitions. Word has length 19 [2022-11-19 06:53:27,297 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:27,297 INFO L495 AbstractCegarLoop]: Abstraction has 61 states and 76 transitions. [2022-11-19 06:53:27,297 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 06:53:27,298 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 76 transitions. [2022-11-19 06:53:27,299 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2022-11-19 06:53:27,299 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:27,299 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:27,299 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-19 06:53:27,299 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:27,300 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:27,300 INFO L85 PathProgramCache]: Analyzing trace with hash 465414933, now seen corresponding path program 1 times [2022-11-19 06:53:27,300 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:27,300 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [328198667] [2022-11-19 06:53:27,301 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:27,301 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:27,339 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:27,434 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 06:53:27,434 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:27,435 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [328198667] [2022-11-19 06:53:27,435 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [328198667] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:27,435 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:27,435 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-19 06:53:27,435 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2003031138] [2022-11-19 06:53:27,436 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:27,436 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-19 06:53:27,436 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:27,437 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-19 06:53:27,437 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-19 06:53:27,437 INFO L87 Difference]: Start difference. First operand 61 states and 76 transitions. Second operand has 5 states, 4 states have (on average 5.75) internal successors, (23), 5 states have internal predecessors, (23), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-19 06:53:27,682 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:27,682 INFO L93 Difference]: Finished difference Result 190 states and 234 transitions. [2022-11-19 06:53:27,682 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-19 06:53:27,683 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 5.75) internal successors, (23), 5 states have internal predecessors, (23), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 30 [2022-11-19 06:53:27,683 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:27,684 INFO L225 Difference]: With dead ends: 190 [2022-11-19 06:53:27,684 INFO L226 Difference]: Without dead ends: 131 [2022-11-19 06:53:27,685 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2022-11-19 06:53:27,686 INFO L413 NwaCegarLoop]: 72 mSDtfsCounter, 132 mSDsluCounter, 92 mSDsCounter, 0 mSdLazyCounter, 154 mSolverCounterSat, 76 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 134 SdHoareTripleChecker+Valid, 164 SdHoareTripleChecker+Invalid, 230 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 76 IncrementalHoareTripleChecker+Valid, 154 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:27,687 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [134 Valid, 164 Invalid, 230 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [76 Valid, 154 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-19 06:53:27,688 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2022-11-19 06:53:27,708 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 125. [2022-11-19 06:53:27,709 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 125 states, 79 states have (on average 1.2025316455696202) internal successors, (95), 87 states have internal predecessors, (95), 22 states have call successors, (22), 18 states have call predecessors, (22), 23 states have return successors, (29), 24 states have call predecessors, (29), 22 states have call successors, (29) [2022-11-19 06:53:27,710 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 125 states to 125 states and 146 transitions. [2022-11-19 06:53:27,710 INFO L78 Accepts]: Start accepts. Automaton has 125 states and 146 transitions. Word has length 30 [2022-11-19 06:53:27,710 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:27,710 INFO L495 AbstractCegarLoop]: Abstraction has 125 states and 146 transitions. [2022-11-19 06:53:27,711 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 5.75) internal successors, (23), 5 states have internal predecessors, (23), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-19 06:53:27,711 INFO L276 IsEmpty]: Start isEmpty. Operand 125 states and 146 transitions. [2022-11-19 06:53:27,712 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2022-11-19 06:53:27,712 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:27,712 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:27,712 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-19 06:53:27,713 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:27,713 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:27,713 INFO L85 PathProgramCache]: Analyzing trace with hash 1668464223, now seen corresponding path program 1 times [2022-11-19 06:53:27,713 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:27,714 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2087751164] [2022-11-19 06:53:27,714 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:27,714 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:27,728 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:27,832 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 06:53:27,832 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:27,833 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2087751164] [2022-11-19 06:53:27,833 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2087751164] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:27,833 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:27,833 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-11-19 06:53:27,834 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1983769740] [2022-11-19 06:53:27,834 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:27,834 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-19 06:53:27,835 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:27,835 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-19 06:53:27,835 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-11-19 06:53:27,836 INFO L87 Difference]: Start difference. First operand 125 states and 146 transitions. Second operand has 6 states, 5 states have (on average 5.2) internal successors, (26), 5 states have internal predecessors, (26), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2022-11-19 06:53:28,024 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:28,025 INFO L93 Difference]: Finished difference Result 371 states and 441 transitions. [2022-11-19 06:53:28,025 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-11-19 06:53:28,025 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 5.2) internal successors, (26), 5 states have internal predecessors, (26), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) Word has length 35 [2022-11-19 06:53:28,026 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:28,029 INFO L225 Difference]: With dead ends: 371 [2022-11-19 06:53:28,030 INFO L226 Difference]: Without dead ends: 248 [2022-11-19 06:53:28,031 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2022-11-19 06:53:28,032 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 55 mSDsluCounter, 247 mSDsCounter, 0 mSdLazyCounter, 115 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 58 SdHoareTripleChecker+Valid, 321 SdHoareTripleChecker+Invalid, 116 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 115 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:28,032 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [58 Valid, 321 Invalid, 116 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 115 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 06:53:28,033 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 248 states. [2022-11-19 06:53:28,099 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 248 to 236. [2022-11-19 06:53:28,100 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 236 states, 149 states have (on average 1.1610738255033557) internal successors, (173), 162 states have internal predecessors, (173), 42 states have call successors, (42), 34 states have call predecessors, (42), 44 states have return successors, (56), 46 states have call predecessors, (56), 42 states have call successors, (56) [2022-11-19 06:53:28,101 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 236 states to 236 states and 271 transitions. [2022-11-19 06:53:28,102 INFO L78 Accepts]: Start accepts. Automaton has 236 states and 271 transitions. Word has length 35 [2022-11-19 06:53:28,102 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:28,102 INFO L495 AbstractCegarLoop]: Abstraction has 236 states and 271 transitions. [2022-11-19 06:53:28,103 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 5.2) internal successors, (26), 5 states have internal predecessors, (26), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2022-11-19 06:53:28,103 INFO L276 IsEmpty]: Start isEmpty. Operand 236 states and 271 transitions. [2022-11-19 06:53:28,104 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2022-11-19 06:53:28,104 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:28,104 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:28,105 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-19 06:53:28,105 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:28,105 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:28,105 INFO L85 PathProgramCache]: Analyzing trace with hash -569823899, now seen corresponding path program 1 times [2022-11-19 06:53:28,106 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:28,106 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1715783781] [2022-11-19 06:53:28,106 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:28,106 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:28,121 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:28,296 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 06:53:28,297 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:28,297 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1715783781] [2022-11-19 06:53:28,297 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1715783781] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:28,297 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:28,297 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-19 06:53:28,298 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1947873654] [2022-11-19 06:53:28,298 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:28,299 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-19 06:53:28,300 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:28,300 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-19 06:53:28,300 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-19 06:53:28,301 INFO L87 Difference]: Start difference. First operand 236 states and 271 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 5 states have internal predecessors, (27), 3 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2022-11-19 06:53:28,535 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:28,536 INFO L93 Difference]: Finished difference Result 248 states and 283 transitions. [2022-11-19 06:53:28,536 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-11-19 06:53:28,536 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 5 states have internal predecessors, (27), 3 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) Word has length 38 [2022-11-19 06:53:28,537 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:28,538 INFO L225 Difference]: With dead ends: 248 [2022-11-19 06:53:28,538 INFO L226 Difference]: Without dead ends: 246 [2022-11-19 06:53:28,539 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2022-11-19 06:53:28,540 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 87 mSDsluCounter, 112 mSDsCounter, 0 mSdLazyCounter, 161 mSolverCounterSat, 37 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 93 SdHoareTripleChecker+Valid, 169 SdHoareTripleChecker+Invalid, 198 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 37 IncrementalHoareTripleChecker+Valid, 161 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:28,540 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [93 Valid, 169 Invalid, 198 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [37 Valid, 161 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-19 06:53:28,542 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 246 states. [2022-11-19 06:53:28,603 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 246 to 236. [2022-11-19 06:53:28,606 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 236 states, 149 states have (on average 1.1476510067114094) internal successors, (171), 162 states have internal predecessors, (171), 42 states have call successors, (42), 34 states have call predecessors, (42), 44 states have return successors, (56), 46 states have call predecessors, (56), 42 states have call successors, (56) [2022-11-19 06:53:28,607 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 236 states to 236 states and 269 transitions. [2022-11-19 06:53:28,607 INFO L78 Accepts]: Start accepts. Automaton has 236 states and 269 transitions. Word has length 38 [2022-11-19 06:53:28,609 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:28,610 INFO L495 AbstractCegarLoop]: Abstraction has 236 states and 269 transitions. [2022-11-19 06:53:28,610 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 5 states have internal predecessors, (27), 3 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2022-11-19 06:53:28,610 INFO L276 IsEmpty]: Start isEmpty. Operand 236 states and 269 transitions. [2022-11-19 06:53:28,615 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2022-11-19 06:53:28,616 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:28,616 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:28,616 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-19 06:53:28,616 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:28,617 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:28,617 INFO L85 PathProgramCache]: Analyzing trace with hash 1814400766, now seen corresponding path program 1 times [2022-11-19 06:53:28,617 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:28,617 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1318653791] [2022-11-19 06:53:28,617 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:28,618 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:28,641 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:28,882 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-19 06:53:28,883 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:28,883 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1318653791] [2022-11-19 06:53:28,883 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1318653791] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:28,883 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:28,883 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-19 06:53:28,883 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2122331486] [2022-11-19 06:53:28,884 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:28,884 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-19 06:53:28,884 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:28,885 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-19 06:53:28,885 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2022-11-19 06:53:28,885 INFO L87 Difference]: Start difference. First operand 236 states and 269 transitions. Second operand has 8 states, 7 states have (on average 4.142857142857143) internal successors, (29), 8 states have internal predecessors, (29), 5 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (6), 4 states have call predecessors, (6), 5 states have call successors, (6) [2022-11-19 06:53:29,372 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:29,372 INFO L93 Difference]: Finished difference Result 679 states and 802 transitions. [2022-11-19 06:53:29,373 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2022-11-19 06:53:29,373 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 4.142857142857143) internal successors, (29), 8 states have internal predecessors, (29), 5 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (6), 4 states have call predecessors, (6), 5 states have call successors, (6) Word has length 43 [2022-11-19 06:53:29,373 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:29,377 INFO L225 Difference]: With dead ends: 679 [2022-11-19 06:53:29,377 INFO L226 Difference]: Without dead ends: 445 [2022-11-19 06:53:29,379 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2022-11-19 06:53:29,382 INFO L413 NwaCegarLoop]: 104 mSDtfsCounter, 183 mSDsluCounter, 297 mSDsCounter, 0 mSdLazyCounter, 421 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 186 SdHoareTripleChecker+Valid, 401 SdHoareTripleChecker+Invalid, 451 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 421 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:29,382 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [186 Valid, 401 Invalid, 451 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 421 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2022-11-19 06:53:29,386 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 445 states. [2022-11-19 06:53:29,449 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 445 to 403. [2022-11-19 06:53:29,450 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 403 states, 266 states have (on average 1.1428571428571428) internal successors, (304), 280 states have internal predecessors, (304), 67 states have call successors, (67), 61 states have call predecessors, (67), 69 states have return successors, (85), 71 states have call predecessors, (85), 67 states have call successors, (85) [2022-11-19 06:53:29,454 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 403 states to 403 states and 456 transitions. [2022-11-19 06:53:29,454 INFO L78 Accepts]: Start accepts. Automaton has 403 states and 456 transitions. Word has length 43 [2022-11-19 06:53:29,454 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:29,455 INFO L495 AbstractCegarLoop]: Abstraction has 403 states and 456 transitions. [2022-11-19 06:53:29,455 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 4.142857142857143) internal successors, (29), 8 states have internal predecessors, (29), 5 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (6), 4 states have call predecessors, (6), 5 states have call successors, (6) [2022-11-19 06:53:29,455 INFO L276 IsEmpty]: Start isEmpty. Operand 403 states and 456 transitions. [2022-11-19 06:53:29,458 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-11-19 06:53:29,458 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:29,459 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:29,459 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-19 06:53:29,459 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:29,460 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:29,460 INFO L85 PathProgramCache]: Analyzing trace with hash -959022314, now seen corresponding path program 1 times [2022-11-19 06:53:29,460 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:29,460 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [380156449] [2022-11-19 06:53:29,462 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:29,464 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:29,493 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:29,916 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-19 06:53:29,916 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:29,916 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [380156449] [2022-11-19 06:53:29,916 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [380156449] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-19 06:53:29,917 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1164380184] [2022-11-19 06:53:29,917 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:29,917 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-19 06:53:29,917 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 [2022-11-19 06:53:29,925 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-19 06:53:29,957 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-19 06:53:30,030 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:30,046 INFO L263 TraceCheckSpWp]: Trace formula consists of 229 conjuncts, 33 conjunts are in the unsatisfiable core [2022-11-19 06:53:30,051 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-19 06:53:30,536 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 06:53:30,536 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-19 06:53:31,281 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-19 06:53:31,282 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1164380184] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-19 06:53:31,282 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1914847315] [2022-11-19 06:53:31,302 INFO L159 IcfgInterpreter]: Started Sifa with 45 locations of interest [2022-11-19 06:53:31,302 INFO L166 IcfgInterpreter]: Building call graph [2022-11-19 06:53:31,306 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-19 06:53:31,312 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-19 06:53:31,312 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-19 06:53:32,699 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 114 for LOIs [2022-11-19 06:53:32,718 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 136 for LOIs [2022-11-19 06:53:33,280 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__methaneQuery with input of size 131 for LOIs [2022-11-19 06:53:33,708 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 131 for LOIs [2022-11-19 06:53:34,341 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneAlarm with input of size 132 for LOIs [2022-11-19 06:53:34,672 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 44 for LOIs [2022-11-19 06:53:34,679 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 112 for LOIs [2022-11-19 06:53:34,690 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-19 06:53:49,276 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '5050#(and (= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| ~methaneLevelCritical~0) (<= ~methaneLevelCritical~0 1) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~8#1|) (<= ~pumpRunning~0 1) (= ~head~0.offset 0) (<= 2 ~waterLevel~0) (= 1 ~systemActive~0) (= |old(~pumpRunning~0)| 0) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~8#1|) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification1_spec__1_~tmp___0~0#1|) (<= 2 |old(~waterLevel~0)|) (<= 0 ~methaneLevelCritical~0) (<= 0 ~pumpRunning~0) (= ~head~0.base 0) (= |#NULL.offset| 0) (not (= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 0)) (not (= |timeShift___utac_acc__Specification1_spec__1_~tmp___0~0#1| 0)) (<= 0 |#StackHeapBarrier|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-19 06:53:49,276 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-19 06:53:49,276 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-19 06:53:49,277 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16, 12, 12] total 32 [2022-11-19 06:53:49,277 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [591330187] [2022-11-19 06:53:49,277 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-19 06:53:49,278 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2022-11-19 06:53:49,278 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:49,278 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2022-11-19 06:53:49,280 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=432, Invalid=3350, Unknown=0, NotChecked=0, Total=3782 [2022-11-19 06:53:49,280 INFO L87 Difference]: Start difference. First operand 403 states and 456 transitions. Second operand has 32 states, 22 states have (on average 3.1363636363636362) internal successors, (69), 23 states have internal predecessors, (69), 8 states have call successors, (18), 6 states have call predecessors, (18), 13 states have return successors, (19), 15 states have call predecessors, (19), 7 states have call successors, (19) [2022-11-19 06:53:57,646 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:57,647 INFO L93 Difference]: Finished difference Result 1392 states and 1773 transitions. [2022-11-19 06:53:57,648 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 113 states. [2022-11-19 06:53:57,648 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 22 states have (on average 3.1363636363636362) internal successors, (69), 23 states have internal predecessors, (69), 8 states have call successors, (18), 6 states have call predecessors, (18), 13 states have return successors, (19), 15 states have call predecessors, (19), 7 states have call successors, (19) Word has length 46 [2022-11-19 06:53:57,648 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:57,654 INFO L225 Difference]: With dead ends: 1392 [2022-11-19 06:53:57,654 INFO L226 Difference]: Without dead ends: 1024 [2022-11-19 06:53:57,663 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 280 GetRequests, 106 SyntacticMatches, 7 SemanticMatches, 167 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10818 ImplicationChecksByTransitivity, 19.6s TimeCoverageRelationStatistics Valid=2603, Invalid=25789, Unknown=0, NotChecked=0, Total=28392 [2022-11-19 06:53:57,664 INFO L413 NwaCegarLoop]: 45 mSDtfsCounter, 1651 mSDsluCounter, 421 mSDsCounter, 0 mSdLazyCounter, 5025 mSolverCounterSat, 1323 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1656 SdHoareTripleChecker+Valid, 466 SdHoareTripleChecker+Invalid, 6348 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1323 IncrementalHoareTripleChecker+Valid, 5025 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.6s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:57,665 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1656 Valid, 466 Invalid, 6348 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1323 Valid, 5025 Invalid, 0 Unknown, 0 Unchecked, 3.6s Time] [2022-11-19 06:53:57,666 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1024 states. [2022-11-19 06:53:57,758 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1024 to 782. [2022-11-19 06:53:57,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 782 states, 511 states have (on average 1.1389432485322897) internal successors, (582), 541 states have internal predecessors, (582), 133 states have call successors, (133), 120 states have call predecessors, (133), 137 states have return successors, (176), 138 states have call predecessors, (176), 133 states have call successors, (176) [2022-11-19 06:53:57,765 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 782 states to 782 states and 891 transitions. [2022-11-19 06:53:57,767 INFO L78 Accepts]: Start accepts. Automaton has 782 states and 891 transitions. Word has length 46 [2022-11-19 06:53:57,768 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:57,768 INFO L495 AbstractCegarLoop]: Abstraction has 782 states and 891 transitions. [2022-11-19 06:53:57,769 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 22 states have (on average 3.1363636363636362) internal successors, (69), 23 states have internal predecessors, (69), 8 states have call successors, (18), 6 states have call predecessors, (18), 13 states have return successors, (19), 15 states have call predecessors, (19), 7 states have call successors, (19) [2022-11-19 06:53:57,769 INFO L276 IsEmpty]: Start isEmpty. Operand 782 states and 891 transitions. [2022-11-19 06:53:57,773 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 89 [2022-11-19 06:53:57,774 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 06:53:57,774 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:53:57,781 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-11-19 06:53:57,980 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-19 06:53:57,980 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 06:53:57,981 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 06:53:57,981 INFO L85 PathProgramCache]: Analyzing trace with hash 1132846833, now seen corresponding path program 1 times [2022-11-19 06:53:57,981 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 06:53:57,981 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [953450715] [2022-11-19 06:53:57,981 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 06:53:57,982 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 06:53:58,005 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 06:53:58,216 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2022-11-19 06:53:58,216 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 06:53:58,216 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [953450715] [2022-11-19 06:53:58,217 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [953450715] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 06:53:58,217 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 06:53:58,217 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2022-11-19 06:53:58,217 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [593681607] [2022-11-19 06:53:58,217 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 06:53:58,218 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2022-11-19 06:53:58,218 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 06:53:58,218 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2022-11-19 06:53:58,218 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2022-11-19 06:53:58,218 INFO L87 Difference]: Start difference. First operand 782 states and 891 transitions. Second operand has 10 states, 8 states have (on average 5.75) internal successors, (46), 7 states have internal predecessors, (46), 2 states have call successors, (13), 1 states have call predecessors, (13), 3 states have return successors, (14), 5 states have call predecessors, (14), 2 states have call successors, (14) [2022-11-19 06:53:58,664 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 06:53:58,664 INFO L93 Difference]: Finished difference Result 1740 states and 2045 transitions. [2022-11-19 06:53:58,665 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2022-11-19 06:53:58,665 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 8 states have (on average 5.75) internal successors, (46), 7 states have internal predecessors, (46), 2 states have call successors, (13), 1 states have call predecessors, (13), 3 states have return successors, (14), 5 states have call predecessors, (14), 2 states have call successors, (14) Word has length 88 [2022-11-19 06:53:58,665 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 06:53:58,666 INFO L225 Difference]: With dead ends: 1740 [2022-11-19 06:53:58,666 INFO L226 Difference]: Without dead ends: 0 [2022-11-19 06:53:58,670 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 41 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=64, Invalid=316, Unknown=0, NotChecked=0, Total=380 [2022-11-19 06:53:58,671 INFO L413 NwaCegarLoop]: 73 mSDtfsCounter, 72 mSDsluCounter, 362 mSDsCounter, 0 mSdLazyCounter, 421 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 79 SdHoareTripleChecker+Valid, 435 SdHoareTripleChecker+Invalid, 429 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 421 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-19 06:53:58,671 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [79 Valid, 435 Invalid, 429 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 421 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-11-19 06:53:58,671 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-19 06:53:58,671 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-19 06:53:58,672 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-19 06:53:58,672 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-19 06:53:58,672 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 88 [2022-11-19 06:53:58,672 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 06:53:58,672 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-19 06:53:58,673 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 8 states have (on average 5.75) internal successors, (46), 7 states have internal predecessors, (46), 2 states have call successors, (13), 1 states have call predecessors, (13), 3 states have return successors, (14), 5 states have call predecessors, (14), 2 states have call successors, (14) [2022-11-19 06:53:58,673 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-19 06:53:58,673 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-19 06:53:58,675 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-19 06:53:58,676 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-11-19 06:53:58,678 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-19 06:54:05,973 INFO L895 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 473 480) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= 1 ~systemActive~0)) (= |old(~pumpRunning~0)| 0)) [2022-11-19 06:54:05,974 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 473 480) no Hoare annotation was computed. [2022-11-19 06:54:05,974 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 363 369) no Hoare annotation was computed. [2022-11-19 06:54:05,974 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 363 369) the Hoare annotation is: true [2022-11-19 06:54:05,975 INFO L895 garLoopResultBuilder]: At program point L411(line 411) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-11-19 06:54:05,975 INFO L895 garLoopResultBuilder]: At program point L407(line 407) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-11-19 06:54:05,975 INFO L899 garLoopResultBuilder]: For program point L405(lines 405 413) no Hoare annotation was computed. [2022-11-19 06:54:05,975 INFO L895 garLoopResultBuilder]: At program point L401(lines 401 418) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0))) [2022-11-19 06:54:05,975 INFO L895 garLoopResultBuilder]: At program point L416(line 416) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))) (or (not .cse1) (= ~pumpRunning~0 0) .cse0))) [2022-11-19 06:54:05,976 INFO L899 garLoopResultBuilder]: For program point L416-1(lines 397 421) no Hoare annotation was computed. [2022-11-19 06:54:05,976 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryENTRY(lines 397 421) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0))) [2022-11-19 06:54:05,976 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 397 421) no Hoare annotation was computed. [2022-11-19 06:54:05,976 INFO L895 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 122 133) the Hoare annotation is: (or (not (= 1 ~systemActive~0)) (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0)) [2022-11-19 06:54:05,976 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 122 133) no Hoare annotation was computed. [2022-11-19 06:54:05,977 INFO L899 garLoopResultBuilder]: For program point L221(lines 221 227) no Hoare annotation was computed. [2022-11-19 06:54:05,977 INFO L895 garLoopResultBuilder]: At program point L217(lines 217 230) the Hoare annotation is: (let ((.cse0 (= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 0)) (.cse9 (= |old(~pumpRunning~0)| 0))) (let ((.cse3 (not .cse9)) (.cse8 (= ~waterLevel~0 1)) (.cse5 (= ~pumpRunning~0 0)) (.cse7 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= |timeShift_processEnvironment_~tmp~4#1| ~methaneLevelCritical~0)) (.cse1 (not (= 1 ~systemActive~0))) (.cse4 (not .cse0))) (and (or .cse0 .cse1 (not .cse2)) (or .cse3 .cse2 .cse1 .cse4) (or (and .cse5 .cse6) .cse7 .cse1 (and (not .cse8) .cse2 (= ~pumpRunning~0 1))) (or .cse3 (not (= |old(~waterLevel~0)| 1)) .cse1 .cse8) (or .cse5 .cse1 .cse9 (and .cse7 .cse2 .cse6)) (or .cse1 (not (= ~methaneLevelCritical~0 ~systemActive~0)) .cse4)))) [2022-11-19 06:54:05,977 INFO L895 garLoopResultBuilder]: At program point L217-1(lines 209 233) the Hoare annotation is: (let ((.cse10 (= |old(~pumpRunning~0)| 0))) (let ((.cse4 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse8 (not .cse10)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse11 (= |timeShift_processEnvironment_~tmp~4#1| ~methaneLevelCritical~0)) (.cse9 (= 1 ~systemActive~0)) (.cse6 (= |timeShift___utac_acc__Specification1_spec__1_~tmp~0#1| 0))) (let ((.cse1 (and (<= |timeShift___utac_acc__Specification1_spec__1_~tmp___0~0#1| 0) (< 0 (+ |timeShift___utac_acc__Specification1_spec__1_~tmp___0~0#1| 1)) (not .cse6))) (.cse7 (= ~waterLevel~0 1)) (.cse0 (not .cse9)) (.cse3 (and .cse4 .cse8 .cse6 .cse2 .cse9 .cse11)) (.cse5 (= ~pumpRunning~0 0))) (and (or .cse0 (not (= ~methaneLevelCritical~0 ~systemActive~0)) .cse1) (or .cse0 (not .cse2) .cse3 (and .cse4 .cse5 .cse6) (and (not .cse7) .cse6) (and .cse8 .cse5 .cse6 .cse9)) (or .cse8 .cse2 .cse0 .cse1) (or .cse0 (and .cse8 .cse5 .cse9) .cse10 (and .cse4 .cse8 .cse9)) (or .cse8 (not (= |old(~waterLevel~0)| 1)) .cse0 .cse7) (or .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse11) (or .cse0 (and .cse2 (= ~pumpRunning~0 1)) (and .cse8 .cse5 .cse9 .cse11) .cse3 (and .cse4 .cse5)))))) [2022-11-19 06:54:05,978 INFO L899 garLoopResultBuilder]: For program point L350-1(lines 350 356) no Hoare annotation was computed. [2022-11-19 06:54:05,978 INFO L895 garLoopResultBuilder]: At program point L437(line 437) the Hoare annotation is: (or (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= |old(~pumpRunning~0)| 0)) (= ~methaneLevelCritical~0 0) (= |timeShift_processEnvironment_~tmp~4#1| ~methaneLevelCritical~0))) [2022-11-19 06:54:05,978 INFO L895 garLoopResultBuilder]: At program point L433(line 433) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (and (not (= ~methaneLevelCritical~0 0)) (or (not (<= |old(~pumpRunning~0)| 0)) (not (< 0 (+ |old(~pumpRunning~0)| 1)))))) (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_processEnvironment_~tmp~4#1| ~methaneLevelCritical~0))))) [2022-11-19 06:54:05,978 INFO L895 garLoopResultBuilder]: At program point L429(line 429) the Hoare annotation is: (or (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= |old(~pumpRunning~0)| 0)))) [2022-11-19 06:54:05,979 INFO L899 garLoopResultBuilder]: For program point L429-1(line 429) no Hoare annotation was computed. [2022-11-19 06:54:05,979 INFO L895 garLoopResultBuilder]: At program point L442(line 442) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 0) .cse0) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~waterLevel~0 1)) .cse0 (and (not (= |old(~waterLevel~0)| 1)) (= |old(~pumpRunning~0)| 0))))) [2022-11-19 06:54:05,979 INFO L895 garLoopResultBuilder]: At program point L442-1(lines 423 447) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse3 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse8 (not .cse7)) (.cse4 (= ~pumpRunning~0 0)) (.cse10 (= |timeShift_processEnvironment_~tmp~4#1| ~methaneLevelCritical~0)) (.cse9 (= 1 ~systemActive~0))) (let ((.cse0 (not .cse9)) (.cse1 (and .cse8 .cse4 .cse9 .cse10)) (.cse2 (and .cse3 .cse8 .cse6 .cse9 .cse10)) (.cse5 (= ~waterLevel~0 1))) (and (or .cse0 .cse1 .cse2 (and .cse3 .cse4) (and (not .cse5) .cse6 (= ~pumpRunning~0 1))) (or .cse0 .cse1 .cse2 .cse5 (and (not (= |old(~waterLevel~0)| 1)) .cse7)))))) [2022-11-19 06:54:05,979 INFO L895 garLoopResultBuilder]: At program point L215(line 215) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse3 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse8 (not .cse7)) (.cse4 (= ~pumpRunning~0 0)) (.cse10 (= |timeShift_processEnvironment_~tmp~4#1| ~methaneLevelCritical~0)) (.cse9 (= 1 ~systemActive~0))) (let ((.cse0 (not .cse9)) (.cse1 (and .cse8 .cse4 .cse9 .cse10)) (.cse2 (and .cse3 .cse8 .cse6 .cse9 .cse10)) (.cse5 (= ~waterLevel~0 1))) (and (or .cse0 .cse1 .cse2 (and .cse3 .cse4) (and (not .cse5) .cse6 (= ~pumpRunning~0 1))) (or .cse0 .cse1 .cse2 .cse5 (and (not (= |old(~waterLevel~0)| 1)) .cse7)))))) [2022-11-19 06:54:05,980 INFO L899 garLoopResultBuilder]: For program point L343-1(lines 342 361) no Hoare annotation was computed. [2022-11-19 06:54:05,980 INFO L899 garLoopResultBuilder]: For program point L215-1(line 215) no Hoare annotation was computed. [2022-11-19 06:54:05,980 INFO L895 garLoopResultBuilder]: At program point L203(line 203) the Hoare annotation is: (not (= 1 ~systemActive~0)) [2022-11-19 06:54:05,980 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 339 362) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0 (= ~waterLevel~0 1)))) [2022-11-19 06:54:05,980 INFO L899 garLoopResultBuilder]: For program point L431(lines 431 439) no Hoare annotation was computed. [2022-11-19 06:54:05,981 INFO L899 garLoopResultBuilder]: For program point L427(lines 427 444) no Hoare annotation was computed. [2022-11-19 06:54:05,981 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 339 362) no Hoare annotation was computed. [2022-11-19 06:54:05,981 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 203) no Hoare annotation was computed. [2022-11-19 06:54:05,981 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 237 266) no Hoare annotation was computed. [2022-11-19 06:54:05,981 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 237 266) the Hoare annotation is: true [2022-11-19 06:54:05,982 INFO L899 garLoopResultBuilder]: For program point L251(lines 251 255) no Hoare annotation was computed. [2022-11-19 06:54:05,982 INFO L902 garLoopResultBuilder]: At program point L251-1(lines 251 255) the Hoare annotation is: true [2022-11-19 06:54:05,982 INFO L902 garLoopResultBuilder]: At program point L247-2(lines 247 261) the Hoare annotation is: true [2022-11-19 06:54:05,982 INFO L902 garLoopResultBuilder]: At program point L243(line 243) the Hoare annotation is: true [2022-11-19 06:54:05,982 INFO L899 garLoopResultBuilder]: For program point L243-1(line 243) no Hoare annotation was computed. [2022-11-19 06:54:05,982 INFO L902 garLoopResultBuilder]: At program point L262(lines 237 266) the Hoare annotation is: true [2022-11-19 06:54:05,983 INFO L899 garLoopResultBuilder]: For program point L258(line 258) no Hoare annotation was computed. [2022-11-19 06:54:05,983 INFO L902 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 134 142) the Hoare annotation is: true [2022-11-19 06:54:05,983 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 134 142) no Hoare annotation was computed. [2022-11-19 06:54:05,983 INFO L895 garLoopResultBuilder]: At program point L320(lines 320 327) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-11-19 06:54:05,983 INFO L902 garLoopResultBuilder]: At program point L320-2(lines 320 327) the Hoare annotation is: true [2022-11-19 06:54:05,984 INFO L895 garLoopResultBuilder]: At program point L622-2(lines 616 627) the Hoare annotation is: (and (= 1 ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-11-19 06:54:05,984 INFO L899 garLoopResultBuilder]: For program point L606(lines 606 612) no Hoare annotation was computed. [2022-11-19 06:54:05,984 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-11-19 06:54:05,984 INFO L899 garLoopResultBuilder]: For program point L606-1(lines 606 612) no Hoare annotation was computed. [2022-11-19 06:54:05,984 INFO L902 garLoopResultBuilder]: At program point L635(lines 576 639) the Hoare annotation is: true [2022-11-19 06:54:05,984 INFO L895 garLoopResultBuilder]: At program point L598(line 598) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1) (and (= ~methaneLevelCritical~0 0) .cse0 .cse1))) [2022-11-19 06:54:05,985 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-19 06:54:05,985 INFO L895 garLoopResultBuilder]: At program point L632(lines 585 633) the Hoare annotation is: false [2022-11-19 06:54:05,985 INFO L899 garLoopResultBuilder]: For program point L587(lines 586 631) no Hoare annotation was computed. [2022-11-19 06:54:05,985 INFO L895 garLoopResultBuilder]: At program point L608(line 608) the Hoare annotation is: (and (= 1 ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-11-19 06:54:05,985 INFO L895 garLoopResultBuilder]: At program point L629(lines 586 631) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1) (and (= ~methaneLevelCritical~0 0) .cse0 .cse1))) [2022-11-19 06:54:05,986 INFO L899 garLoopResultBuilder]: For program point L596(lines 596 602) no Hoare annotation was computed. [2022-11-19 06:54:05,986 INFO L899 garLoopResultBuilder]: For program point L596-1(lines 596 602) no Hoare annotation was computed. [2022-11-19 06:54:05,986 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 371 395) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0))) [2022-11-19 06:54:05,986 INFO L895 garLoopResultBuilder]: At program point L461(line 461) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))) (or (not .cse1) .cse0 (and (not (= ~waterLevel~0 1)) (= ~pumpRunning~0 0))))) [2022-11-19 06:54:05,986 INFO L895 garLoopResultBuilder]: At program point L461-1(line 461) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))) (or (not .cse1) .cse0 (and (not (= ~waterLevel~0 1)) (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_activatePump_#t~ret16#1|))))) [2022-11-19 06:54:05,987 INFO L895 garLoopResultBuilder]: At program point L385(line 385) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))) (or (not .cse1) .cse0 (and (= ~pumpRunning~0 0) (or (not (= ~waterLevel~0 1)) (= |processEnvironment__wrappee__highWaterSensor_~tmp~2#1| 0)))))) [2022-11-19 06:54:05,987 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 371 395) no Hoare annotation was computed. [2022-11-19 06:54:05,987 INFO L899 garLoopResultBuilder]: For program point L379(lines 379 387) no Hoare annotation was computed. [2022-11-19 06:54:05,987 INFO L895 garLoopResultBuilder]: At program point L375(lines 375 392) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0))) [2022-11-19 06:54:05,988 INFO L895 garLoopResultBuilder]: At program point L390(line 390) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-11-19 06:54:05,988 INFO L899 garLoopResultBuilder]: For program point L390-1(lines 371 395) no Hoare annotation was computed. [2022-11-19 06:54:05,988 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 110 121) no Hoare annotation was computed. [2022-11-19 06:54:05,988 INFO L902 garLoopResultBuilder]: At program point waterRiseENTRY(lines 110 121) the Hoare annotation is: true [2022-11-19 06:54:05,988 INFO L902 garLoopResultBuilder]: At program point isMethaneAlarmENTRY(lines 481 491) the Hoare annotation is: true [2022-11-19 06:54:05,989 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 481 491) no Hoare annotation was computed. [2022-11-19 06:54:05,989 INFO L902 garLoopResultBuilder]: At program point L486(line 486) the Hoare annotation is: true [2022-11-19 06:54:05,989 INFO L899 garLoopResultBuilder]: For program point L486-1(line 486) no Hoare annotation was computed. [2022-11-19 06:54:05,992 INFO L444 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 06:54:05,995 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-19 06:54:06,019 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 19.11 06:54:06 BoogieIcfgContainer [2022-11-19 06:54:06,019 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-19 06:54:06,020 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-19 06:54:06,020 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-19 06:54:06,020 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-19 06:54:06,021 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 06:53:26" (3/4) ... [2022-11-19 06:54:06,024 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-19 06:54:06,029 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-11-19 06:54:06,029 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-19 06:54:06,030 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-19 06:54:06,030 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-19 06:54:06,030 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-19 06:54:06,030 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-11-19 06:54:06,031 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2022-11-19 06:54:06,031 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-19 06:54:06,031 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2022-11-19 06:54:06,031 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2022-11-19 06:54:06,055 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 53 nodes and edges [2022-11-19 06:54:06,056 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2022-11-19 06:54:06,057 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 6 nodes and edges [2022-11-19 06:54:06,057 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-19 06:54:06,058 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-19 06:54:06,081 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (pumpRunning == \old(pumpRunning) || !(1 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) [2022-11-19 06:54:06,082 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(1 == systemActive) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || ((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) || ((!(waterLevel == 1) && methaneLevelCritical == 0) && pumpRunning == 1)) && ((((!(1 == systemActive) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || ((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || waterLevel == 1) || (!(\old(waterLevel) == 1) && \old(pumpRunning) == 0)) [2022-11-19 06:54:06,083 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == \old(pumpRunning) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) [2022-11-19 06:54:06,083 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 0 || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && (((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || !(1 == systemActive)) || !(tmp == 0))) && ((((pumpRunning == 0 && tmp == methaneLevelCritical) || pumpRunning == \old(pumpRunning)) || !(1 == systemActive)) || ((!(waterLevel == 1) && methaneLevelCritical == 0) && pumpRunning == 1))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1)) && (((pumpRunning == 0 || !(1 == systemActive)) || \old(pumpRunning) == 0) || ((pumpRunning == \old(pumpRunning) && methaneLevelCritical == 0) && tmp == methaneLevelCritical))) && ((!(1 == systemActive) || !(methaneLevelCritical == systemActive)) || !(tmp == 0)) [2022-11-19 06:54:06,083 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == \old(pumpRunning) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) [2022-11-19 06:54:06,084 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(1 == systemActive) || !(methaneLevelCritical == systemActive)) || ((tmp___0 <= 0 && 0 < tmp___0 + 1) && !(tmp == 0))) && (((((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && tmp == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && tmp == 0)) || (!(waterLevel == 1) && tmp == 0)) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && tmp == 0) && 1 == systemActive))) && (((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || !(1 == systemActive)) || ((tmp___0 <= 0 && 0 < tmp___0 + 1) && !(tmp == 0)))) && (((!(1 == systemActive) || ((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive)) || \old(pumpRunning) == 0) || ((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && 1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || tmp == methaneLevelCritical)) && ((((!(1 == systemActive) || (methaneLevelCritical == 0 && pumpRunning == 1)) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || (((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && tmp == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) [2022-11-19 06:54:06,084 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || \old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((!(waterLevel == 1) && pumpRunning == 0) && methaneLevelCritical == aux-isMethaneAlarm()-aux)) [2022-11-19 06:54:06,110 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/witness.graphml [2022-11-19 06:54:06,110 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-19 06:54:06,111 INFO L158 Benchmark]: Toolchain (without parser) took 41344.96ms. Allocated memory was 90.2MB in the beginning and 358.6MB in the end (delta: 268.4MB). Free memory was 55.3MB in the beginning and 156.7MB in the end (delta: -101.4MB). Peak memory consumption was 165.4MB. Max. memory is 16.1GB. [2022-11-19 06:54:06,111 INFO L158 Benchmark]: CDTParser took 0.22ms. Allocated memory is still 90.2MB. Free memory was 59.0MB in the beginning and 59.0MB in the end (delta: 27.2kB). There was no memory consumed. Max. memory is 16.1GB. [2022-11-19 06:54:06,111 INFO L158 Benchmark]: CACSL2BoogieTranslator took 602.28ms. Allocated memory was 90.2MB in the beginning and 109.1MB in the end (delta: 18.9MB). Free memory was 55.1MB in the beginning and 78.3MB in the end (delta: -23.2MB). Peak memory consumption was 7.8MB. Max. memory is 16.1GB. [2022-11-19 06:54:06,112 INFO L158 Benchmark]: Boogie Procedure Inliner took 51.94ms. Allocated memory is still 109.1MB. Free memory was 78.3MB in the beginning and 75.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-19 06:54:06,112 INFO L158 Benchmark]: Boogie Preprocessor took 50.38ms. Allocated memory is still 109.1MB. Free memory was 75.9MB in the beginning and 74.1MB in the end (delta: 1.8MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-19 06:54:06,112 INFO L158 Benchmark]: RCFGBuilder took 708.33ms. Allocated memory is still 109.1MB. Free memory was 74.1MB in the beginning and 76.5MB in the end (delta: -2.3MB). Peak memory consumption was 21.5MB. Max. memory is 16.1GB. [2022-11-19 06:54:06,113 INFO L158 Benchmark]: TraceAbstraction took 39832.37ms. Allocated memory was 109.1MB in the beginning and 358.6MB in the end (delta: 249.6MB). Free memory was 75.6MB in the beginning and 163.0MB in the end (delta: -87.4MB). Peak memory consumption was 209.8MB. Max. memory is 16.1GB. [2022-11-19 06:54:06,113 INFO L158 Benchmark]: Witness Printer took 90.48ms. Allocated memory is still 358.6MB. Free memory was 163.0MB in the beginning and 156.7MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-11-19 06:54:06,115 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.22ms. Allocated memory is still 90.2MB. Free memory was 59.0MB in the beginning and 59.0MB in the end (delta: 27.2kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 602.28ms. Allocated memory was 90.2MB in the beginning and 109.1MB in the end (delta: 18.9MB). Free memory was 55.1MB in the beginning and 78.3MB in the end (delta: -23.2MB). Peak memory consumption was 7.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 51.94ms. Allocated memory is still 109.1MB. Free memory was 78.3MB in the beginning and 75.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 50.38ms. Allocated memory is still 109.1MB. Free memory was 75.9MB in the beginning and 74.1MB in the end (delta: 1.8MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 708.33ms. Allocated memory is still 109.1MB. Free memory was 74.1MB in the beginning and 76.5MB in the end (delta: -2.3MB). Peak memory consumption was 21.5MB. Max. memory is 16.1GB. * TraceAbstraction took 39832.37ms. Allocated memory was 109.1MB in the beginning and 358.6MB in the end (delta: 249.6MB). Free memory was 75.6MB in the beginning and 163.0MB in the end (delta: -87.4MB). Peak memory consumption was 209.8MB. Max. memory is 16.1GB. * Witness Printer took 90.48ms. Allocated memory is still 358.6MB. Free memory was 163.0MB in the beginning and 156.7MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 203]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 74 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 39.7s, OverallIterations: 9, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 10.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 7.3s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2282 SdHoareTripleChecker+Valid, 4.8s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2253 mSDsluCounter, 2207 SdHoareTripleChecker+Invalid, 4.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1584 mSDsCounter, 1476 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 6358 IncrementalHoareTripleChecker+Invalid, 7834 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1476 mSolverCounterUnsat, 623 mSDtfsCounter, 6358 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 354 GetRequests, 132 SyntacticMatches, 7 SemanticMatches, 215 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10880 ImplicationChecksByTransitivity, 19.9s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=782occurred in iteration=8, InterpolantAutomatonStates: 174, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 9 MinimizatonAttempts, 312 StatesRemovedByMinimization, 5 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 42 LocationsWithAnnotation, 1612 PreInvPairs, 1952 NumberOfFragments, 1043 HoareAnnotationTreeSize, 1612 FomulaSimplifications, 3802 FormulaSimplificationTreeSizeReduction, 1.2s HoareSimplificationTime, 42 FomulaSimplificationsInter, 43257 FormulaSimplificationTreeSizeReductionInter, 5.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 2.8s InterpolantComputationTime, 378 NumberOfCodeBlocks, 378 NumberOfCodeBlocksAsserted, 10 NumberOfCheckSat, 413 ConstructedInterpolants, 0 QuantifiedInterpolants, 1201 SizeOfPredicates, 11 NumberOfNonLiveVariables, 229 ConjunctsInSsa, 33 ConjunctsInUnsatCore, 11 InterpolantComputations, 8 PerfectInterpolantSequences, 43/47 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: !(1 == systemActive) - InvariantResult [Line: 217]: Loop Invariant Derived loop invariant: ((((((tmp == 0 || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && (((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || !(1 == systemActive)) || !(tmp == 0))) && ((((pumpRunning == 0 && tmp == methaneLevelCritical) || pumpRunning == \old(pumpRunning)) || !(1 == systemActive)) || ((!(waterLevel == 1) && methaneLevelCritical == 0) && pumpRunning == 1))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1)) && (((pumpRunning == 0 || !(1 == systemActive)) || \old(pumpRunning) == 0) || ((pumpRunning == \old(pumpRunning) && methaneLevelCritical == 0) && tmp == methaneLevelCritical))) && ((!(1 == systemActive) || !(methaneLevelCritical == systemActive)) || !(tmp == 0)) - InvariantResult [Line: 339]: Loop Invariant Derived loop invariant: (pumpRunning == \old(pumpRunning) || !(1 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1) - InvariantResult [Line: 576]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 209]: Loop Invariant Derived loop invariant: (((((((!(1 == systemActive) || !(methaneLevelCritical == systemActive)) || ((tmp___0 <= 0 && 0 < tmp___0 + 1) && !(tmp == 0))) && (((((!(1 == systemActive) || !(methaneLevelCritical == 0)) || (((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && tmp == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || ((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && tmp == 0)) || (!(waterLevel == 1) && tmp == 0)) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && tmp == 0) && 1 == systemActive))) && (((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || !(1 == systemActive)) || ((tmp___0 <= 0 && 0 < tmp___0 + 1) && !(tmp == 0)))) && (((!(1 == systemActive) || ((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive)) || \old(pumpRunning) == 0) || ((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && 1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || waterLevel == 1)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || tmp == methaneLevelCritical)) && ((((!(1 == systemActive) || (methaneLevelCritical == 0 && pumpRunning == 1)) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || (((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && tmp == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) - InvariantResult [Line: 247]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 237]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 401]: Loop Invariant Derived loop invariant: ((pumpRunning == \old(pumpRunning) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) - InvariantResult [Line: 585]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 320]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 423]: Loop Invariant Derived loop invariant: ((((!(1 == systemActive) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || ((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && pumpRunning == 0)) || ((!(waterLevel == 1) && methaneLevelCritical == 0) && pumpRunning == 1)) && ((((!(1 == systemActive) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || ((((pumpRunning == \old(pumpRunning) && !(\old(pumpRunning) == 0)) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == methaneLevelCritical)) || waterLevel == 1) || (!(\old(waterLevel) == 1) && \old(pumpRunning) == 0)) - InvariantResult [Line: 375]: Loop Invariant Derived loop invariant: ((pumpRunning == \old(pumpRunning) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) - InvariantResult [Line: 586]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && 1 == systemActive) && splverifierCounter == 0) || ((methaneLevelCritical == 0 && 1 == systemActive) && splverifierCounter == 0) - InvariantResult [Line: 461]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || \old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((!(waterLevel == 1) && pumpRunning == 0) && methaneLevelCritical == aux-isMethaneAlarm()-aux)) - InvariantResult [Line: 320]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 RESULT: Ultimate proved your program to be correct! [2022-11-19 06:54:06,146 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b2c6235d-b445-4865-85d1-50d6bfdf2aa9/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE