./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 8393723b Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 53b1b58c0a8af862b137647fd316df606e2053e614741221b62b3a107765e608 --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-8393723 [2022-11-19 07:14:10,670 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-19 07:14:10,674 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-19 07:14:10,709 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-19 07:14:10,712 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-19 07:14:10,716 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-19 07:14:10,719 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-19 07:14:10,723 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-19 07:14:10,726 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-19 07:14:10,732 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-19 07:14:10,734 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-19 07:14:10,736 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-19 07:14:10,736 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-19 07:14:10,739 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-19 07:14:10,741 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-19 07:14:10,747 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-19 07:14:10,750 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-19 07:14:10,751 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-19 07:14:10,752 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-19 07:14:10,757 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-19 07:14:10,764 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-19 07:14:10,766 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-19 07:14:10,767 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-19 07:14:10,770 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-19 07:14:10,773 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-19 07:14:10,778 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-19 07:14:10,779 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-19 07:14:10,780 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-19 07:14:10,781 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-19 07:14:10,782 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-19 07:14:10,783 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-19 07:14:10,783 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-19 07:14:10,785 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-19 07:14:10,786 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-19 07:14:10,789 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-19 07:14:10,789 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-19 07:14:10,790 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-19 07:14:10,790 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-19 07:14:10,791 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-19 07:14:10,792 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-19 07:14:10,792 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-19 07:14:10,793 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-11-19 07:14:10,834 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-19 07:14:10,834 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-19 07:14:10,835 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-19 07:14:10,835 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-19 07:14:10,836 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-19 07:14:10,836 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-19 07:14:10,836 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-19 07:14:10,837 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-19 07:14:10,837 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-19 07:14:10,837 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-19 07:14:10,838 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-19 07:14:10,839 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-19 07:14:10,839 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-19 07:14:10,839 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-19 07:14:10,839 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-19 07:14:10,839 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-19 07:14:10,840 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-19 07:14:10,840 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-19 07:14:10,841 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-19 07:14:10,841 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-19 07:14:10,841 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-19 07:14:10,841 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-19 07:14:10,842 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-19 07:14:10,842 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-19 07:14:10,842 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-19 07:14:10,842 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-19 07:14:10,842 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-19 07:14:10,843 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-19 07:14:10,843 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-19 07:14:10,843 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-19 07:14:10,843 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-19 07:14:10,844 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-19 07:14:10,844 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-19 07:14:10,844 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-19 07:14:10,845 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-19 07:14:10,845 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-19 07:14:10,845 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-19 07:14:10,845 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-19 07:14:10,846 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-19 07:14:10,846 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-19 07:14:10,846 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-19 07:14:10,846 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 53b1b58c0a8af862b137647fd316df606e2053e614741221b62b3a107765e608 [2022-11-19 07:14:11,221 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-19 07:14:11,261 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-19 07:14:11,264 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-19 07:14:11,266 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-19 07:14:11,267 INFO L275 PluginConnector]: CDTParser initialized [2022-11-19 07:14:11,268 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/../../sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c [2022-11-19 07:14:11,355 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/data/66d85f418/a83b20396aba4b89a6263ec46a1bdded/FLAGaa2a612ac [2022-11-19 07:14:12,071 INFO L306 CDTParser]: Found 1 translation units. [2022-11-19 07:14:12,072 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c [2022-11-19 07:14:12,085 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/data/66d85f418/a83b20396aba4b89a6263ec46a1bdded/FLAGaa2a612ac [2022-11-19 07:14:12,335 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/data/66d85f418/a83b20396aba4b89a6263ec46a1bdded [2022-11-19 07:14:12,341 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-19 07:14:12,345 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-19 07:14:12,351 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-19 07:14:12,351 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-19 07:14:12,356 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-19 07:14:12,357 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 07:14:12" (1/1) ... [2022-11-19 07:14:12,358 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@a4b91bf and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:12, skipping insertion in model container [2022-11-19 07:14:12,359 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 07:14:12" (1/1) ... [2022-11-19 07:14:12,369 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-19 07:14:12,454 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-19 07:14:12,811 WARN L234 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c[7381,7394] [2022-11-19 07:14:12,959 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-19 07:14:12,979 INFO L203 MainTranslator]: Completed pre-run [2022-11-19 07:14:13,046 WARN L234 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c[7381,7394] [2022-11-19 07:14:13,107 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-19 07:14:13,135 INFO L208 MainTranslator]: Completed translation [2022-11-19 07:14:13,135 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13 WrapperNode [2022-11-19 07:14:13,136 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-19 07:14:13,137 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-19 07:14:13,137 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-19 07:14:13,137 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-19 07:14:13,145 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,178 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,224 INFO L138 Inliner]: procedures = 57, calls = 105, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 224 [2022-11-19 07:14:13,224 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-19 07:14:13,226 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-19 07:14:13,226 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-19 07:14:13,226 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-19 07:14:13,239 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,239 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,254 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,255 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,259 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,265 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,283 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,284 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,287 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-19 07:14:13,287 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-19 07:14:13,288 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-19 07:14:13,288 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-19 07:14:13,302 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (1/1) ... [2022-11-19 07:14:13,309 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-19 07:14:13,322 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 [2022-11-19 07:14:13,344 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-19 07:14:13,369 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-19 07:14:13,413 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-19 07:14:13,413 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-19 07:14:13,413 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-19 07:14:13,413 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-11-19 07:14:13,414 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-11-19 07:14:13,414 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-19 07:14:13,414 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-19 07:14:13,414 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-19 07:14:13,414 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-19 07:14:13,415 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2022-11-19 07:14:13,415 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2022-11-19 07:14:13,415 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-19 07:14:13,415 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-19 07:14:13,415 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2022-11-19 07:14:13,416 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2022-11-19 07:14:13,416 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2022-11-19 07:14:13,416 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2022-11-19 07:14:13,416 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-11-19 07:14:13,417 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-11-19 07:14:13,417 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-19 07:14:13,417 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-19 07:14:13,417 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-19 07:14:13,417 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-19 07:14:13,418 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-19 07:14:13,578 INFO L235 CfgBuilder]: Building ICFG [2022-11-19 07:14:13,581 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-19 07:14:13,923 INFO L276 CfgBuilder]: Performing block encoding [2022-11-19 07:14:14,146 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-19 07:14:14,146 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-19 07:14:14,153 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 07:14:14 BoogieIcfgContainer [2022-11-19 07:14:14,153 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-19 07:14:14,155 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-19 07:14:14,156 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-19 07:14:14,161 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-19 07:14:14,161 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 19.11 07:14:12" (1/3) ... [2022-11-19 07:14:14,163 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@17b7e754 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 07:14:14, skipping insertion in model container [2022-11-19 07:14:14,163 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 07:14:13" (2/3) ... [2022-11-19 07:14:14,163 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@17b7e754 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 07:14:14, skipping insertion in model container [2022-11-19 07:14:14,164 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 07:14:14" (3/3) ... [2022-11-19 07:14:14,165 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product61.cil.c [2022-11-19 07:14:14,189 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-19 07:14:14,189 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-19 07:14:14,288 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-19 07:14:14,302 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@74c73b68, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-19 07:14:14,303 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-19 07:14:14,310 INFO L276 IsEmpty]: Start isEmpty. Operand has 75 states, 45 states have (on average 1.4) internal successors, (63), 55 states have internal predecessors, (63), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2022-11-19 07:14:14,324 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2022-11-19 07:14:14,324 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:14,325 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:14,326 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:14,335 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:14,336 INFO L85 PathProgramCache]: Analyzing trace with hash -1624241747, now seen corresponding path program 1 times [2022-11-19 07:14:14,348 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:14,350 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [913252070] [2022-11-19 07:14:14,350 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:14,351 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:14,500 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:14,627 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:14:14,628 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:14,628 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [913252070] [2022-11-19 07:14:14,629 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [913252070] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:14,629 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:14,630 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-19 07:14:14,632 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1839938749] [2022-11-19 07:14:14,633 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:14,639 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-19 07:14:14,641 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:14,687 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-19 07:14:14,688 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-19 07:14:14,691 INFO L87 Difference]: Start difference. First operand has 75 states, 45 states have (on average 1.4) internal successors, (63), 55 states have internal predecessors, (63), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:14:14,834 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:14,838 INFO L93 Difference]: Finished difference Result 148 states and 199 transitions. [2022-11-19 07:14:14,840 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-19 07:14:14,842 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2022-11-19 07:14:14,842 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:14,854 INFO L225 Difference]: With dead ends: 148 [2022-11-19 07:14:14,855 INFO L226 Difference]: Without dead ends: 70 [2022-11-19 07:14:14,859 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-19 07:14:14,864 INFO L413 NwaCegarLoop]: 77 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 19 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 77 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 19 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:14,865 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 77 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 19 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 07:14:14,886 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 70 states. [2022-11-19 07:14:14,924 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 70 to 70. [2022-11-19 07:14:14,929 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 70 states, 42 states have (on average 1.3095238095238095) internal successors, (55), 51 states have internal predecessors, (55), 18 states have call successors, (18), 10 states have call predecessors, (18), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2022-11-19 07:14:14,933 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 70 states to 70 states and 90 transitions. [2022-11-19 07:14:14,936 INFO L78 Accepts]: Start accepts. Automaton has 70 states and 90 transitions. Word has length 17 [2022-11-19 07:14:14,936 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:14,937 INFO L495 AbstractCegarLoop]: Abstraction has 70 states and 90 transitions. [2022-11-19 07:14:14,937 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:14:14,937 INFO L276 IsEmpty]: Start isEmpty. Operand 70 states and 90 transitions. [2022-11-19 07:14:14,940 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2022-11-19 07:14:14,940 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:14,941 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:14,941 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-19 07:14:14,941 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:14,942 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:14,942 INFO L85 PathProgramCache]: Analyzing trace with hash 267909294, now seen corresponding path program 1 times [2022-11-19 07:14:14,943 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:14,943 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2062060664] [2022-11-19 07:14:14,943 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:14,944 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:14,965 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:15,142 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:14:15,142 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:15,142 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2062060664] [2022-11-19 07:14:15,143 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2062060664] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:15,143 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:15,143 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-19 07:14:15,144 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [584699288] [2022-11-19 07:14:15,144 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:15,146 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-19 07:14:15,146 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:15,147 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-19 07:14:15,150 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 07:14:15,150 INFO L87 Difference]: Start difference. First operand 70 states and 90 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:14:15,264 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:15,266 INFO L93 Difference]: Finished difference Result 117 states and 151 transitions. [2022-11-19 07:14:15,267 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-19 07:14:15,273 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2022-11-19 07:14:15,274 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:15,275 INFO L225 Difference]: With dead ends: 117 [2022-11-19 07:14:15,276 INFO L226 Difference]: Without dead ends: 62 [2022-11-19 07:14:15,277 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-19 07:14:15,279 INFO L413 NwaCegarLoop]: 63 mSDtfsCounter, 7 mSDsluCounter, 54 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 117 SdHoareTripleChecker+Invalid, 29 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:15,279 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 117 Invalid, 29 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 07:14:15,280 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2022-11-19 07:14:15,288 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 62. [2022-11-19 07:14:15,289 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 37 states have (on average 1.3243243243243243) internal successors, (49), 46 states have internal predecessors, (49), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-19 07:14:15,291 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 79 transitions. [2022-11-19 07:14:15,292 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 79 transitions. Word has length 18 [2022-11-19 07:14:15,292 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:15,292 INFO L495 AbstractCegarLoop]: Abstraction has 62 states and 79 transitions. [2022-11-19 07:14:15,292 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:14:15,293 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 79 transitions. [2022-11-19 07:14:15,294 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2022-11-19 07:14:15,294 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:15,294 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:15,295 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-19 07:14:15,295 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:15,296 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:15,296 INFO L85 PathProgramCache]: Analyzing trace with hash 1242194500, now seen corresponding path program 1 times [2022-11-19 07:14:15,296 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:15,296 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1015870240] [2022-11-19 07:14:15,297 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:15,297 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:15,320 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:15,539 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:14:15,540 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:15,540 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1015870240] [2022-11-19 07:14:15,540 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1015870240] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:15,541 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:15,541 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-19 07:14:15,541 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [839617706] [2022-11-19 07:14:15,541 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:15,542 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-19 07:14:15,542 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:15,543 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-19 07:14:15,543 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-19 07:14:15,543 INFO L87 Difference]: Start difference. First operand 62 states and 79 transitions. Second operand has 4 states, 4 states have (on average 4.25) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:14:15,833 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:15,836 INFO L93 Difference]: Finished difference Result 122 states and 157 transitions. [2022-11-19 07:14:15,837 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-19 07:14:15,837 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.25) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2022-11-19 07:14:15,837 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:15,839 INFO L225 Difference]: With dead ends: 122 [2022-11-19 07:14:15,842 INFO L226 Difference]: Without dead ends: 62 [2022-11-19 07:14:15,843 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-19 07:14:15,846 INFO L413 NwaCegarLoop]: 58 mSDtfsCounter, 75 mSDsluCounter, 25 mSDsCounter, 0 mSdLazyCounter, 60 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 75 SdHoareTripleChecker+Valid, 83 SdHoareTripleChecker+Invalid, 66 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 60 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:15,848 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [75 Valid, 83 Invalid, 66 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 60 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-19 07:14:15,850 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2022-11-19 07:14:15,862 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 62. [2022-11-19 07:14:15,862 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 62 states, 37 states have (on average 1.2972972972972974) internal successors, (48), 46 states have internal predecessors, (48), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-19 07:14:15,870 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 62 states to 62 states and 78 transitions. [2022-11-19 07:14:15,871 INFO L78 Accepts]: Start accepts. Automaton has 62 states and 78 transitions. Word has length 20 [2022-11-19 07:14:15,871 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:15,872 INFO L495 AbstractCegarLoop]: Abstraction has 62 states and 78 transitions. [2022-11-19 07:14:15,872 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.25) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-19 07:14:15,872 INFO L276 IsEmpty]: Start isEmpty. Operand 62 states and 78 transitions. [2022-11-19 07:14:15,874 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2022-11-19 07:14:15,877 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:15,877 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:15,877 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-19 07:14:15,878 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:15,878 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:15,879 INFO L85 PathProgramCache]: Analyzing trace with hash 816133155, now seen corresponding path program 1 times [2022-11-19 07:14:15,879 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:15,879 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1301578844] [2022-11-19 07:14:15,880 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:15,889 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:15,930 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:16,175 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:14:16,175 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:16,176 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1301578844] [2022-11-19 07:14:16,176 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1301578844] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:16,176 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:16,177 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-19 07:14:16,177 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [364783021] [2022-11-19 07:14:16,177 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:16,178 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-19 07:14:16,178 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:16,179 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-19 07:14:16,179 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-19 07:14:16,179 INFO L87 Difference]: Start difference. First operand 62 states and 78 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-19 07:14:16,577 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:16,577 INFO L93 Difference]: Finished difference Result 195 states and 244 transitions. [2022-11-19 07:14:16,578 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-19 07:14:16,578 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 31 [2022-11-19 07:14:16,579 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:16,585 INFO L225 Difference]: With dead ends: 195 [2022-11-19 07:14:16,585 INFO L226 Difference]: Without dead ends: 135 [2022-11-19 07:14:16,590 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2022-11-19 07:14:16,597 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 134 mSDsluCounter, 98 mSDsCounter, 0 mSdLazyCounter, 164 mSolverCounterSat, 76 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 136 SdHoareTripleChecker+Valid, 174 SdHoareTripleChecker+Invalid, 240 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 76 IncrementalHoareTripleChecker+Valid, 164 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:16,601 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [136 Valid, 174 Invalid, 240 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [76 Valid, 164 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-11-19 07:14:16,602 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 135 states. [2022-11-19 07:14:16,629 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 135 to 129. [2022-11-19 07:14:16,630 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 129 states, 83 states have (on average 1.2409638554216869) internal successors, (103), 91 states have internal predecessors, (103), 22 states have call successors, (22), 18 states have call predecessors, (22), 23 states have return successors, (29), 24 states have call predecessors, (29), 22 states have call successors, (29) [2022-11-19 07:14:16,633 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 129 states to 129 states and 154 transitions. [2022-11-19 07:14:16,637 INFO L78 Accepts]: Start accepts. Automaton has 129 states and 154 transitions. Word has length 31 [2022-11-19 07:14:16,638 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:16,638 INFO L495 AbstractCegarLoop]: Abstraction has 129 states and 154 transitions. [2022-11-19 07:14:16,638 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-19 07:14:16,639 INFO L276 IsEmpty]: Start isEmpty. Operand 129 states and 154 transitions. [2022-11-19 07:14:16,640 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2022-11-19 07:14:16,642 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:16,643 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:16,643 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-19 07:14:16,643 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:16,644 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:16,644 INFO L85 PathProgramCache]: Analyzing trace with hash 208436032, now seen corresponding path program 1 times [2022-11-19 07:14:16,645 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:16,645 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [493598461] [2022-11-19 07:14:16,645 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:16,646 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:16,675 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:16,915 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:14:16,916 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:16,916 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [493598461] [2022-11-19 07:14:16,916 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [493598461] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:16,917 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:16,917 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-19 07:14:16,917 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [274777815] [2022-11-19 07:14:16,917 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:16,918 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-19 07:14:16,918 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:16,919 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-19 07:14:16,919 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2022-11-19 07:14:16,920 INFO L87 Difference]: Start difference. First operand 129 states and 154 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 5 states have internal predecessors, (27), 3 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-11-19 07:14:17,145 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:17,146 INFO L93 Difference]: Finished difference Result 332 states and 400 transitions. [2022-11-19 07:14:17,146 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-19 07:14:17,147 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 5 states have internal predecessors, (27), 3 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 36 [2022-11-19 07:14:17,147 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:17,153 INFO L225 Difference]: With dead ends: 332 [2022-11-19 07:14:17,154 INFO L226 Difference]: Without dead ends: 205 [2022-11-19 07:14:17,156 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=18, Invalid=24, Unknown=0, NotChecked=0, Total=42 [2022-11-19 07:14:17,162 INFO L413 NwaCegarLoop]: 77 mSDtfsCounter, 73 mSDsluCounter, 206 mSDsCounter, 0 mSdLazyCounter, 95 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 73 SdHoareTripleChecker+Valid, 283 SdHoareTripleChecker+Invalid, 98 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 95 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:17,163 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [73 Valid, 283 Invalid, 98 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 95 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 07:14:17,166 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 205 states. [2022-11-19 07:14:17,216 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 205 to 186. [2022-11-19 07:14:17,217 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 186 states, 120 states have (on average 1.2083333333333333) internal successors, (145), 130 states have internal predecessors, (145), 31 states have call successors, (31), 26 states have call predecessors, (31), 34 states have return successors, (41), 35 states have call predecessors, (41), 31 states have call successors, (41) [2022-11-19 07:14:17,219 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 186 states to 186 states and 217 transitions. [2022-11-19 07:14:17,220 INFO L78 Accepts]: Start accepts. Automaton has 186 states and 217 transitions. Word has length 36 [2022-11-19 07:14:17,220 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:17,221 INFO L495 AbstractCegarLoop]: Abstraction has 186 states and 217 transitions. [2022-11-19 07:14:17,221 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 5 states have internal predecessors, (27), 3 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-11-19 07:14:17,221 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 217 transitions. [2022-11-19 07:14:17,223 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2022-11-19 07:14:17,224 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:17,224 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:17,227 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-19 07:14:17,227 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:17,228 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:17,228 INFO L85 PathProgramCache]: Analyzing trace with hash 2132735538, now seen corresponding path program 1 times [2022-11-19 07:14:17,228 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:17,228 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [981761652] [2022-11-19 07:14:17,229 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:17,229 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:17,268 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:17,844 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:14:17,844 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:17,845 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [981761652] [2022-11-19 07:14:17,845 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [981761652] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:17,845 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:17,845 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2022-11-19 07:14:17,845 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1626404292] [2022-11-19 07:14:17,846 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:17,846 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2022-11-19 07:14:17,846 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:17,847 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2022-11-19 07:14:17,847 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=62, Unknown=0, NotChecked=0, Total=90 [2022-11-19 07:14:17,848 INFO L87 Difference]: Start difference. First operand 186 states and 217 transitions. Second operand has 10 states, 9 states have (on average 3.111111111111111) internal successors, (28), 9 states have internal predecessors, (28), 6 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 5 states have call successors, (5) [2022-11-19 07:14:18,891 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:18,892 INFO L93 Difference]: Finished difference Result 543 states and 670 transitions. [2022-11-19 07:14:18,892 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2022-11-19 07:14:18,892 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 9 states have (on average 3.111111111111111) internal successors, (28), 9 states have internal predecessors, (28), 6 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 5 states have call successors, (5) Word has length 39 [2022-11-19 07:14:18,893 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:18,898 INFO L225 Difference]: With dead ends: 543 [2022-11-19 07:14:18,898 INFO L226 Difference]: Without dead ends: 416 [2022-11-19 07:14:18,899 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 39 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=78, Invalid=194, Unknown=0, NotChecked=0, Total=272 [2022-11-19 07:14:18,903 INFO L413 NwaCegarLoop]: 97 mSDtfsCounter, 332 mSDsluCounter, 239 mSDsCounter, 0 mSdLazyCounter, 621 mSolverCounterSat, 148 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 354 SdHoareTripleChecker+Valid, 336 SdHoareTripleChecker+Invalid, 769 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 148 IncrementalHoareTripleChecker+Valid, 621 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:18,908 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [354 Valid, 336 Invalid, 769 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [148 Valid, 621 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2022-11-19 07:14:18,910 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 416 states. [2022-11-19 07:14:19,037 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 416 to 384. [2022-11-19 07:14:19,039 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 384 states, 251 states have (on average 1.2350597609561753) internal successors, (310), 271 states have internal predecessors, (310), 68 states have call successors, (68), 52 states have call predecessors, (68), 64 states have return successors, (89), 71 states have call predecessors, (89), 68 states have call successors, (89) [2022-11-19 07:14:19,042 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 384 states to 384 states and 467 transitions. [2022-11-19 07:14:19,043 INFO L78 Accepts]: Start accepts. Automaton has 384 states and 467 transitions. Word has length 39 [2022-11-19 07:14:19,043 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:19,043 INFO L495 AbstractCegarLoop]: Abstraction has 384 states and 467 transitions. [2022-11-19 07:14:19,043 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 9 states have (on average 3.111111111111111) internal successors, (28), 9 states have internal predecessors, (28), 6 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 5 states have call successors, (5) [2022-11-19 07:14:19,044 INFO L276 IsEmpty]: Start isEmpty. Operand 384 states and 467 transitions. [2022-11-19 07:14:19,045 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2022-11-19 07:14:19,045 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:19,045 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:19,046 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-19 07:14:19,046 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:19,046 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:19,047 INFO L85 PathProgramCache]: Analyzing trace with hash 1727678004, now seen corresponding path program 1 times [2022-11-19 07:14:19,047 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:19,048 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [492061954] [2022-11-19 07:14:19,048 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:19,048 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:19,073 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:19,478 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-19 07:14:19,478 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:19,478 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [492061954] [2022-11-19 07:14:19,479 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [492061954] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-19 07:14:19,479 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [928070176] [2022-11-19 07:14:19,479 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:19,480 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-19 07:14:19,480 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 [2022-11-19 07:14:19,484 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-19 07:14:19,511 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-19 07:14:19,617 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:19,640 INFO L263 TraceCheckSpWp]: Trace formula consists of 235 conjuncts, 33 conjunts are in the unsatisfiable core [2022-11-19 07:14:19,648 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-19 07:14:20,260 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-19 07:14:20,261 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-19 07:14:21,432 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-19 07:14:21,433 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [928070176] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-19 07:14:21,433 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [89697923] [2022-11-19 07:14:21,462 INFO L159 IcfgInterpreter]: Started Sifa with 43 locations of interest [2022-11-19 07:14:21,462 INFO L166 IcfgInterpreter]: Building call graph [2022-11-19 07:14:21,468 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-19 07:14:21,475 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-19 07:14:21,476 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-19 07:14:22,124 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 114 for LOIs [2022-11-19 07:14:22,181 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 115 for LOIs [2022-11-19 07:14:24,446 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__methaneQuery with input of size 112 for LOIs [2022-11-19 07:14:24,760 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 112 for LOIs [2022-11-19 07:14:25,192 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneAlarm with input of size 113 for LOIs [2022-11-19 07:14:25,331 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 44 for LOIs [2022-11-19 07:14:25,340 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-19 07:14:42,458 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '4013#(and (= (select |#length| 15) 25) (= 9 (select |#length| 5)) (= (select |#length| 9) 21) (= 30 (select |#length| 7)) (= 1 (select |#valid| 5)) (= (select |#length| 3) 12) (= (select |#valid| 15) 1) (= (select |#valid| 9) 1) (= (select |#length| 12) 25) (= 0 |timeShift___utac_acc__Specification3_spec__1_~tmp___1~1#1|) (= (select |#valid| 11) 1) (= ~methaneLevelCritical~0 0) (= 30 (select |#length| 4)) (= |timeShift_getWaterLevel_~retValue_acc~5#1| |timeShift_getWaterLevel_#res#1|) (= 31 (select |#length| 2)) (= ~head~0.offset 0) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~1#1|) (= 2 (select |#length| 1)) (= (select |#length| 8) 9) (= |timeShift_getWaterLevel_#res#1| |timeShift___utac_acc__Specification3_spec__1_~tmp___0~3#1|) (= (select |#valid| 3) 1) (= (select |#valid| 7) 1) (= 30 (select |#length| 13)) (= 1 ~systemActive~0) (= |old(~pumpRunning~0)| 0) (= 30 (select |#length| 10)) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~1#1|) (= |timeShift_getWaterLevel_~retValue_acc~5#1| ~waterLevel~0) (= 2 |timeShift___utac_acc__Specification3_spec__1_~tmp___0~3#1|) (= (select |#valid| 12) 1) (= (select |#valid| 4) 1) (= (select |#valid| 1) 1) (= (select |#length| 6) 21) (= (select |#valid| 14) 1) (= |old(~waterLevel~0)| ~waterLevel~0) (= 9 (select |#length| 14)) (= (select |#valid| 0) 0) (= ~head~0.base 0) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification3_spec__1_~tmp___1~1#1|) (= (select |#valid| 2) 1) (= |#NULL.offset| 0) (= 9 (select |#length| 11)) (= (select (select |#memory_int| 1) 0) 48) (= ~methaneLevelCritical~0 |timeShift___utac_acc__Specification3_spec__1_~tmp~8#1|) (= (select |#valid| 6) 1) (= (select (select |#memory_int| 1) 1) 0) (= (select |#valid| 10) 1) (= (select |#valid| 8) 1) (= (select |#valid| 13) 1) (< 0 |#StackHeapBarrier|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-19 07:14:42,459 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-19 07:14:42,459 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-19 07:14:42,459 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 10, 12] total 27 [2022-11-19 07:14:42,463 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1347542020] [2022-11-19 07:14:42,463 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-19 07:14:42,465 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2022-11-19 07:14:42,466 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:42,467 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2022-11-19 07:14:42,469 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=349, Invalid=2621, Unknown=0, NotChecked=0, Total=2970 [2022-11-19 07:14:42,470 INFO L87 Difference]: Start difference. First operand 384 states and 467 transitions. Second operand has 27 states, 21 states have (on average 3.8095238095238093) internal successors, (80), 21 states have internal predecessors, (80), 7 states have call successors, (17), 5 states have call predecessors, (17), 12 states have return successors, (18), 15 states have call predecessors, (18), 7 states have call successors, (18) [2022-11-19 07:14:48,839 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:48,839 INFO L93 Difference]: Finished difference Result 1784 states and 2263 transitions. [2022-11-19 07:14:48,845 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 86 states. [2022-11-19 07:14:48,845 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 21 states have (on average 3.8095238095238093) internal successors, (80), 21 states have internal predecessors, (80), 7 states have call successors, (17), 5 states have call predecessors, (17), 12 states have return successors, (18), 15 states have call predecessors, (18), 7 states have call successors, (18) Word has length 44 [2022-11-19 07:14:48,846 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:48,863 INFO L225 Difference]: With dead ends: 1784 [2022-11-19 07:14:48,863 INFO L226 Difference]: Without dead ends: 1479 [2022-11-19 07:14:48,873 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 223 GetRequests, 87 SyntacticMatches, 9 SemanticMatches, 127 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6319 ImplicationChecksByTransitivity, 20.9s TimeCoverageRelationStatistics Valid=1422, Invalid=15090, Unknown=0, NotChecked=0, Total=16512 [2022-11-19 07:14:48,877 INFO L413 NwaCegarLoop]: 187 mSDtfsCounter, 953 mSDsluCounter, 1692 mSDsCounter, 0 mSdLazyCounter, 2704 mSolverCounterSat, 551 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 965 SdHoareTripleChecker+Valid, 1879 SdHoareTripleChecker+Invalid, 3255 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.1s SdHoareTripleChecker+Time, 551 IncrementalHoareTripleChecker+Valid, 2704 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.7s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:48,878 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [965 Valid, 1879 Invalid, 3255 Unknown, 0 Unchecked, 0.1s Time], IncrementalHoareTripleChecker [551 Valid, 2704 Invalid, 0 Unknown, 0 Unchecked, 2.7s Time] [2022-11-19 07:14:48,881 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1479 states. [2022-11-19 07:14:49,117 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1479 to 1213. [2022-11-19 07:14:49,121 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1213 states, 810 states have (on average 1.2135802469135804) internal successors, (983), 852 states have internal predecessors, (983), 208 states have call successors, (208), 165 states have call predecessors, (208), 194 states have return successors, (288), 216 states have call predecessors, (288), 208 states have call successors, (288) [2022-11-19 07:14:49,133 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1213 states to 1213 states and 1479 transitions. [2022-11-19 07:14:49,135 INFO L78 Accepts]: Start accepts. Automaton has 1213 states and 1479 transitions. Word has length 44 [2022-11-19 07:14:49,136 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:49,136 INFO L495 AbstractCegarLoop]: Abstraction has 1213 states and 1479 transitions. [2022-11-19 07:14:49,137 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 21 states have (on average 3.8095238095238093) internal successors, (80), 21 states have internal predecessors, (80), 7 states have call successors, (17), 5 states have call predecessors, (17), 12 states have return successors, (18), 15 states have call predecessors, (18), 7 states have call successors, (18) [2022-11-19 07:14:49,137 INFO L276 IsEmpty]: Start isEmpty. Operand 1213 states and 1479 transitions. [2022-11-19 07:14:49,139 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2022-11-19 07:14:49,139 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:49,140 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:49,153 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-11-19 07:14:49,347 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-19 07:14:49,347 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:49,348 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:49,348 INFO L85 PathProgramCache]: Analyzing trace with hash 385498576, now seen corresponding path program 1 times [2022-11-19 07:14:49,348 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:49,348 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1878010233] [2022-11-19 07:14:49,349 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:49,349 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:49,382 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:49,686 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-19 07:14:49,686 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:49,686 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1878010233] [2022-11-19 07:14:49,686 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1878010233] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:49,687 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:49,687 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [13] imperfect sequences [] total 13 [2022-11-19 07:14:49,687 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1199680466] [2022-11-19 07:14:49,687 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:49,688 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2022-11-19 07:14:49,688 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:49,688 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2022-11-19 07:14:49,689 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=129, Unknown=0, NotChecked=0, Total=156 [2022-11-19 07:14:49,689 INFO L87 Difference]: Start difference. First operand 1213 states and 1479 transitions. Second operand has 13 states, 11 states have (on average 2.8181818181818183) internal successors, (31), 10 states have internal predecessors, (31), 2 states have call successors, (8), 1 states have call predecessors, (8), 4 states have return successors, (7), 6 states have call predecessors, (7), 2 states have call successors, (7) [2022-11-19 07:14:50,863 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:50,863 INFO L93 Difference]: Finished difference Result 2226 states and 2858 transitions. [2022-11-19 07:14:50,864 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2022-11-19 07:14:50,864 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 11 states have (on average 2.8181818181818183) internal successors, (31), 10 states have internal predecessors, (31), 2 states have call successors, (8), 1 states have call predecessors, (8), 4 states have return successors, (7), 6 states have call predecessors, (7), 2 states have call successors, (7) Word has length 47 [2022-11-19 07:14:50,865 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:50,875 INFO L225 Difference]: With dead ends: 2226 [2022-11-19 07:14:50,876 INFO L226 Difference]: Without dead ends: 1541 [2022-11-19 07:14:50,879 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 37 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 146 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=170, Invalid=760, Unknown=0, NotChecked=0, Total=930 [2022-11-19 07:14:50,881 INFO L413 NwaCegarLoop]: 132 mSDtfsCounter, 325 mSDsluCounter, 793 mSDsCounter, 0 mSdLazyCounter, 746 mSolverCounterSat, 178 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 336 SdHoareTripleChecker+Valid, 925 SdHoareTripleChecker+Invalid, 924 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 178 IncrementalHoareTripleChecker+Valid, 746 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:50,881 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [336 Valid, 925 Invalid, 924 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [178 Valid, 746 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2022-11-19 07:14:50,884 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1541 states. [2022-11-19 07:14:51,088 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1541 to 1302. [2022-11-19 07:14:51,091 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1302 states, 867 states have (on average 1.1949250288350635) internal successors, (1036), 918 states have internal predecessors, (1036), 223 states have call successors, (223), 179 states have call predecessors, (223), 211 states have return successors, (325), 226 states have call predecessors, (325), 223 states have call successors, (325) [2022-11-19 07:14:51,099 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1302 states to 1302 states and 1584 transitions. [2022-11-19 07:14:51,100 INFO L78 Accepts]: Start accepts. Automaton has 1302 states and 1584 transitions. Word has length 47 [2022-11-19 07:14:51,100 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:51,101 INFO L495 AbstractCegarLoop]: Abstraction has 1302 states and 1584 transitions. [2022-11-19 07:14:51,101 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 11 states have (on average 2.8181818181818183) internal successors, (31), 10 states have internal predecessors, (31), 2 states have call successors, (8), 1 states have call predecessors, (8), 4 states have return successors, (7), 6 states have call predecessors, (7), 2 states have call successors, (7) [2022-11-19 07:14:51,101 INFO L276 IsEmpty]: Start isEmpty. Operand 1302 states and 1584 transitions. [2022-11-19 07:14:51,108 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 73 [2022-11-19 07:14:51,108 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:51,109 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:51,109 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-11-19 07:14:51,109 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:51,110 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:51,110 INFO L85 PathProgramCache]: Analyzing trace with hash -2091900219, now seen corresponding path program 1 times [2022-11-19 07:14:51,110 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:51,110 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [337332124] [2022-11-19 07:14:51,110 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:51,111 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:51,142 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:51,533 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 15 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2022-11-19 07:14:51,533 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:51,533 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [337332124] [2022-11-19 07:14:51,534 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [337332124] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:14:51,534 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-19 07:14:51,534 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-19 07:14:51,534 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [239112906] [2022-11-19 07:14:51,534 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:14:51,535 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-19 07:14:51,536 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:14:51,536 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-19 07:14:51,536 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2022-11-19 07:14:51,537 INFO L87 Difference]: Start difference. First operand 1302 states and 1584 transitions. Second operand has 8 states, 8 states have (on average 5.75) internal successors, (46), 7 states have internal predecessors, (46), 6 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 4 states have call predecessors, (9), 6 states have call successors, (9) [2022-11-19 07:14:52,122 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:14:52,123 INFO L93 Difference]: Finished difference Result 2245 states and 2755 transitions. [2022-11-19 07:14:52,123 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2022-11-19 07:14:52,124 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 5.75) internal successors, (46), 7 states have internal predecessors, (46), 6 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 4 states have call predecessors, (9), 6 states have call successors, (9) Word has length 72 [2022-11-19 07:14:52,124 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:14:52,133 INFO L225 Difference]: With dead ends: 2245 [2022-11-19 07:14:52,133 INFO L226 Difference]: Without dead ends: 1244 [2022-11-19 07:14:52,139 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2022-11-19 07:14:52,143 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 148 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 293 mSolverCounterSat, 76 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 159 SdHoareTripleChecker+Valid, 136 SdHoareTripleChecker+Invalid, 369 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 76 IncrementalHoareTripleChecker+Valid, 293 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-19 07:14:52,143 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [159 Valid, 136 Invalid, 369 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [76 Valid, 293 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-11-19 07:14:52,146 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1244 states. [2022-11-19 07:14:52,362 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1244 to 1136. [2022-11-19 07:14:52,365 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1136 states, 758 states have (on average 1.1978891820580475) internal successors, (908), 801 states have internal predecessors, (908), 195 states have call successors, (195), 162 states have call predecessors, (195), 182 states have return successors, (274), 193 states have call predecessors, (274), 195 states have call successors, (274) [2022-11-19 07:14:52,371 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1136 states to 1136 states and 1377 transitions. [2022-11-19 07:14:52,372 INFO L78 Accepts]: Start accepts. Automaton has 1136 states and 1377 transitions. Word has length 72 [2022-11-19 07:14:52,373 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:14:52,373 INFO L495 AbstractCegarLoop]: Abstraction has 1136 states and 1377 transitions. [2022-11-19 07:14:52,373 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 5.75) internal successors, (46), 7 states have internal predecessors, (46), 6 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 4 states have call predecessors, (9), 6 states have call successors, (9) [2022-11-19 07:14:52,373 INFO L276 IsEmpty]: Start isEmpty. Operand 1136 states and 1377 transitions. [2022-11-19 07:14:52,376 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 76 [2022-11-19 07:14:52,376 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:14:52,376 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:14:52,376 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-11-19 07:14:52,377 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:14:52,377 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:14:52,377 INFO L85 PathProgramCache]: Analyzing trace with hash -1804366665, now seen corresponding path program 1 times [2022-11-19 07:14:52,377 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:14:52,378 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1738062882] [2022-11-19 07:14:52,378 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:52,378 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:14:52,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:52,988 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2022-11-19 07:14:52,988 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:14:52,989 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1738062882] [2022-11-19 07:14:52,989 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1738062882] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-19 07:14:52,989 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [937556843] [2022-11-19 07:14:52,989 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:14:52,989 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-19 07:14:52,989 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 [2022-11-19 07:14:52,991 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-19 07:14:53,022 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-11-19 07:14:53,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:14:53,132 INFO L263 TraceCheckSpWp]: Trace formula consists of 318 conjuncts, 24 conjunts are in the unsatisfiable core [2022-11-19 07:14:53,136 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-19 07:14:53,529 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 12 proven. 11 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2022-11-19 07:14:53,529 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-19 07:14:53,984 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 23 trivial. 0 not checked. [2022-11-19 07:14:53,985 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [937556843] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-19 07:14:53,985 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [337382039] [2022-11-19 07:14:53,989 INFO L159 IcfgInterpreter]: Started Sifa with 51 locations of interest [2022-11-19 07:14:53,989 INFO L166 IcfgInterpreter]: Building call graph [2022-11-19 07:14:53,990 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-19 07:14:53,990 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-19 07:14:53,990 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-19 07:14:57,163 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 114 for LOIs [2022-11-19 07:14:57,179 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 119 for LOIs [2022-11-19 07:14:57,809 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__methaneQuery with input of size 119 for LOIs [2022-11-19 07:14:58,254 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 119 for LOIs [2022-11-19 07:14:58,805 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneAlarm with input of size 119 for LOIs [2022-11-19 07:14:58,924 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 45 for LOIs [2022-11-19 07:14:58,932 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-19 07:15:13,475 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '19610#(and (= 0 |timeShift___utac_acc__Specification3_spec__1_~tmp___1~1#1|) (= |timeShift_getWaterLevel_~retValue_acc~5#1| |timeShift_getWaterLevel_#res#1|) (= ~head~0.offset 0) (= ~pumpRunning~0 |timeShift_isPumpRunning_~retValue_acc~1#1|) (<= 1 ~systemActive~0) (= |timeShift_getWaterLevel_#res#1| |timeShift___utac_acc__Specification3_spec__1_~tmp___0~3#1|) (<= |#NULL.offset| 0) (= |old(~pumpRunning~0)| 0) (= |timeShift_isPumpRunning_#res#1| |timeShift_isPumpRunning_~retValue_acc~1#1|) (= |timeShift_getWaterLevel_~retValue_acc~5#1| ~waterLevel~0) (= 2 |timeShift___utac_acc__Specification3_spec__1_~tmp___0~3#1|) (<= 2 |old(~waterLevel~0)|) (<= ~methaneLevelCritical~0 0) (<= 0 ~head~0.base) (<= 0 ~methaneLevelCritical~0) (<= ~head~0.base 0) (= |timeShift_isPumpRunning_#res#1| |timeShift___utac_acc__Specification3_spec__1_~tmp___1~1#1|) (= ~methaneLevelCritical~0 |timeShift___utac_acc__Specification3_spec__1_~tmp~8#1|) (<= 0 |#NULL.offset|) (<= 0 |#StackHeapBarrier|) (<= ~systemActive~0 1) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-19 07:15:13,475 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-19 07:15:13,475 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-19 07:15:13,475 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 9, 8] total 20 [2022-11-19 07:15:13,476 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1898493739] [2022-11-19 07:15:13,476 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-19 07:15:13,476 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2022-11-19 07:15:13,477 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:15:13,477 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2022-11-19 07:15:13,478 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=282, Invalid=1974, Unknown=0, NotChecked=0, Total=2256 [2022-11-19 07:15:13,478 INFO L87 Difference]: Start difference. First operand 1136 states and 1377 transitions. Second operand has 20 states, 18 states have (on average 5.166666666666667) internal successors, (93), 18 states have internal predecessors, (93), 10 states have call successors, (24), 8 states have call predecessors, (24), 7 states have return successors, (22), 9 states have call predecessors, (22), 10 states have call successors, (22) [2022-11-19 07:15:17,348 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:15:17,348 INFO L93 Difference]: Finished difference Result 3838 states and 4927 transitions. [2022-11-19 07:15:17,349 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 46 states. [2022-11-19 07:15:17,349 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 18 states have (on average 5.166666666666667) internal successors, (93), 18 states have internal predecessors, (93), 10 states have call successors, (24), 8 states have call predecessors, (24), 7 states have return successors, (22), 9 states have call predecessors, (22), 10 states have call successors, (22) Word has length 75 [2022-11-19 07:15:17,349 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:15:17,368 INFO L225 Difference]: With dead ends: 3838 [2022-11-19 07:15:17,368 INFO L226 Difference]: Without dead ends: 2995 [2022-11-19 07:15:17,376 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 289 GetRequests, 190 SyntacticMatches, 15 SemanticMatches, 84 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3208 ImplicationChecksByTransitivity, 16.4s TimeCoverageRelationStatistics Valid=933, Invalid=6377, Unknown=0, NotChecked=0, Total=7310 [2022-11-19 07:15:17,377 INFO L413 NwaCegarLoop]: 81 mSDtfsCounter, 1427 mSDsluCounter, 397 mSDsCounter, 0 mSdLazyCounter, 1561 mSolverCounterSat, 1015 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1433 SdHoareTripleChecker+Valid, 478 SdHoareTripleChecker+Invalid, 2576 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1015 IncrementalHoareTripleChecker+Valid, 1561 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.8s IncrementalHoareTripleChecker+Time [2022-11-19 07:15:17,377 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1433 Valid, 478 Invalid, 2576 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1015 Valid, 1561 Invalid, 0 Unknown, 0 Unchecked, 1.8s Time] [2022-11-19 07:15:17,381 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2995 states. [2022-11-19 07:15:17,781 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2995 to 2682. [2022-11-19 07:15:17,787 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2682 states, 1770 states have (on average 1.1661016949152543) internal successors, (2064), 1860 states have internal predecessors, (2064), 458 states have call successors, (458), 397 states have call predecessors, (458), 453 states have return successors, (689), 458 states have call predecessors, (689), 458 states have call successors, (689) [2022-11-19 07:15:17,801 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2682 states to 2682 states and 3211 transitions. [2022-11-19 07:15:17,802 INFO L78 Accepts]: Start accepts. Automaton has 2682 states and 3211 transitions. Word has length 75 [2022-11-19 07:15:17,802 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:15:17,802 INFO L495 AbstractCegarLoop]: Abstraction has 2682 states and 3211 transitions. [2022-11-19 07:15:17,803 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 18 states have (on average 5.166666666666667) internal successors, (93), 18 states have internal predecessors, (93), 10 states have call successors, (24), 8 states have call predecessors, (24), 7 states have return successors, (22), 9 states have call predecessors, (22), 10 states have call successors, (22) [2022-11-19 07:15:17,803 INFO L276 IsEmpty]: Start isEmpty. Operand 2682 states and 3211 transitions. [2022-11-19 07:15:17,805 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 84 [2022-11-19 07:15:17,805 INFO L187 NwaCegarLoop]: Found error trace [2022-11-19 07:15:17,806 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:15:17,818 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-11-19 07:15:18,018 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-19 07:15:18,019 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-19 07:15:18,019 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-19 07:15:18,020 INFO L85 PathProgramCache]: Analyzing trace with hash -1504846347, now seen corresponding path program 1 times [2022-11-19 07:15:18,020 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-19 07:15:18,020 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1366260628] [2022-11-19 07:15:18,020 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:15:18,020 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-19 07:15:18,040 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:15:19,055 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 5 proven. 19 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2022-11-19 07:15:19,055 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-19 07:15:19,055 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1366260628] [2022-11-19 07:15:19,055 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1366260628] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-19 07:15:19,056 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1039752138] [2022-11-19 07:15:19,056 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-19 07:15:19,056 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-19 07:15:19,056 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 [2022-11-19 07:15:19,057 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-19 07:15:19,063 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-11-19 07:15:19,163 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-19 07:15:19,166 INFO L263 TraceCheckSpWp]: Trace formula consists of 338 conjuncts, 12 conjunts are in the unsatisfiable core [2022-11-19 07:15:19,168 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-19 07:15:19,282 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2022-11-19 07:15:19,283 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2022-11-19 07:15:19,283 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1039752138] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-19 07:15:19,283 INFO L184 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2022-11-19 07:15:19,283 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [21] total 23 [2022-11-19 07:15:19,284 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1230747449] [2022-11-19 07:15:19,284 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-19 07:15:19,285 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-19 07:15:19,285 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-19 07:15:19,286 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-19 07:15:19,286 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=67, Invalid=439, Unknown=0, NotChecked=0, Total=506 [2022-11-19 07:15:19,286 INFO L87 Difference]: Start difference. First operand 2682 states and 3211 transitions. Second operand has 5 states, 5 states have (on average 8.6) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (12), 2 states have call predecessors, (12), 2 states have call successors, (12) [2022-11-19 07:15:19,774 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-19 07:15:19,774 INFO L93 Difference]: Finished difference Result 5142 states and 6213 transitions. [2022-11-19 07:15:19,775 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-19 07:15:19,775 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.6) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (12), 2 states have call predecessors, (12), 2 states have call successors, (12) Word has length 83 [2022-11-19 07:15:19,775 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-19 07:15:19,778 INFO L225 Difference]: With dead ends: 5142 [2022-11-19 07:15:19,778 INFO L226 Difference]: Without dead ends: 0 [2022-11-19 07:15:19,788 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 113 GetRequests, 89 SyntacticMatches, 1 SemanticMatches, 23 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 147 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=77, Invalid=523, Unknown=0, NotChecked=0, Total=600 [2022-11-19 07:15:19,789 INFO L413 NwaCegarLoop]: 90 mSDtfsCounter, 64 mSDsluCounter, 198 mSDsCounter, 0 mSdLazyCounter, 129 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 65 SdHoareTripleChecker+Valid, 288 SdHoareTripleChecker+Invalid, 134 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 129 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-19 07:15:19,789 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [65 Valid, 288 Invalid, 134 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 129 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-19 07:15:19,789 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-19 07:15:19,790 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-19 07:15:19,790 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-19 07:15:19,790 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-19 07:15:19,791 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 83 [2022-11-19 07:15:19,791 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-19 07:15:19,791 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-19 07:15:19,791 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.6) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (12), 2 states have call predecessors, (12), 2 states have call successors, (12) [2022-11-19 07:15:19,791 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-19 07:15:19,792 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-19 07:15:19,795 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-19 07:15:19,805 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-11-19 07:15:20,000 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2022-11-19 07:15:20,002 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-19 07:15:45,017 WARN L233 SmtUtils]: Spent 6.38s on a formula simplification. DAG size of input: 679 DAG size of output: 57 (called from [L 149] de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.HoareAnnotationComposer.combineInter) [2022-11-19 07:15:55,179 INFO L895 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 266 273) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~pumpRunning~0)| 0) (not (<= ~waterLevel~0 1)) (= 0 ~systemActive~0)) [2022-11-19 07:15:55,179 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 266 273) no Hoare annotation was computed. [2022-11-19 07:15:55,179 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 156 162) no Hoare annotation was computed. [2022-11-19 07:15:55,179 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 156 162) the Hoare annotation is: true [2022-11-19 07:15:55,180 INFO L895 garLoopResultBuilder]: At program point L209(line 209) the Hoare annotation is: (let ((.cse0 (= |old(~pumpRunning~0)| 0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (<= ~waterLevel~0 1)) .cse1) (or (not .cse0) (= ~pumpRunning~0 0) (not (<= ~waterLevel~0 2)) .cse1))) [2022-11-19 07:15:55,180 INFO L899 garLoopResultBuilder]: For program point L209-1(lines 190 214) no Hoare annotation was computed. [2022-11-19 07:15:55,180 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryENTRY(lines 190 214) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (<= ~waterLevel~0 2)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= ~waterLevel~0 1)) .cse0))) [2022-11-19 07:15:55,180 INFO L895 garLoopResultBuilder]: At program point L204(line 204) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= ~waterLevel~0 2)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= ~waterLevel~0 1)) .cse0))) [2022-11-19 07:15:55,181 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 190 214) no Hoare annotation was computed. [2022-11-19 07:15:55,181 INFO L895 garLoopResultBuilder]: At program point L200(line 200) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= ~waterLevel~0 2)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= ~waterLevel~0 1)) .cse0))) [2022-11-19 07:15:55,181 INFO L899 garLoopResultBuilder]: For program point L198(lines 198 206) no Hoare annotation was computed. [2022-11-19 07:15:55,181 INFO L895 garLoopResultBuilder]: At program point L194(lines 194 211) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (<= ~waterLevel~0 2)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= ~waterLevel~0 1)) .cse0))) [2022-11-19 07:15:55,182 INFO L895 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 396 407) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= ~waterLevel~0 2))) (.cse2 (= ~pumpRunning~0 1))) (and (or (not (= |old(~methaneLevelCritical~0)| 0)) (not (= ~pumpRunning~0 0)) (= ~methaneLevelCritical~0 0) .cse0 .cse1) (or .cse0 (not .cse2) .cse1 (not (<= |old(~methaneLevelCritical~0)| 0)) (and (<= ~methaneLevelCritical~0 0) (<= 0 ~methaneLevelCritical~0)) (< ~waterLevel~0 2) (not (<= 0 |old(~methaneLevelCritical~0)|))) (or (<= 1 ~methaneLevelCritical~0) (and (not (<= (+ |old(~methaneLevelCritical~0)| 1) 0)) (not (<= 1 |old(~methaneLevelCritical~0)|))) (<= (+ ~methaneLevelCritical~0 1) 0) .cse1 (= 0 ~systemActive~0) .cse2))) [2022-11-19 07:15:55,182 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 396 407) no Hoare annotation was computed. [2022-11-19 07:15:55,182 INFO L902 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 408 416) the Hoare annotation is: true [2022-11-19 07:15:55,182 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 408 416) no Hoare annotation was computed. [2022-11-19 07:15:55,183 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 483 512) no Hoare annotation was computed. [2022-11-19 07:15:55,183 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 483 512) the Hoare annotation is: true [2022-11-19 07:15:55,183 INFO L902 garLoopResultBuilder]: At program point L508(lines 483 512) the Hoare annotation is: true [2022-11-19 07:15:55,183 INFO L899 garLoopResultBuilder]: For program point L504(line 504) no Hoare annotation was computed. [2022-11-19 07:15:55,183 INFO L899 garLoopResultBuilder]: For program point L497(lines 497 501) no Hoare annotation was computed. [2022-11-19 07:15:55,184 INFO L902 garLoopResultBuilder]: At program point L497-1(lines 497 501) the Hoare annotation is: true [2022-11-19 07:15:55,184 INFO L902 garLoopResultBuilder]: At program point L493-2(lines 493 507) the Hoare annotation is: true [2022-11-19 07:15:55,184 INFO L902 garLoopResultBuilder]: At program point L489(line 489) the Hoare annotation is: true [2022-11-19 07:15:55,184 INFO L899 garLoopResultBuilder]: For program point L489-1(line 489) no Hoare annotation was computed. [2022-11-19 07:15:55,184 INFO L895 garLoopResultBuilder]: At program point L477(line 477) the Hoare annotation is: (or (= 0 ~systemActive~0) (not (<= |old(~waterLevel~0)| 2))) [2022-11-19 07:15:55,185 INFO L899 garLoopResultBuilder]: For program point L143-1(lines 143 149) no Hoare annotation was computed. [2022-11-19 07:15:55,185 INFO L895 garLoopResultBuilder]: At program point L230(line 230) the Hoare annotation is: (let ((.cse0 (not (<= |old(~waterLevel~0)| 1))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 0)) .cse1) (or (and .cse2 (not (= ~pumpRunning~0 0)) (= ~waterLevel~0 1)) (< |old(~waterLevel~0)| 2) .cse1 (not (<= |old(~waterLevel~0)| 2))) (or .cse0 .cse1 (and .cse2 (let ((.cse3 (< 0 |old(~waterLevel~0)|))) (or (and (not .cse3) (= |old(~waterLevel~0)| ~waterLevel~0)) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse3))))))) [2022-11-19 07:15:55,185 INFO L895 garLoopResultBuilder]: At program point L226(line 226) the Hoare annotation is: (let ((.cse0 (not (<= |old(~waterLevel~0)| 1))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 0)) .cse1) (or (and .cse2 (not (= ~pumpRunning~0 0)) (= ~waterLevel~0 1)) (< |old(~waterLevel~0)| 2) .cse1 (not (<= |old(~waterLevel~0)| 2))) (or .cse0 .cse1 (and .cse2 (let ((.cse3 (< 0 |old(~waterLevel~0)|))) (or (and (not .cse3) (= |old(~waterLevel~0)| ~waterLevel~0)) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse3))))))) [2022-11-19 07:15:55,186 INFO L895 garLoopResultBuilder]: At program point L222(line 222) the Hoare annotation is: (let ((.cse0 (not (<= |old(~waterLevel~0)| 1))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 0)) .cse1) (or (and .cse2 (not (= ~pumpRunning~0 0)) (= ~waterLevel~0 1)) (< |old(~waterLevel~0)| 2) .cse1 (not (<= |old(~waterLevel~0)| 2))) (or .cse0 .cse1 (and .cse2 (let ((.cse3 (< 0 |old(~waterLevel~0)|))) (or (and (not .cse3) (= |old(~waterLevel~0)| ~waterLevel~0)) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse3))))))) [2022-11-19 07:15:55,186 INFO L899 garLoopResultBuilder]: For program point L222-1(line 222) no Hoare annotation was computed. [2022-11-19 07:15:55,186 INFO L895 garLoopResultBuilder]: At program point L590(lines 590 610) the Hoare annotation is: (let ((.cse3 (= 0 ~systemActive~0)) (.cse1 (= |old(~pumpRunning~0)| 0)) (.cse4 (= ~pumpRunning~0 0))) (let ((.cse10 (not .cse4)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse9 (not .cse1)) (.cse5 (<= ~waterLevel~0 1)) (.cse12 (not .cse3))) (let ((.cse0 (and .cse9 .cse4 .cse5 .cse12)) (.cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse10 .cse5 (let ((.cse11 (< 0 |old(~waterLevel~0)|))) (or (and (not .cse11) .cse6) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse11))) .cse12)) (.cse7 (= ~waterLevel~0 1)) (.cse8 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2 .cse3) (or (and .cse4 .cse5 .cse6) .cse0 (and (not .cse7) .cse6 (or (<= 1 ~methaneLevelCritical~0) (<= (+ ~methaneLevelCritical~0 1) 0) (= ~pumpRunning~0 1))) .cse2 .cse3 .cse8) (or .cse1 .cse3 .cse7 .cse8 (not (<= 2 |old(~waterLevel~0)|))) (or .cse9 .cse10 (= ~methaneLevelCritical~0 0) .cse3 .cse8 (not (= |timeShift___utac_acc__Specification3_spec__1_~tmp~8#1| 0))))))) [2022-11-19 07:15:55,187 INFO L895 garLoopResultBuilder]: At program point L235(line 235) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (= |old(~pumpRunning~0)| 0) .cse0 .cse1) (or (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 .cse1))) [2022-11-19 07:15:55,187 INFO L895 garLoopResultBuilder]: At program point L235-1(lines 216 240) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse4 (not (<= |old(~waterLevel~0)| 2))) (.cse5 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse9 (not (<= |old(~waterLevel~0)| 1))) (.cse0 (not .cse7)) (.cse8 (= ~pumpRunning~0 0)) (.cse6 (= ~waterLevel~0 1)) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (or (<= 1 ~methaneLevelCritical~0) (<= (+ ~methaneLevelCritical~0 1) 0) (= ~pumpRunning~0 1))) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (and .cse1 .cse2) .cse3 .cse4) (or (and .cse5 .cse6) .cse7 (and .cse8 .cse6) .cse3 .cse4 (not (<= 2 |old(~waterLevel~0)|))) (or .cse9 .cse7 .cse3 (and .cse5 (let ((.cse10 (< 0 |old(~waterLevel~0)|))) (or (and (not .cse10) .cse1) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse10)))) (and .cse8 (<= ~waterLevel~0 1))) (or .cse9 .cse0 (and .cse8 .cse1) (and (not .cse6) .cse1 .cse2) .cse3)))) [2022-11-19 07:15:55,187 INFO L899 garLoopResultBuilder]: For program point L136-1(lines 135 154) no Hoare annotation was computed. [2022-11-19 07:15:55,188 INFO L899 garLoopResultBuilder]: For program point L224(lines 224 232) no Hoare annotation was computed. [2022-11-19 07:15:55,188 INFO L899 garLoopResultBuilder]: For program point L220(lines 220 237) no Hoare annotation was computed. [2022-11-19 07:15:55,188 INFO L899 garLoopResultBuilder]: For program point L600(lines 600 606) no Hoare annotation was computed. [2022-11-19 07:15:55,188 INFO L895 garLoopResultBuilder]: At program point L596(lines 596 609) the Hoare annotation is: (let ((.cse3 (= 0 ~systemActive~0)) (.cse14 (= ~pumpRunning~0 0))) (let ((.cse9 (not .cse14)) (.cse11 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse10 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (= |old(~pumpRunning~0)| 0)) (.cse12 (<= ~waterLevel~0 1)) (.cse8 (<= |timeShift___utac_acc__Specification3_spec__1_~tmp___0~3#1| 1)) (.cse13 (not .cse3))) (let ((.cse5 (= ~waterLevel~0 1)) (.cse0 (not (<= |old(~waterLevel~0)| 1))) (.cse1 (and (not .cse2) .cse14 .cse12 .cse8 .cse13)) (.cse7 (and .cse11 .cse14 .cse12 .cse10 .cse8 .cse13)) (.cse6 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (and .cse11 .cse9 .cse12 .cse8 (or (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (< 0 |old(~waterLevel~0)|)) .cse10) .cse13))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse2 .cse3 .cse5 .cse6 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 .cse1 .cse7 (and (not .cse5) .cse8) .cse3) (or .cse0 .cse9 .cse1 (= ~methaneLevelCritical~0 0) .cse3) (or (and .cse9 .cse10 (or (<= 1 ~methaneLevelCritical~0) (<= (+ ~methaneLevelCritical~0 1) 0) (= ~pumpRunning~0 1))) .cse1 .cse7 .cse3 .cse6 .cse4))))) [2022-11-19 07:15:55,189 INFO L895 garLoopResultBuilder]: At program point L596-1(lines 581 613) the Hoare annotation is: (let ((.cse5 (= |old(~pumpRunning~0)| 0)) (.cse6 (= 0 ~systemActive~0))) (let ((.cse4 (not .cse6)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= ~pumpRunning~0 0)) (.cse10 (<= ~waterLevel~0 1)) (.cse2 (not .cse5)) (.cse1 (= ~waterLevel~0 1)) (.cse9 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse7 (not (<= |old(~waterLevel~0)| 2)))) (and (or (and .cse0 .cse1) (and .cse2 .cse3 .cse1 .cse4) (< |old(~waterLevel~0)| 2) .cse5 .cse6 .cse7) (or (not .cse3) (= ~methaneLevelCritical~0 0) .cse6 .cse7 (not (= |timeShift___utac_acc__Specification3_spec__1_~tmp~8#1| 0)) (and .cse2 .cse3 .cse4)) (or (not (<= |old(~waterLevel~0)| 1)) .cse5 .cse6 (and .cse0 (let ((.cse8 (< 0 |old(~waterLevel~0)|))) (or (and (not .cse8) .cse9) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse8)))) (and .cse3 .cse10)) (or (and .cse3 .cse10 .cse9) .cse2 (and (not .cse1) .cse9 (or (<= 1 ~methaneLevelCritical~0) (<= (+ ~methaneLevelCritical~0 1) 0) (= ~pumpRunning~0 1))) .cse6 .cse7)))) [2022-11-19 07:15:55,189 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 132 155) the Hoare annotation is: (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| ~waterLevel~0)) (= 0 ~systemActive~0) (not (<= |old(~waterLevel~0)| 2))) [2022-11-19 07:15:55,190 INFO L895 garLoopResultBuilder]: At program point L588(line 588) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse4 (not (<= |old(~waterLevel~0)| 2))) (.cse5 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse9 (not (<= |old(~waterLevel~0)| 1))) (.cse0 (not .cse7)) (.cse8 (= ~pumpRunning~0 0)) (.cse6 (= ~waterLevel~0 1)) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (or (<= 1 ~methaneLevelCritical~0) (<= (+ ~methaneLevelCritical~0 1) 0) (= ~pumpRunning~0 1))) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (and .cse1 .cse2) .cse3 .cse4) (or (and .cse5 .cse6) .cse7 (and .cse8 .cse6) .cse3 .cse4 (not (<= 2 |old(~waterLevel~0)|))) (or .cse9 .cse7 .cse3 (and .cse5 (let ((.cse10 (< 0 |old(~waterLevel~0)|))) (or (and (not .cse10) .cse1) (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse10)))) (and .cse8 (<= ~waterLevel~0 1))) (or .cse9 .cse0 (and .cse8 .cse1) (and (not .cse6) .cse1 .cse2) .cse3)))) [2022-11-19 07:15:55,190 INFO L899 garLoopResultBuilder]: For program point L588-1(line 588) no Hoare annotation was computed. [2022-11-19 07:15:55,190 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 132 155) no Hoare annotation was computed. [2022-11-19 07:15:55,190 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 477) no Hoare annotation was computed. [2022-11-19 07:15:55,191 INFO L895 garLoopResultBuilder]: At program point L110(lines 63 111) the Hoare annotation is: false [2022-11-19 07:15:55,191 INFO L899 garLoopResultBuilder]: For program point L65(lines 64 109) no Hoare annotation was computed. [2022-11-19 07:15:55,191 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-11-19 07:15:55,191 INFO L895 garLoopResultBuilder]: At program point L86(line 86) the Hoare annotation is: (and (= 1 ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (<= ~waterLevel~0 2) (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0)) [2022-11-19 07:15:55,191 INFO L895 garLoopResultBuilder]: At program point L107(lines 64 109) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0))) (or (and .cse0 .cse1 (<= ~waterLevel~0 2) (or (<= 1 ~methaneLevelCritical~0) (<= (+ ~methaneLevelCritical~0 1) 0) (= ~pumpRunning~0 1)) .cse2) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2))) [2022-11-19 07:15:55,192 INFO L899 garLoopResultBuilder]: For program point L74(lines 74 80) no Hoare annotation was computed. [2022-11-19 07:15:55,192 INFO L899 garLoopResultBuilder]: For program point L74-1(lines 74 80) no Hoare annotation was computed. [2022-11-19 07:15:55,192 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-19 07:15:55,192 INFO L895 garLoopResultBuilder]: At program point L100-2(lines 94 105) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~7#1| 1) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (<= ~waterLevel~0 2) (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0)) [2022-11-19 07:15:55,193 INFO L895 garLoopResultBuilder]: At program point L567(lines 567 574) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 ~methaneLevelCritical~0) (= ~waterLevel~0 1) (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0)) [2022-11-19 07:15:55,193 INFO L902 garLoopResultBuilder]: At program point L567-2(lines 567 574) the Hoare annotation is: true [2022-11-19 07:15:55,193 INFO L899 garLoopResultBuilder]: For program point L84(lines 84 90) no Hoare annotation was computed. [2022-11-19 07:15:55,193 INFO L899 garLoopResultBuilder]: For program point L84-1(lines 84 90) no Hoare annotation was computed. [2022-11-19 07:15:55,193 INFO L902 garLoopResultBuilder]: At program point L113(lines 54 117) the Hoare annotation is: true [2022-11-19 07:15:55,194 INFO L895 garLoopResultBuilder]: At program point L76(line 76) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (<= ~waterLevel~0 2)) (.cse2 (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) .cse1 .cse4 .cse2) (and .cse0 (or (not (= ~methaneLevelCritical~0 0)) (= ~pumpRunning~0 1)) .cse1 .cse4 .cse2 .cse3))) [2022-11-19 07:15:55,194 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 164 188) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (<= ~waterLevel~0 2)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= ~waterLevel~0 1)) .cse0))) [2022-11-19 07:15:55,194 INFO L895 garLoopResultBuilder]: At program point L254(line 254) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse1 (<= ~waterLevel~0 1)) (.cse0 (= 0 ~systemActive~0))) (and (or (not (= ~waterLevel~0 1)) .cse0) (or (not (= |old(~pumpRunning~0)| 0)) (not (<= ~waterLevel~0 2)) (and (or .cse1 (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 1)) .cse2) .cse0) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2 (<= 0 |processEnvironment__wrappee__highWaterSensor_~tmp~1#1|)) (not .cse1) .cse0))) [2022-11-19 07:15:55,195 INFO L895 garLoopResultBuilder]: At program point L254-1(line 254) the Hoare annotation is: (let ((.cse2 (not (<= ~waterLevel~0 1))) (.cse4 (= |old(~pumpRunning~0)| 0)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_activatePump_#t~ret11#1|)) (.cse3 (= 0 ~systemActive~0))) (and (or (and .cse0 (<= 0 |processEnvironment__wrappee__highWaterSensor_~tmp~1#1|) .cse1) .cse2 .cse3) (or .cse4 .cse2 .cse3) (or (not .cse4) (not (<= ~waterLevel~0 2)) (< ~waterLevel~0 2) .cse3 (and .cse0 (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 1) .cse1)) (or (not (= ~waterLevel~0 1)) .cse3))) [2022-11-19 07:15:55,195 INFO L895 garLoopResultBuilder]: At program point L178(line 178) the Hoare annotation is: (let ((.cse0 (= |old(~pumpRunning~0)| 0)) (.cse2 (= 0 ~systemActive~0)) (.cse1 (<= ~waterLevel~0 1))) (and (or .cse0 (not .cse1) .cse2) (or (not .cse0) (not (<= ~waterLevel~0 2)) .cse2 (and (= ~pumpRunning~0 0) .cse1 (<= 0 |processEnvironment__wrappee__highWaterSensor_~tmp~1#1|) (or (not (= ~waterLevel~0 1)) (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 0)))))) [2022-11-19 07:15:55,195 INFO L899 garLoopResultBuilder]: For program point L172(lines 172 180) no Hoare annotation was computed. [2022-11-19 07:15:55,195 INFO L895 garLoopResultBuilder]: At program point L168(lines 168 185) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (<= ~waterLevel~0 2)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= ~waterLevel~0 1)) .cse0))) [2022-11-19 07:15:55,196 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 164 188) no Hoare annotation was computed. [2022-11-19 07:15:55,196 INFO L895 garLoopResultBuilder]: At program point L183(line 183) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= ~waterLevel~0 2)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= ~waterLevel~0 1)) .cse0))) [2022-11-19 07:15:55,196 INFO L899 garLoopResultBuilder]: For program point L183-1(lines 164 188) no Hoare annotation was computed. [2022-11-19 07:15:55,196 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 384 395) no Hoare annotation was computed. [2022-11-19 07:15:55,197 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 384 395) the Hoare annotation is: (let ((.cse2 (not (<= |old(~waterLevel~0)| 2))) (.cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or (and (not (<= (+ ~methaneLevelCritical~0 1) 0)) (not (<= 1 ~methaneLevelCritical~0)) (not (= ~pumpRunning~0 1))) .cse0 .cse1 .cse2) (or (not (= ~pumpRunning~0 0)) .cse0 .cse1 .cse2) (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2022-11-19 07:15:55,197 INFO L902 garLoopResultBuilder]: At program point isMethaneAlarmENTRY(lines 274 284) the Hoare annotation is: true [2022-11-19 07:15:55,197 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 274 284) no Hoare annotation was computed. [2022-11-19 07:15:55,197 INFO L902 garLoopResultBuilder]: At program point L279(line 279) the Hoare annotation is: true [2022-11-19 07:15:55,197 INFO L899 garLoopResultBuilder]: For program point L279-1(line 279) no Hoare annotation was computed. [2022-11-19 07:15:55,201 INFO L444 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-19 07:15:55,204 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-19 07:15:55,257 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 19.11 07:15:55 BoogieIcfgContainer [2022-11-19 07:15:55,270 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-19 07:15:55,271 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-19 07:15:55,271 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-19 07:15:55,271 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-19 07:15:55,272 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 07:14:14" (3/4) ... [2022-11-19 07:15:55,276 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-19 07:15:55,282 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-11-19 07:15:55,282 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-19 07:15:55,282 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-19 07:15:55,283 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-11-19 07:15:55,283 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-19 07:15:55,283 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-19 07:15:55,284 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2022-11-19 07:15:55,284 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-19 07:15:55,284 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2022-11-19 07:15:55,284 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2022-11-19 07:15:55,292 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 52 nodes and edges [2022-11-19 07:15:55,292 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2022-11-19 07:15:55,293 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2022-11-19 07:15:55,294 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-19 07:15:55,294 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-19 07:15:55,324 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == \old(pumpRunning) && \old(waterLevel) == waterLevel) || 0 == systemActive) || !(\old(waterLevel) <= 2) [2022-11-19 07:15:55,325 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || \old(waterLevel) < 2) || (\old(waterLevel) == waterLevel && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((((((pumpRunning == \old(pumpRunning) && waterLevel == 1) || \old(pumpRunning) == 0) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((!(\old(waterLevel) <= 1) || \old(pumpRunning) == 0) || 0 == systemActive) || (pumpRunning == \old(pumpRunning) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel))))) || (pumpRunning == 0 && waterLevel <= 1))) && ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || ((!(waterLevel == 1) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || 0 == systemActive) [2022-11-19 07:15:55,325 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(waterLevel <= 2)) || 0 == systemActive) && ((pumpRunning == \old(pumpRunning) || !(waterLevel <= 1)) || 0 == systemActive) [2022-11-19 07:15:55,326 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(waterLevel <= 2)) || 0 == systemActive) && ((pumpRunning == \old(pumpRunning) || !(waterLevel <= 1)) || 0 == systemActive) [2022-11-19 07:15:55,326 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(waterLevel) <= 1) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && !(0 == systemActive))) || \old(pumpRunning) == 0) || ((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && !(0 == systemActive))) || 0 == systemActive) && (((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && !(0 == systemActive))) || ((!(waterLevel == 1) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || ((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && !(0 == systemActive))) || 0 == systemActive) || !(\old(waterLevel) <= 2))) && ((((\old(pumpRunning) == 0 || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || !(pumpRunning == 0)) || methaneLevelCritical == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(tmp == 0)) [2022-11-19 07:15:55,326 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((pumpRunning == \old(pumpRunning) && waterLevel == 1) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel == 1) && !(0 == systemActive))) || \old(waterLevel) < 2) || \old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((!(pumpRunning == 0) || methaneLevelCritical == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(tmp == 0)) || ((!(\old(pumpRunning) == 0) && pumpRunning == 0) && !(0 == systemActive)))) && ((((!(\old(waterLevel) <= 1) || \old(pumpRunning) == 0) || 0 == systemActive) || (pumpRunning == \old(pumpRunning) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel))))) || (pumpRunning == 0 && waterLevel <= 1))) && ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || ((!(waterLevel == 1) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-11-19 07:15:55,327 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0 && 0 <= tmp) && methaneLevelCritical == aux-isMethaneAlarm()-aux) || !(waterLevel <= 1)) || 0 == systemActive) && ((\old(pumpRunning) == 0 || !(waterLevel <= 1)) || 0 == systemActive)) && ((((!(\old(pumpRunning) == 0) || !(waterLevel <= 2)) || waterLevel < 2) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 1) && methaneLevelCritical == aux-isMethaneAlarm()-aux))) && (!(waterLevel == 1) || 0 == systemActive) [2022-11-19 07:15:55,328 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\old(waterLevel) <= 1) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || \old(pumpRunning) == 0) || 0 == systemActive) || (((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && tmp___0 <= 1) && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && !(0 == systemActive))) && ((((\old(pumpRunning) == 0 || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((!(\old(waterLevel) <= 1) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || (((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && tmp___0 <= 1) && !(0 == systemActive))) || (!(waterLevel == 1) && tmp___0 <= 1)) || 0 == systemActive)) && ((((!(\old(waterLevel) <= 1) || !(pumpRunning == 0)) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || methaneLevelCritical == 0) || 0 == systemActive)) && (((((((!(pumpRunning == 0) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1)) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || (((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && tmp___0 <= 1) && !(0 == systemActive))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && tmp___0 <= 1) && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && !(0 == systemActive))) [2022-11-19 07:15:55,328 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: 0 == systemActive || !(\old(waterLevel) <= 2) [2022-11-19 07:15:55,357 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/witness.graphml [2022-11-19 07:15:55,357 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-19 07:15:55,358 INFO L158 Benchmark]: Toolchain (without parser) took 103013.61ms. Allocated memory was 125.8MB in the beginning and 780.1MB in the end (delta: 654.3MB). Free memory was 94.5MB in the beginning and 378.3MB in the end (delta: -283.8MB). Peak memory consumption was 369.3MB. Max. memory is 16.1GB. [2022-11-19 07:15:55,358 INFO L158 Benchmark]: CDTParser took 0.29ms. Allocated memory is still 90.2MB. Free memory was 46.1MB in the beginning and 46.1MB in the end (delta: 46.4kB). There was no memory consumed. Max. memory is 16.1GB. [2022-11-19 07:15:55,359 INFO L158 Benchmark]: CACSL2BoogieTranslator took 784.93ms. Allocated memory is still 125.8MB. Free memory was 94.2MB in the beginning and 94.5MB in the end (delta: -207.4kB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2022-11-19 07:15:55,359 INFO L158 Benchmark]: Boogie Procedure Inliner took 88.11ms. Allocated memory is still 125.8MB. Free memory was 94.5MB in the beginning and 92.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-19 07:15:55,360 INFO L158 Benchmark]: Boogie Preprocessor took 61.20ms. Allocated memory is still 125.8MB. Free memory was 92.4MB in the beginning and 90.7MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-19 07:15:55,360 INFO L158 Benchmark]: RCFGBuilder took 865.64ms. Allocated memory is still 125.8MB. Free memory was 90.7MB in the beginning and 97.9MB in the end (delta: -7.2MB). Peak memory consumption was 28.0MB. Max. memory is 16.1GB. [2022-11-19 07:15:55,360 INFO L158 Benchmark]: TraceAbstraction took 101115.27ms. Allocated memory was 125.8MB in the beginning and 780.1MB in the end (delta: 654.3MB). Free memory was 96.6MB in the beginning and 384.6MB in the end (delta: -287.9MB). Peak memory consumption was 486.7MB. Max. memory is 16.1GB. [2022-11-19 07:15:55,361 INFO L158 Benchmark]: Witness Printer took 86.39ms. Allocated memory is still 780.1MB. Free memory was 384.6MB in the beginning and 378.3MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-11-19 07:15:55,363 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.29ms. Allocated memory is still 90.2MB. Free memory was 46.1MB in the beginning and 46.1MB in the end (delta: 46.4kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 784.93ms. Allocated memory is still 125.8MB. Free memory was 94.2MB in the beginning and 94.5MB in the end (delta: -207.4kB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 88.11ms. Allocated memory is still 125.8MB. Free memory was 94.5MB in the beginning and 92.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 61.20ms. Allocated memory is still 125.8MB. Free memory was 92.4MB in the beginning and 90.7MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 865.64ms. Allocated memory is still 125.8MB. Free memory was 90.7MB in the beginning and 97.9MB in the end (delta: -7.2MB). Peak memory consumption was 28.0MB. Max. memory is 16.1GB. * TraceAbstraction took 101115.27ms. Allocated memory was 125.8MB in the beginning and 780.1MB in the end (delta: 654.3MB). Free memory was 96.6MB in the beginning and 384.6MB in the end (delta: -287.9MB). Peak memory consumption was 486.7MB. Max. memory is 16.1GB. * Witness Printer took 86.39ms. Allocated memory is still 780.1MB. Free memory was 384.6MB in the beginning and 378.3MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 477]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 75 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 100.9s, OverallIterations: 11, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 15.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 35.2s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3606 SdHoareTripleChecker+Valid, 7.0s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3538 mSDsluCounter, 4776 SdHoareTripleChecker+Invalid, 5.8s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 3790 mSDsCounter, 2059 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 6421 IncrementalHoareTripleChecker+Invalid, 8480 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 2059 mSolverCounterUnsat, 986 mSDtfsCounter, 6421 mSolverCounterSat, 0.2s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 729 GetRequests, 401 SyntacticMatches, 25 SemanticMatches, 303 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9875 ImplicationChecksByTransitivity, 38.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=2682occurred in iteration=10, InterpolantAutomatonStates: 216, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 1.4s AutomataMinimizationTime, 11 MinimizatonAttempts, 983 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 43 LocationsWithAnnotation, 5286 PreInvPairs, 6481 NumberOfFragments, 1792 HoareAnnotationTreeSize, 5286 FomulaSimplifications, 67913 FormulaSimplificationTreeSizeReduction, 6.7s HoareSimplificationTime, 43 FomulaSimplificationsInter, 316836 FormulaSimplificationTreeSizeReductionInter, 28.1s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 7.1s InterpolantComputationTime, 684 NumberOfCodeBlocks, 684 NumberOfCodeBlocksAsserted, 14 NumberOfCheckSat, 787 ConstructedInterpolants, 0 QuantifiedInterpolants, 3108 SizeOfPredicates, 35 NumberOfNonLiveVariables, 891 ConjunctsInSsa, 69 ConjunctsInUnsatCore, 16 InterpolantComputations, 9 PerfectInterpolantSequences, 151/202 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 254]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0 && 0 <= tmp) && methaneLevelCritical == aux-isMethaneAlarm()-aux) || !(waterLevel <= 1)) || 0 == systemActive) && ((\old(pumpRunning) == 0 || !(waterLevel <= 1)) || 0 == systemActive)) && ((((!(\old(pumpRunning) == 0) || !(waterLevel <= 2)) || waterLevel < 2) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 1) && methaneLevelCritical == aux-isMethaneAlarm()-aux))) && (!(waterLevel == 1) || 0 == systemActive) - InvariantResult [Line: 63]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 483]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 216]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || \old(waterLevel) < 2) || (\old(waterLevel) == waterLevel && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((((((pumpRunning == \old(pumpRunning) && waterLevel == 1) || \old(pumpRunning) == 0) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((!(\old(waterLevel) <= 1) || \old(pumpRunning) == 0) || 0 == systemActive) || (pumpRunning == \old(pumpRunning) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel))))) || (pumpRunning == 0 && waterLevel <= 1))) && ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || ((!(waterLevel == 1) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || 0 == systemActive) - InvariantResult [Line: 493]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 194]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(waterLevel <= 2)) || 0 == systemActive) && ((pumpRunning == \old(pumpRunning) || !(waterLevel <= 1)) || 0 == systemActive) - InvariantResult [Line: 132]: Loop Invariant Derived loop invariant: ((pumpRunning == \old(pumpRunning) && \old(waterLevel) == waterLevel) || 0 == systemActive) || !(\old(waterLevel) <= 2) - InvariantResult [Line: 477]: Loop Invariant Derived loop invariant: 0 == systemActive || !(\old(waterLevel) <= 2) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: ((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 2) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1)) && tmp == systemActive) || (((tmp == 1 && waterLevel <= 1) && splverifierCounter == 0) && tmp == systemActive) - InvariantResult [Line: 596]: Loop Invariant Derived loop invariant: (((((((!(\old(waterLevel) <= 1) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || \old(pumpRunning) == 0) || 0 == systemActive) || (((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && tmp___0 <= 1) && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && !(0 == systemActive))) && ((((\old(pumpRunning) == 0 || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((!(\old(waterLevel) <= 1) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || (((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && tmp___0 <= 1) && !(0 == systemActive))) || (!(waterLevel == 1) && tmp___0 <= 1)) || 0 == systemActive)) && ((((!(\old(waterLevel) <= 1) || !(pumpRunning == 0)) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || methaneLevelCritical == 0) || 0 == systemActive)) && (((((((!(pumpRunning == 0) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1)) || ((((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp___0 <= 1) && !(0 == systemActive))) || (((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && tmp___0 <= 1) && !(0 == systemActive))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && tmp___0 <= 1) && ((\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)) || \old(waterLevel) == waterLevel)) && !(0 == systemActive))) - InvariantResult [Line: 54]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 567]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && 1 == systemActive) && methaneLevelCritical <= 0) && 0 <= methaneLevelCritical) && waterLevel == 1) && tmp == systemActive - InvariantResult [Line: 590]: Loop Invariant Derived loop invariant: ((((((!(\old(waterLevel) <= 1) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && !(0 == systemActive))) || \old(pumpRunning) == 0) || ((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && !(0 == systemActive))) || 0 == systemActive) && (((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel <= 1) && !(0 == systemActive))) || ((!(waterLevel == 1) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || ((((pumpRunning == \old(pumpRunning) && !(pumpRunning == 0)) && waterLevel <= 1) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel)))) && !(0 == systemActive))) || 0 == systemActive) || !(\old(waterLevel) <= 2))) && ((((\old(pumpRunning) == 0 || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((((!(\old(pumpRunning) == 0) || !(pumpRunning == 0)) || methaneLevelCritical == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(tmp == 0)) - InvariantResult [Line: 581]: Loop Invariant Derived loop invariant: ((((((((pumpRunning == \old(pumpRunning) && waterLevel == 1) || (((!(\old(pumpRunning) == 0) && pumpRunning == 0) && waterLevel == 1) && !(0 == systemActive))) || \old(waterLevel) < 2) || \old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((!(pumpRunning == 0) || methaneLevelCritical == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(tmp == 0)) || ((!(\old(pumpRunning) == 0) && pumpRunning == 0) && !(0 == systemActive)))) && ((((!(\old(waterLevel) <= 1) || \old(pumpRunning) == 0) || 0 == systemActive) || (pumpRunning == \old(pumpRunning) && ((!(0 < \old(waterLevel)) && \old(waterLevel) == waterLevel) || (\old(waterLevel) == waterLevel + 1 && 0 < \old(waterLevel))))) || (pumpRunning == 0 && waterLevel <= 1))) && ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || ((!(waterLevel == 1) && \old(waterLevel) == waterLevel) && ((1 <= methaneLevelCritical || methaneLevelCritical + 1 <= 0) || pumpRunning == 1))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 168]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(waterLevel <= 2)) || 0 == systemActive) && ((pumpRunning == \old(pumpRunning) || !(waterLevel <= 1)) || 0 == systemActive) - InvariantResult [Line: 567]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2022-11-19 07:15:55,399 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e19ba854-23fc-435e-924b-c59fe53fcc65/bin/utaipan-I9t0OCRTmS/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE