./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product33.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 4e7fbc69 Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product33.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash fff07e5b9817da9e6fd154070162cff001ebe527349ae31a2f1e574ef0fb9f98 --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-4e7fbc6 [2022-11-23 14:24:52,459 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-23 14:24:52,461 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-23 14:24:52,502 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-23 14:24:52,502 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-23 14:24:52,506 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-23 14:24:52,509 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-23 14:24:52,514 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-23 14:24:52,517 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-23 14:24:52,522 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-23 14:24:52,524 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-23 14:24:52,525 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-23 14:24:52,526 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-23 14:24:52,529 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-23 14:24:52,531 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-23 14:24:52,534 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-23 14:24:52,536 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-23 14:24:52,537 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-23 14:24:52,538 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-23 14:24:52,546 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-23 14:24:52,549 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-23 14:24:52,551 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-23 14:24:52,553 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-23 14:24:52,554 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-23 14:24:52,563 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-23 14:24:52,564 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-23 14:24:52,565 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-23 14:24:52,567 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-23 14:24:52,568 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-23 14:24:52,570 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-23 14:24:52,571 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-23 14:24:52,572 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-23 14:24:52,574 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-23 14:24:52,576 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-23 14:24:52,578 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-23 14:24:52,578 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-23 14:24:52,580 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-23 14:24:52,580 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-23 14:24:52,580 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-23 14:24:52,582 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-23 14:24:52,583 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-23 14:24:52,584 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/config/svcomp-Reach-32bit-Taipan_Default.epf [2022-11-23 14:24:52,633 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-23 14:24:52,633 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-23 14:24:52,634 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-23 14:24:52,634 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-23 14:24:52,635 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-23 14:24:52,635 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-23 14:24:52,635 INFO L138 SettingsManager]: * User list type=DISABLED [2022-11-23 14:24:52,636 INFO L136 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2022-11-23 14:24:52,636 INFO L138 SettingsManager]: * Explicit value domain=true [2022-11-23 14:24:52,636 INFO L138 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2022-11-23 14:24:52,637 INFO L138 SettingsManager]: * Octagon Domain=false [2022-11-23 14:24:52,637 INFO L138 SettingsManager]: * Abstract domain=CompoundDomain [2022-11-23 14:24:52,638 INFO L138 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2022-11-23 14:24:52,638 INFO L138 SettingsManager]: * Use the RCFG-of-the-future interface=true [2022-11-23 14:24:52,638 INFO L138 SettingsManager]: * Interval Domain=false [2022-11-23 14:24:52,638 INFO L136 SettingsManager]: Preferences of Sifa differ from their defaults: [2022-11-23 14:24:52,638 INFO L138 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2022-11-23 14:24:52,639 INFO L138 SettingsManager]: * Simplification Technique=POLY_PAC [2022-11-23 14:24:52,639 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-23 14:24:52,640 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-23 14:24:52,640 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-23 14:24:52,640 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-23 14:24:52,640 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-23 14:24:52,640 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-23 14:24:52,641 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-23 14:24:52,641 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-23 14:24:52,641 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-23 14:24:52,642 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-23 14:24:52,642 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-23 14:24:52,642 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-23 14:24:52,642 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-23 14:24:52,643 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-23 14:24:52,643 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-23 14:24:52,643 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-23 14:24:52,643 INFO L138 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES [2022-11-23 14:24:52,643 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-23 14:24:52,644 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-23 14:24:52,644 INFO L138 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2022-11-23 14:24:52,644 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-23 14:24:52,644 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-23 14:24:52,644 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2022-11-23 14:24:52,645 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> fff07e5b9817da9e6fd154070162cff001ebe527349ae31a2f1e574ef0fb9f98 [2022-11-23 14:24:52,968 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-23 14:24:52,999 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-23 14:24:53,005 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-23 14:24:53,007 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-23 14:24:53,007 INFO L275 PluginConnector]: CDTParser initialized [2022-11-23 14:24:53,009 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/../../sv-benchmarks/c/product-lines/minepump_spec5_product33.cil.c [2022-11-23 14:24:56,110 INFO L500 CDTParser]: Created temporary CDT project at NULL [2022-11-23 14:24:56,376 INFO L351 CDTParser]: Found 1 translation units. [2022-11-23 14:24:56,377 INFO L172 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/sv-benchmarks/c/product-lines/minepump_spec5_product33.cil.c [2022-11-23 14:24:56,388 INFO L394 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/data/8a94caac3/e040b412dca44de9bbf18c9d6d25d25d/FLAG6ccd52846 [2022-11-23 14:24:56,403 INFO L402 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/data/8a94caac3/e040b412dca44de9bbf18c9d6d25d25d [2022-11-23 14:24:56,406 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-23 14:24:56,408 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-23 14:24:56,409 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-23 14:24:56,409 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-23 14:24:56,415 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-23 14:24:56,416 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:56,417 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@360bc0a2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56, skipping insertion in model container [2022-11-23 14:24:56,417 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:56,427 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-23 14:24:56,474 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-23 14:24:56,712 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/sv-benchmarks/c/product-lines/minepump_spec5_product33.cil.c[16170,16183] [2022-11-23 14:24:56,729 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-23 14:24:56,747 INFO L203 MainTranslator]: Completed pre-run [2022-11-23 14:24:56,868 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/sv-benchmarks/c/product-lines/minepump_spec5_product33.cil.c[16170,16183] [2022-11-23 14:24:56,880 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-23 14:24:56,905 INFO L208 MainTranslator]: Completed translation [2022-11-23 14:24:56,906 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56 WrapperNode [2022-11-23 14:24:56,907 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-23 14:24:56,908 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-23 14:24:56,908 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-23 14:24:56,909 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-23 14:24:56,916 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:56,941 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:56,976 INFO L138 Inliner]: procedures = 54, calls = 96, calls flagged for inlining = 22, calls inlined = 18, statements flattened = 172 [2022-11-23 14:24:56,976 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-23 14:24:56,977 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-23 14:24:56,977 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-23 14:24:56,978 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-23 14:24:56,988 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:56,989 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:56,999 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:57,000 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:57,004 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:57,014 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:57,015 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:57,016 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:57,019 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-23 14:24:57,020 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-23 14:24:57,020 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-23 14:24:57,020 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-23 14:24:57,021 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (1/1) ... [2022-11-23 14:24:57,038 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-23 14:24:57,050 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 14:24:57,068 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-23 14:24:57,074 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-23 14:24:57,110 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-23 14:24:57,110 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-23 14:24:57,111 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-23 14:24:57,111 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-23 14:24:57,111 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-23 14:24:57,111 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-23 14:24:57,111 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-23 14:24:57,112 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-23 14:24:57,112 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-23 14:24:57,112 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2022-11-23 14:24:57,112 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2022-11-23 14:24:57,112 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-23 14:24:57,113 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-23 14:24:57,113 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-23 14:24:57,113 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-23 14:24:57,113 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-23 14:24:57,216 INFO L235 CfgBuilder]: Building ICFG [2022-11-23 14:24:57,218 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-23 14:24:57,494 INFO L276 CfgBuilder]: Performing block encoding [2022-11-23 14:24:57,715 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-23 14:24:57,715 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-23 14:24:57,719 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 02:24:57 BoogieIcfgContainer [2022-11-23 14:24:57,719 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-23 14:24:57,723 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-23 14:24:57,723 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-23 14:24:57,727 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-23 14:24:57,727 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 23.11 02:24:56" (1/3) ... [2022-11-23 14:24:57,728 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@75bfdc55 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 02:24:57, skipping insertion in model container [2022-11-23 14:24:57,728 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 02:24:56" (2/3) ... [2022-11-23 14:24:57,730 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@75bfdc55 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 02:24:57, skipping insertion in model container [2022-11-23 14:24:57,730 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 02:24:57" (3/3) ... [2022-11-23 14:24:57,732 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product33.cil.c [2022-11-23 14:24:57,750 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-23 14:24:57,750 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-23 14:24:57,798 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-23 14:24:57,804 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@781c4433, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-23 14:24:57,805 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-23 14:24:57,809 INFO L276 IsEmpty]: Start isEmpty. Operand has 51 states, 33 states have (on average 1.4242424242424243) internal successors, (47), 39 states have internal predecessors, (47), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) [2022-11-23 14:24:57,818 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2022-11-23 14:24:57,818 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:24:57,819 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:24:57,820 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:24:57,824 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:24:57,824 INFO L85 PathProgramCache]: Analyzing trace with hash -1112445725, now seen corresponding path program 1 times [2022-11-23 14:24:57,832 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:24:57,833 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [40183096] [2022-11-23 14:24:57,833 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:24:57,833 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:24:57,989 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:24:58,125 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 14:24:58,125 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:24:58,125 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [40183096] [2022-11-23 14:24:58,126 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [40183096] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:24:58,126 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 14:24:58,127 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-23 14:24:58,128 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1082402918] [2022-11-23 14:24:58,129 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:24:58,146 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-23 14:24:58,147 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:24:58,241 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-23 14:24:58,242 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-23 14:24:58,245 INFO L87 Difference]: Start difference. First operand has 51 states, 33 states have (on average 1.4242424242424243) internal successors, (47), 39 states have internal predecessors, (47), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-23 14:24:58,348 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:24:58,350 INFO L93 Difference]: Finished difference Result 100 states and 135 transitions. [2022-11-23 14:24:58,352 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-23 14:24:58,354 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 21 [2022-11-23 14:24:58,354 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:24:58,364 INFO L225 Difference]: With dead ends: 100 [2022-11-23 14:24:58,364 INFO L226 Difference]: Without dead ends: 46 [2022-11-23 14:24:58,368 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-23 14:24:58,373 INFO L413 NwaCegarLoop]: 49 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 49 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 14:24:58,375 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 49 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 14:24:58,393 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 46 states. [2022-11-23 14:24:58,417 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 46 to 46. [2022-11-23 14:24:58,419 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 46 states, 30 states have (on average 1.3) internal successors, (39), 35 states have internal predecessors, (39), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2022-11-23 14:24:58,424 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 46 states to 46 states and 58 transitions. [2022-11-23 14:24:58,427 INFO L78 Accepts]: Start accepts. Automaton has 46 states and 58 transitions. Word has length 21 [2022-11-23 14:24:58,427 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:24:58,428 INFO L495 AbstractCegarLoop]: Abstraction has 46 states and 58 transitions. [2022-11-23 14:24:58,428 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.0) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-23 14:24:58,429 INFO L276 IsEmpty]: Start isEmpty. Operand 46 states and 58 transitions. [2022-11-23 14:24:58,432 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2022-11-23 14:24:58,432 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:24:58,432 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:24:58,433 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-23 14:24:58,433 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:24:58,434 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:24:58,434 INFO L85 PathProgramCache]: Analyzing trace with hash 39519704, now seen corresponding path program 1 times [2022-11-23 14:24:58,434 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:24:58,434 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [827146887] [2022-11-23 14:24:58,435 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:24:58,435 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:24:58,467 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:24:58,652 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 14:24:58,653 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:24:58,653 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [827146887] [2022-11-23 14:24:58,653 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [827146887] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:24:58,654 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 14:24:58,654 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-23 14:24:58,659 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2139712790] [2022-11-23 14:24:58,659 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:24:58,660 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-23 14:24:58,661 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:24:58,662 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-23 14:24:58,662 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-23 14:24:58,663 INFO L87 Difference]: Start difference. First operand 46 states and 58 transitions. Second operand has 4 states, 4 states have (on average 4.5) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-23 14:24:58,800 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:24:58,801 INFO L93 Difference]: Finished difference Result 90 states and 117 transitions. [2022-11-23 14:24:58,804 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-23 14:24:58,805 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.5) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 24 [2022-11-23 14:24:58,806 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:24:58,807 INFO L225 Difference]: With dead ends: 90 [2022-11-23 14:24:58,808 INFO L226 Difference]: Without dead ends: 46 [2022-11-23 14:24:58,809 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-23 14:24:58,810 INFO L413 NwaCegarLoop]: 40 mSDtfsCounter, 52 mSDsluCounter, 17 mSDsCounter, 0 mSdLazyCounter, 43 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 57 SdHoareTripleChecker+Invalid, 50 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 43 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 14:24:58,811 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 57 Invalid, 50 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 43 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 14:24:58,812 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 46 states. [2022-11-23 14:24:58,819 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 46 to 46. [2022-11-23 14:24:58,819 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 46 states, 30 states have (on average 1.2666666666666666) internal successors, (38), 35 states have internal predecessors, (38), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2022-11-23 14:24:58,820 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 46 states to 46 states and 57 transitions. [2022-11-23 14:24:58,821 INFO L78 Accepts]: Start accepts. Automaton has 46 states and 57 transitions. Word has length 24 [2022-11-23 14:24:58,822 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:24:58,822 INFO L495 AbstractCegarLoop]: Abstraction has 46 states and 57 transitions. [2022-11-23 14:24:58,822 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.5) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-23 14:24:58,823 INFO L276 IsEmpty]: Start isEmpty. Operand 46 states and 57 transitions. [2022-11-23 14:24:58,823 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-11-23 14:24:58,824 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:24:58,824 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:24:58,824 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-23 14:24:58,824 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:24:58,825 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:24:58,825 INFO L85 PathProgramCache]: Analyzing trace with hash 1697461728, now seen corresponding path program 1 times [2022-11-23 14:24:58,825 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:24:58,825 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [685967861] [2022-11-23 14:24:58,826 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:24:58,826 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:24:58,839 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:24:58,922 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 14:24:58,922 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:24:58,923 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [685967861] [2022-11-23 14:24:58,923 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [685967861] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:24:58,924 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 14:24:58,925 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-23 14:24:58,925 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [784593830] [2022-11-23 14:24:58,925 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:24:58,926 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-23 14:24:58,926 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:24:58,928 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-23 14:24:58,928 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-23 14:24:58,929 INFO L87 Difference]: Start difference. First operand 46 states and 57 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-23 14:24:58,975 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:24:58,975 INFO L93 Difference]: Finished difference Result 69 states and 85 transitions. [2022-11-23 14:24:58,976 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-23 14:24:58,976 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 25 [2022-11-23 14:24:58,976 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:24:58,977 INFO L225 Difference]: With dead ends: 69 [2022-11-23 14:24:58,977 INFO L226 Difference]: Without dead ends: 38 [2022-11-23 14:24:58,978 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-23 14:24:58,979 INFO L413 NwaCegarLoop]: 34 mSDtfsCounter, 7 mSDsluCounter, 25 mSDsCounter, 0 mSdLazyCounter, 21 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 59 SdHoareTripleChecker+Invalid, 21 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 21 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 14:24:58,980 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 59 Invalid, 21 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 21 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 14:24:58,981 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 38 states. [2022-11-23 14:24:58,988 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 38 to 38. [2022-11-23 14:24:58,991 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 38 states, 25 states have (on average 1.28) internal successors, (32), 30 states have internal predecessors, (32), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2022-11-23 14:24:58,992 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 38 states to 38 states and 46 transitions. [2022-11-23 14:24:58,992 INFO L78 Accepts]: Start accepts. Automaton has 38 states and 46 transitions. Word has length 25 [2022-11-23 14:24:58,992 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:24:58,993 INFO L495 AbstractCegarLoop]: Abstraction has 38 states and 46 transitions. [2022-11-23 14:24:58,993 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-23 14:24:58,995 INFO L276 IsEmpty]: Start isEmpty. Operand 38 states and 46 transitions. [2022-11-23 14:24:58,996 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2022-11-23 14:24:58,996 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:24:58,997 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:24:58,997 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-23 14:24:58,997 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:24:58,998 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:24:58,999 INFO L85 PathProgramCache]: Analyzing trace with hash -1484265307, now seen corresponding path program 1 times [2022-11-23 14:24:58,999 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:24:59,000 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1290179448] [2022-11-23 14:24:59,000 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:24:59,001 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:24:59,033 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:24:59,362 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 14:24:59,363 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:24:59,363 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1290179448] [2022-11-23 14:24:59,363 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1290179448] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:24:59,364 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 14:24:59,365 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-11-23 14:24:59,365 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1000824188] [2022-11-23 14:24:59,365 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:24:59,366 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-23 14:24:59,367 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:24:59,367 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-23 14:24:59,368 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=18, Unknown=0, NotChecked=0, Total=30 [2022-11-23 14:24:59,368 INFO L87 Difference]: Start difference. First operand 38 states and 46 transitions. Second operand has 6 states, 6 states have (on average 3.5) internal successors, (21), 6 states have internal predecessors, (21), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-23 14:24:59,597 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:24:59,597 INFO L93 Difference]: Finished difference Result 136 states and 171 transitions. [2022-11-23 14:24:59,597 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-23 14:24:59,598 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.5) internal successors, (21), 6 states have internal predecessors, (21), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 27 [2022-11-23 14:24:59,598 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:24:59,602 INFO L225 Difference]: With dead ends: 136 [2022-11-23 14:24:59,603 INFO L226 Difference]: Without dead ends: 100 [2022-11-23 14:24:59,603 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=26, Unknown=0, NotChecked=0, Total=42 [2022-11-23 14:24:59,614 INFO L413 NwaCegarLoop]: 63 mSDtfsCounter, 76 mSDsluCounter, 127 mSDsCounter, 0 mSdLazyCounter, 91 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 79 SdHoareTripleChecker+Valid, 190 SdHoareTripleChecker+Invalid, 103 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 91 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 14:24:59,615 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [79 Valid, 190 Invalid, 103 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 91 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 14:24:59,616 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2022-11-23 14:24:59,648 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 91. [2022-11-23 14:24:59,649 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 91 states, 62 states have (on average 1.2903225806451613) internal successors, (80), 69 states have internal predecessors, (80), 16 states have call successors, (16), 12 states have call predecessors, (16), 12 states have return successors, (19), 14 states have call predecessors, (19), 16 states have call successors, (19) [2022-11-23 14:24:59,650 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 91 states to 91 states and 115 transitions. [2022-11-23 14:24:59,651 INFO L78 Accepts]: Start accepts. Automaton has 91 states and 115 transitions. Word has length 27 [2022-11-23 14:24:59,651 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:24:59,651 INFO L495 AbstractCegarLoop]: Abstraction has 91 states and 115 transitions. [2022-11-23 14:24:59,652 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.5) internal successors, (21), 6 states have internal predecessors, (21), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-23 14:24:59,652 INFO L276 IsEmpty]: Start isEmpty. Operand 91 states and 115 transitions. [2022-11-23 14:24:59,653 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2022-11-23 14:24:59,653 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:24:59,653 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:24:59,654 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-23 14:24:59,654 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:24:59,655 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:24:59,655 INFO L85 PathProgramCache]: Analyzing trace with hash -492411847, now seen corresponding path program 1 times [2022-11-23 14:24:59,655 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:24:59,655 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [407834934] [2022-11-23 14:24:59,655 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:24:59,656 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:24:59,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:24:59,775 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-23 14:24:59,775 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:24:59,775 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [407834934] [2022-11-23 14:24:59,775 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [407834934] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 14:24:59,775 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1257607480] [2022-11-23 14:24:59,776 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:24:59,776 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 14:24:59,776 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 14:24:59,783 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 14:24:59,790 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-11-23 14:24:59,884 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:24:59,886 INFO L263 TraceCheckSpWp]: Trace formula consists of 183 conjuncts, 7 conjunts are in the unsatisfiable core [2022-11-23 14:24:59,891 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 14:24:59,941 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 14:24:59,941 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2022-11-23 14:24:59,942 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1257607480] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:24:59,942 INFO L184 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2022-11-23 14:24:59,942 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [6] total 7 [2022-11-23 14:24:59,942 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [346730746] [2022-11-23 14:24:59,943 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:24:59,943 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-23 14:24:59,943 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:24:59,944 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-23 14:24:59,944 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-11-23 14:24:59,944 INFO L87 Difference]: Start difference. First operand 91 states and 115 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-23 14:24:59,998 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:24:59,998 INFO L93 Difference]: Finished difference Result 204 states and 256 transitions. [2022-11-23 14:24:59,999 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-23 14:24:59,999 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 29 [2022-11-23 14:24:59,999 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:25:00,001 INFO L225 Difference]: With dead ends: 204 [2022-11-23 14:25:00,001 INFO L226 Difference]: Without dead ends: 129 [2022-11-23 14:25:00,002 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 34 GetRequests, 29 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-11-23 14:25:00,003 INFO L413 NwaCegarLoop]: 40 mSDtfsCounter, 28 mSDsluCounter, 31 mSDsCounter, 0 mSdLazyCounter, 22 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 28 SdHoareTripleChecker+Valid, 71 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 22 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-23 14:25:00,003 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [28 Valid, 71 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 22 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-23 14:25:00,004 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 129 states. [2022-11-23 14:25:00,024 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 129 to 127. [2022-11-23 14:25:00,024 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 127 states, 85 states have (on average 1.2470588235294118) internal successors, (106), 93 states have internal predecessors, (106), 23 states have call successors, (23), 20 states have call predecessors, (23), 18 states have return successors, (26), 20 states have call predecessors, (26), 23 states have call successors, (26) [2022-11-23 14:25:00,026 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 127 states to 127 states and 155 transitions. [2022-11-23 14:25:00,026 INFO L78 Accepts]: Start accepts. Automaton has 127 states and 155 transitions. Word has length 29 [2022-11-23 14:25:00,026 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:25:00,026 INFO L495 AbstractCegarLoop]: Abstraction has 127 states and 155 transitions. [2022-11-23 14:25:00,027 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-23 14:25:00,027 INFO L276 IsEmpty]: Start isEmpty. Operand 127 states and 155 transitions. [2022-11-23 14:25:00,028 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2022-11-23 14:25:00,028 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:25:00,028 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:25:00,039 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-11-23 14:25:00,234 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 14:25:00,234 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:25:00,235 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:25:00,235 INFO L85 PathProgramCache]: Analyzing trace with hash 191376061, now seen corresponding path program 1 times [2022-11-23 14:25:00,235 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:25:00,235 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [788535257] [2022-11-23 14:25:00,235 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:25:00,235 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:25:00,250 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:25:00,334 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-11-23 14:25:00,334 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:25:00,334 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [788535257] [2022-11-23 14:25:00,335 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [788535257] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:25:00,335 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 14:25:00,335 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-11-23 14:25:00,335 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2004512990] [2022-11-23 14:25:00,335 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:25:00,336 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-23 14:25:00,336 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:25:00,336 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-23 14:25:00,336 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-11-23 14:25:00,337 INFO L87 Difference]: Start difference. First operand 127 states and 155 transitions. Second operand has 6 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-23 14:25:00,484 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:25:00,484 INFO L93 Difference]: Finished difference Result 242 states and 303 transitions. [2022-11-23 14:25:00,485 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-11-23 14:25:00,485 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) Word has length 30 [2022-11-23 14:25:00,486 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:25:00,487 INFO L225 Difference]: With dead ends: 242 [2022-11-23 14:25:00,487 INFO L226 Difference]: Without dead ends: 131 [2022-11-23 14:25:00,492 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2022-11-23 14:25:00,495 INFO L413 NwaCegarLoop]: 41 mSDtfsCounter, 33 mSDsluCounter, 133 mSDsCounter, 0 mSdLazyCounter, 90 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 174 SdHoareTripleChecker+Invalid, 92 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 90 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 14:25:00,495 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 174 Invalid, 92 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 90 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 14:25:00,497 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2022-11-23 14:25:00,533 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 125. [2022-11-23 14:25:00,535 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 125 states, 83 states have (on average 1.2048192771084338) internal successors, (100), 91 states have internal predecessors, (100), 23 states have call successors, (23), 20 states have call predecessors, (23), 18 states have return successors, (26), 20 states have call predecessors, (26), 23 states have call successors, (26) [2022-11-23 14:25:00,538 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 125 states to 125 states and 149 transitions. [2022-11-23 14:25:00,538 INFO L78 Accepts]: Start accepts. Automaton has 125 states and 149 transitions. Word has length 30 [2022-11-23 14:25:00,539 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:25:00,539 INFO L495 AbstractCegarLoop]: Abstraction has 125 states and 149 transitions. [2022-11-23 14:25:00,539 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-23 14:25:00,539 INFO L276 IsEmpty]: Start isEmpty. Operand 125 states and 149 transitions. [2022-11-23 14:25:00,549 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2022-11-23 14:25:00,549 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:25:00,550 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:25:00,550 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-23 14:25:00,550 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:25:00,550 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:25:00,551 INFO L85 PathProgramCache]: Analyzing trace with hash 914518043, now seen corresponding path program 1 times [2022-11-23 14:25:00,551 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:25:00,551 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1111697377] [2022-11-23 14:25:00,551 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:25:00,551 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:25:00,576 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:25:00,826 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 14:25:00,826 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:25:00,827 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1111697377] [2022-11-23 14:25:00,827 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1111697377] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:25:00,827 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 14:25:00,827 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-23 14:25:00,827 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [250940829] [2022-11-23 14:25:00,828 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:25:00,828 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-23 14:25:00,828 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:25:00,829 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-23 14:25:00,829 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2022-11-23 14:25:00,830 INFO L87 Difference]: Start difference. First operand 125 states and 149 transitions. Second operand has 8 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-23 14:25:01,374 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:25:01,374 INFO L93 Difference]: Finished difference Result 371 states and 454 transitions. [2022-11-23 14:25:01,375 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2022-11-23 14:25:01,375 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 30 [2022-11-23 14:25:01,377 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:25:01,384 INFO L225 Difference]: With dead ends: 371 [2022-11-23 14:25:01,385 INFO L226 Difference]: Without dead ends: 262 [2022-11-23 14:25:01,385 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 37 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=77, Invalid=163, Unknown=0, NotChecked=0, Total=240 [2022-11-23 14:25:01,386 INFO L413 NwaCegarLoop]: 60 mSDtfsCounter, 172 mSDsluCounter, 157 mSDsCounter, 0 mSdLazyCounter, 220 mSolverCounterSat, 81 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 178 SdHoareTripleChecker+Valid, 217 SdHoareTripleChecker+Invalid, 301 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 81 IncrementalHoareTripleChecker+Valid, 220 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-23 14:25:01,387 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [178 Valid, 217 Invalid, 301 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [81 Valid, 220 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-11-23 14:25:01,389 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 262 states. [2022-11-23 14:25:01,447 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 262 to 248. [2022-11-23 14:25:01,449 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 248 states, 167 states have (on average 1.18562874251497) internal successors, (198), 184 states have internal predecessors, (198), 43 states have call successors, (43), 36 states have call predecessors, (43), 37 states have return successors, (51), 39 states have call predecessors, (51), 43 states have call successors, (51) [2022-11-23 14:25:01,450 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 248 states to 248 states and 292 transitions. [2022-11-23 14:25:01,450 INFO L78 Accepts]: Start accepts. Automaton has 248 states and 292 transitions. Word has length 30 [2022-11-23 14:25:01,451 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:25:01,451 INFO L495 AbstractCegarLoop]: Abstraction has 248 states and 292 transitions. [2022-11-23 14:25:01,451 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.142857142857143) internal successors, (22), 7 states have internal predecessors, (22), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-11-23 14:25:01,451 INFO L276 IsEmpty]: Start isEmpty. Operand 248 states and 292 transitions. [2022-11-23 14:25:01,453 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2022-11-23 14:25:01,453 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:25:01,453 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:25:01,454 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-23 14:25:01,454 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:25:01,455 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:25:01,455 INFO L85 PathProgramCache]: Analyzing trace with hash -1959472969, now seen corresponding path program 1 times [2022-11-23 14:25:01,455 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:25:01,455 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1324873008] [2022-11-23 14:25:01,456 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:25:01,456 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:25:01,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:25:01,653 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 13 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-23 14:25:01,653 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:25:01,653 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1324873008] [2022-11-23 14:25:01,658 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1324873008] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 14:25:01,658 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [12839824] [2022-11-23 14:25:01,658 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:25:01,659 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 14:25:01,659 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 14:25:01,660 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 14:25:01,683 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-11-23 14:25:01,749 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:25:01,751 INFO L263 TraceCheckSpWp]: Trace formula consists of 269 conjuncts, 8 conjunts are in the unsatisfiable core [2022-11-23 14:25:01,753 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 14:25:01,897 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 16 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-23 14:25:01,897 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 14:25:02,082 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 13 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2022-11-23 14:25:02,082 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [12839824] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 14:25:02,082 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [630792684] [2022-11-23 14:25:02,101 INFO L159 IcfgInterpreter]: Started Sifa with 34 locations of interest [2022-11-23 14:25:02,102 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 14:25:02,105 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 14:25:02,111 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 14:25:02,111 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 14:25:04,882 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 54 for LOIs [2022-11-23 14:25:04,893 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 29 for LOIs [2022-11-23 14:25:05,081 INFO L197 IcfgInterpreter]: Interpreting procedure isPumpRunning with input of size 57 for LOIs [2022-11-23 14:25:05,097 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 30 for LOIs [2022-11-23 14:25:05,099 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 14:25:08,465 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '3536#(and (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) (= ~methaneLevelCritical~0 0) (<= 0 (+ 2147483648 |old(~pumpRunning~0)|)) (= ~head~0.offset 0) (= |timeShift_getWaterLevel_~retValue_acc~10#1| ~waterLevel~0) (<= |old(~pumpRunning~0)| 2147483647) (= 1 ~systemActive~0) (= ~pumpRunning~0 |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1|) (= |timeShift___utac_acc__Specification5_spec__3_~tmp~7#1| |timeShift_getWaterLevel_#res#1|) (= ~head~0.base 0) (= |#NULL.offset| 0) (<= 0 (+ |timeShift___utac_acc__Specification5_spec__3_~tmp~7#1| 2147483648)) (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp~7#1| 2)) (<= 0 (+ |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1| 2147483648)) (<= |timeShift_getWaterLevel_~retValue_acc~10#1| 2147483647) (<= |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1| 2147483647) (= |timeShift_getWaterLevel_~retValue_acc~10#1| |timeShift_getWaterLevel_#res#1|) (= ~switchedOnBeforeTS~0 0) (<= 0 |#StackHeapBarrier|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-23 14:25:08,465 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 14:25:08,465 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 14:25:08,466 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 6, 6] total 13 [2022-11-23 14:25:08,466 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [294879025] [2022-11-23 14:25:08,466 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 14:25:08,466 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2022-11-23 14:25:08,467 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:25:08,467 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2022-11-23 14:25:08,467 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=165, Invalid=1317, Unknown=0, NotChecked=0, Total=1482 [2022-11-23 14:25:08,468 INFO L87 Difference]: Start difference. First operand 248 states and 292 transitions. Second operand has 13 states, 10 states have (on average 6.5) internal successors, (65), 11 states have internal predecessors, (65), 5 states have call successors, (14), 4 states have call predecessors, (14), 7 states have return successors, (13), 7 states have call predecessors, (13), 5 states have call successors, (13) [2022-11-23 14:25:09,030 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:25:09,030 INFO L93 Difference]: Finished difference Result 455 states and 553 transitions. [2022-11-23 14:25:09,035 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2022-11-23 14:25:09,035 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 10 states have (on average 6.5) internal successors, (65), 11 states have internal predecessors, (65), 5 states have call successors, (14), 4 states have call predecessors, (14), 7 states have return successors, (13), 7 states have call predecessors, (13), 5 states have call successors, (13) Word has length 52 [2022-11-23 14:25:09,036 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:25:09,038 INFO L225 Difference]: With dead ends: 455 [2022-11-23 14:25:09,038 INFO L226 Difference]: Without dead ends: 92 [2022-11-23 14:25:09,040 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 182 GetRequests, 129 SyntacticMatches, 4 SemanticMatches, 49 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 794 ImplicationChecksByTransitivity, 3.6s TimeCoverageRelationStatistics Valid=274, Invalid=2276, Unknown=0, NotChecked=0, Total=2550 [2022-11-23 14:25:09,042 INFO L413 NwaCegarLoop]: 78 mSDtfsCounter, 115 mSDsluCounter, 370 mSDsCounter, 0 mSdLazyCounter, 347 mSolverCounterSat, 67 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 448 SdHoareTripleChecker+Invalid, 414 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 67 IncrementalHoareTripleChecker+Valid, 347 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-11-23 14:25:09,042 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [123 Valid, 448 Invalid, 414 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [67 Valid, 347 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-11-23 14:25:09,043 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 92 states. [2022-11-23 14:25:09,051 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 92 to 88. [2022-11-23 14:25:09,051 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 88 states, 60 states have (on average 1.1333333333333333) internal successors, (68), 65 states have internal predecessors, (68), 15 states have call successors, (15), 13 states have call predecessors, (15), 12 states have return successors, (15), 13 states have call predecessors, (15), 15 states have call successors, (15) [2022-11-23 14:25:09,053 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 88 states to 88 states and 98 transitions. [2022-11-23 14:25:09,053 INFO L78 Accepts]: Start accepts. Automaton has 88 states and 98 transitions. Word has length 52 [2022-11-23 14:25:09,053 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:25:09,053 INFO L495 AbstractCegarLoop]: Abstraction has 88 states and 98 transitions. [2022-11-23 14:25:09,054 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 10 states have (on average 6.5) internal successors, (65), 11 states have internal predecessors, (65), 5 states have call successors, (14), 4 states have call predecessors, (14), 7 states have return successors, (13), 7 states have call predecessors, (13), 5 states have call successors, (13) [2022-11-23 14:25:09,054 INFO L276 IsEmpty]: Start isEmpty. Operand 88 states and 98 transitions. [2022-11-23 14:25:09,055 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2022-11-23 14:25:09,055 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:25:09,055 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:25:09,063 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-11-23 14:25:09,263 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 14:25:09,264 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:25:09,264 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:25:09,264 INFO L85 PathProgramCache]: Analyzing trace with hash -1274609029, now seen corresponding path program 1 times [2022-11-23 14:25:09,264 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:25:09,264 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [201335492] [2022-11-23 14:25:09,264 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:25:09,265 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:25:09,280 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:25:09,511 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 16 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2022-11-23 14:25:09,511 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:25:09,511 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [201335492] [2022-11-23 14:25:09,511 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [201335492] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-23 14:25:09,512 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-23 14:25:09,512 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-23 14:25:09,512 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [99050093] [2022-11-23 14:25:09,512 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-23 14:25:09,513 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-23 14:25:09,513 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:25:09,513 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-23 14:25:09,513 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2022-11-23 14:25:09,514 INFO L87 Difference]: Start difference. First operand 88 states and 98 transitions. Second operand has 8 states, 8 states have (on average 4.75) internal successors, (38), 8 states have internal predecessors, (38), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2022-11-23 14:25:09,651 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:25:09,651 INFO L93 Difference]: Finished difference Result 174 states and 199 transitions. [2022-11-23 14:25:09,652 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-11-23 14:25:09,652 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.75) internal successors, (38), 8 states have internal predecessors, (38), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) Word has length 53 [2022-11-23 14:25:09,652 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:25:09,654 INFO L225 Difference]: With dead ends: 174 [2022-11-23 14:25:09,654 INFO L226 Difference]: Without dead ends: 102 [2022-11-23 14:25:09,654 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=28, Invalid=44, Unknown=0, NotChecked=0, Total=72 [2022-11-23 14:25:09,657 INFO L413 NwaCegarLoop]: 27 mSDtfsCounter, 69 mSDsluCounter, 64 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 35 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 91 SdHoareTripleChecker+Invalid, 143 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 35 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-23 14:25:09,657 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [70 Valid, 91 Invalid, 143 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [35 Valid, 108 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-23 14:25:09,658 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 102 states. [2022-11-23 14:25:09,672 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 102 to 90. [2022-11-23 14:25:09,673 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 90 states, 61 states have (on average 1.1311475409836065) internal successors, (69), 67 states have internal predecessors, (69), 15 states have call successors, (15), 13 states have call predecessors, (15), 13 states have return successors, (16), 13 states have call predecessors, (16), 15 states have call successors, (16) [2022-11-23 14:25:09,674 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 90 states to 90 states and 100 transitions. [2022-11-23 14:25:09,674 INFO L78 Accepts]: Start accepts. Automaton has 90 states and 100 transitions. Word has length 53 [2022-11-23 14:25:09,675 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:25:09,675 INFO L495 AbstractCegarLoop]: Abstraction has 90 states and 100 transitions. [2022-11-23 14:25:09,675 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.75) internal successors, (38), 8 states have internal predecessors, (38), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2022-11-23 14:25:09,675 INFO L276 IsEmpty]: Start isEmpty. Operand 90 states and 100 transitions. [2022-11-23 14:25:09,677 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2022-11-23 14:25:09,677 INFO L187 NwaCegarLoop]: Found error trace [2022-11-23 14:25:09,678 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:25:09,678 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-11-23 14:25:09,678 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-23 14:25:09,679 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-23 14:25:09,679 INFO L85 PathProgramCache]: Analyzing trace with hash 1498541628, now seen corresponding path program 1 times [2022-11-23 14:25:09,679 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2022-11-23 14:25:09,679 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2207455] [2022-11-23 14:25:09,679 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:25:09,680 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-23 14:25:09,709 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:25:10,257 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 6 proven. 13 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-23 14:25:10,257 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2022-11-23 14:25:10,257 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2207455] [2022-11-23 14:25:10,258 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2207455] provided 0 perfect and 1 imperfect interpolant sequences [2022-11-23 14:25:10,258 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1435377152] [2022-11-23 14:25:10,258 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-23 14:25:10,258 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-11-23 14:25:10,258 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 [2022-11-23 14:25:10,259 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-11-23 14:25:10,283 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-11-23 14:25:10,351 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-23 14:25:10,353 INFO L263 TraceCheckSpWp]: Trace formula consists of 300 conjuncts, 35 conjunts are in the unsatisfiable core [2022-11-23 14:25:10,356 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-11-23 14:25:10,842 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 9 proven. 20 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2022-11-23 14:25:10,843 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-11-23 14:25:11,367 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 17 proven. 2 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2022-11-23 14:25:11,367 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1435377152] provided 0 perfect and 2 imperfect interpolant sequences [2022-11-23 14:25:11,367 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [287156748] [2022-11-23 14:25:11,374 INFO L159 IcfgInterpreter]: Started Sifa with 34 locations of interest [2022-11-23 14:25:11,374 INFO L166 IcfgInterpreter]: Building call graph [2022-11-23 14:25:11,374 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2022-11-23 14:25:11,374 INFO L176 IcfgInterpreter]: Starting interpretation [2022-11-23 14:25:11,374 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2022-11-23 14:25:13,952 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 33 for LOIs [2022-11-23 14:25:13,956 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 32 for LOIs [2022-11-23 14:25:14,688 INFO L197 IcfgInterpreter]: Interpreting procedure isPumpRunning with input of size 26 for LOIs [2022-11-23 14:25:14,690 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 27 for LOIs [2022-11-23 14:25:14,692 INFO L180 IcfgInterpreter]: Interpretation finished [2022-11-23 14:25:19,776 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '5227#(and (<= |timeShift_processEnvironment_~tmp~4#1| 1) (<= |timeShift_isHighWaterLevel_#res#1| 1) (<= 0 |timeShift_isHighWaterLevel_#res#1|) (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) (<= ~pumpRunning~0 1) (<= 0 |timeShift_isHighWaterLevel_~tmp~5#1|) (<= |timeShift_isHighWaterSensorDry_#res#1| 1) (= ~methaneLevelCritical~0 0) (<= |timeShift_isHighWaterLevel_~tmp~5#1| 1) (<= 0 |old(~switchedOnBeforeTS~0)|) (= ~head~0.offset 0) (<= 0 |timeShift_isHighWaterSensorDry_#res#1|) (= 1 ~systemActive~0) (<= |old(~switchedOnBeforeTS~0)| 0) (<= 0 |timeShift_isHighWaterLevel_~retValue_acc~5#1|) (= |old(~pumpRunning~0)| 0) (<= 0 (+ ~waterLevel~0 2147483648)) (<= |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1| 1) (<= 0 |timeShift_isHighWaterLevel_~tmp___0~1#1|) (<= 0 (+ 2147483648 |timeShift_getWaterLevel_#res#1|)) (<= 0 |timeShift_processEnvironment_~tmp~4#1|) (<= ~waterLevel~0 2147483647) (<= |timeShift_getWaterLevel_#res#1| 2147483647) (<= 0 ~pumpRunning~0) (<= 0 (+ |timeShift_getWaterLevel_~retValue_acc~10#1| 2147483648)) (= ~head~0.base 0) (<= |timeShift_isHighWaterSensorDry_~retValue_acc~11#1| 1) (= |#NULL.offset| 0) (<= 0 (+ |timeShift___utac_acc__Specification5_spec__3_~tmp~7#1| 2147483648)) (<= |timeShift_isHighWaterLevel_~tmp___0~1#1| 1) (<= 0 |timeShift_isHighWaterSensorDry_~retValue_acc~11#1|) (<= |timeShift___utac_acc__Specification5_spec__3_~tmp~7#1| 2147483647) (<= |timeShift_getWaterLevel_~retValue_acc~10#1| 2147483647) (<= 0 |timeShift___utac_acc__Specification5_spec__3_~tmp___0~2#1|) (= ~switchedOnBeforeTS~0 0) (<= |timeShift_isHighWaterLevel_~retValue_acc~5#1| 1) (<= 0 |#StackHeapBarrier|) (= ~cleanupTimeShifts~0 4) (= |#NULL.base| 0))' at error location [2022-11-23 14:25:19,776 WARN L310 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2022-11-23 14:25:19,776 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-11-23 14:25:19,776 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 13, 13] total 30 [2022-11-23 14:25:19,777 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1428105148] [2022-11-23 14:25:19,777 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-11-23 14:25:19,777 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2022-11-23 14:25:19,778 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2022-11-23 14:25:19,778 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2022-11-23 14:25:19,783 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=464, Invalid=2398, Unknown=0, NotChecked=0, Total=2862 [2022-11-23 14:25:19,784 INFO L87 Difference]: Start difference. First operand 90 states and 100 transitions. Second operand has 30 states, 28 states have (on average 3.642857142857143) internal successors, (102), 28 states have internal predecessors, (102), 13 states have call successors, (22), 11 states have call predecessors, (22), 10 states have return successors, (20), 10 states have call predecessors, (20), 13 states have call successors, (20) [2022-11-23 14:25:20,438 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-23 14:25:20,438 INFO L93 Difference]: Finished difference Result 111 states and 124 transitions. [2022-11-23 14:25:20,439 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2022-11-23 14:25:20,439 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 28 states have (on average 3.642857142857143) internal successors, (102), 28 states have internal predecessors, (102), 13 states have call successors, (22), 11 states have call predecessors, (22), 10 states have return successors, (20), 10 states have call predecessors, (20), 13 states have call successors, (20) Word has length 58 [2022-11-23 14:25:20,440 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-23 14:25:20,440 INFO L225 Difference]: With dead ends: 111 [2022-11-23 14:25:20,440 INFO L226 Difference]: Without dead ends: 0 [2022-11-23 14:25:20,441 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 198 GetRequests, 126 SyntacticMatches, 10 SemanticMatches, 62 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1630 ImplicationChecksByTransitivity, 5.9s TimeCoverageRelationStatistics Valid=701, Invalid=3331, Unknown=0, NotChecked=0, Total=4032 [2022-11-23 14:25:20,442 INFO L413 NwaCegarLoop]: 26 mSDtfsCounter, 217 mSDsluCounter, 107 mSDsCounter, 0 mSdLazyCounter, 230 mSolverCounterSat, 135 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 217 SdHoareTripleChecker+Valid, 133 SdHoareTripleChecker+Invalid, 365 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 135 IncrementalHoareTripleChecker+Valid, 230 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-23 14:25:20,442 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [217 Valid, 133 Invalid, 365 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [135 Valid, 230 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-23 14:25:20,443 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-23 14:25:20,443 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-23 14:25:20,443 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-23 14:25:20,443 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-23 14:25:20,443 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 58 [2022-11-23 14:25:20,443 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-23 14:25:20,443 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-23 14:25:20,443 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 28 states have (on average 3.642857142857143) internal successors, (102), 28 states have internal predecessors, (102), 13 states have call successors, (22), 11 states have call predecessors, (22), 10 states have return successors, (20), 10 states have call predecessors, (20), 13 states have call successors, (20) [2022-11-23 14:25:20,444 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-23 14:25:20,444 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-23 14:25:20,446 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-23 14:25:20,457 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-11-23 14:25:20,647 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2022-11-23 14:25:20,649 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-23 14:25:24,042 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 525 531) no Hoare annotation was computed. [2022-11-23 14:25:24,042 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 525 531) the Hoare annotation is: true [2022-11-23 14:25:24,042 INFO L902 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 822 833) the Hoare annotation is: true [2022-11-23 14:25:24,042 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 822 833) no Hoare annotation was computed. [2022-11-23 14:25:24,043 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 689 718) no Hoare annotation was computed. [2022-11-23 14:25:24,043 INFO L899 garLoopResultBuilder]: For program point L703(lines 703 707) no Hoare annotation was computed. [2022-11-23 14:25:24,043 INFO L902 garLoopResultBuilder]: At program point L703-1(lines 703 707) the Hoare annotation is: true [2022-11-23 14:25:24,043 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 689 718) the Hoare annotation is: true [2022-11-23 14:25:24,043 INFO L902 garLoopResultBuilder]: At program point L699-2(lines 699 713) the Hoare annotation is: true [2022-11-23 14:25:24,043 INFO L902 garLoopResultBuilder]: At program point L695(line 695) the Hoare annotation is: true [2022-11-23 14:25:24,043 INFO L899 garLoopResultBuilder]: For program point L695-1(line 695) no Hoare annotation was computed. [2022-11-23 14:25:24,043 INFO L902 garLoopResultBuilder]: At program point L714(lines 689 718) the Hoare annotation is: true [2022-11-23 14:25:24,043 INFO L899 garLoopResultBuilder]: For program point L710(line 710) no Hoare annotation was computed. [2022-11-23 14:25:24,044 INFO L895 garLoopResultBuilder]: At program point L919(line 919) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0)) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 (= ~waterLevel~0 1) .cse3 .cse4) (or (not (<= |old(~waterLevel~0)| 1)) .cse5 (not (= 1 ~systemActive~0)) (not (<= 1 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~4#1| 0) .cse1 (not (= |timeShift___utac_acc__Specification5_spec__3_~tmp~7#1| 2)))) (or (and (<= 1 ~switchedOnBeforeTS~0) (= ~pumpRunning~0 1)) .cse0 .cse2) (or .cse5 .cse2 .cse3 .cse4))) [2022-11-23 14:25:24,044 INFO L899 garLoopResultBuilder]: For program point L919-1(line 919) no Hoare annotation was computed. [2022-11-23 14:25:24,044 INFO L895 garLoopResultBuilder]: At program point L552(line 552) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (not (<= |old(~waterLevel~0)| 2))) (.cse3 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1 (= ~waterLevel~0 1) .cse2 .cse3) (or (and (<= 1 ~switchedOnBeforeTS~0) (= ~pumpRunning~0 1)) .cse0 .cse1) (or .cse4 (not (= |old(~waterLevel~0)| 1)) (not (= 1 ~systemActive~0))) (or .cse4 .cse1 .cse2 .cse3))) [2022-11-23 14:25:24,045 INFO L895 garLoopResultBuilder]: At program point L552-1(lines 533 557) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse5 (= ~pumpRunning~0 1)) (.cse6 (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~4#1| 0) .cse1)) (.cse7 (not (= |old(~pumpRunning~0)| 0))) (.cse8 (not (= 1 ~systemActive~0))) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 (= ~waterLevel~0 1) .cse3 .cse4) (or (and (<= 1 ~switchedOnBeforeTS~0) .cse5) .cse0 .cse2) (or .cse6 .cse7 .cse2 .cse3 (and .cse1 .cse5) .cse4) (or .cse6 (not (<= |old(~waterLevel~0)| 1)) .cse7 .cse8 (not (<= 1 |old(~waterLevel~0)|))) (or .cse7 (= |timeShift_processEnvironment_~tmp~4#1| 1) .cse8 .cse3 .cse4)))) [2022-11-23 14:25:24,045 INFO L895 garLoopResultBuilder]: At program point L904(line 904) the Hoare annotation is: (let ((.cse2 (= ~waterLevel~0 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (not (<= |old(~waterLevel~0)| 2))) (.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse4 (not (= |old(~pumpRunning~0)| 1))) (.cse5 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (not (= 1 ~systemActive~0)) (and .cse1 .cse2)) (or (and (or .cse3 .cse2) (= ~pumpRunning~0 1)) .cse4 .cse5) (or .cse4 .cse3 .cse5 .cse6 .cse7) (or .cse0 (and .cse1 .cse3) .cse5 .cse6 .cse7) (or (not (= ~switchedOnBeforeTS~0 0)) .cse4 .cse5 (= |old(~switchedOnBeforeTS~0)| 0)) (or .cse4 .cse5 (<= 1 ~switchedOnBeforeTS~0) (not (<= 1 |old(~switchedOnBeforeTS~0)|))))) [2022-11-23 14:25:24,046 INFO L895 garLoopResultBuilder]: At program point L904-1(line 904) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (and (= ~pumpRunning~0 0) .cse1)) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or (not (<= |old(~waterLevel~0)| 1)) .cse5 .cse6 (not (= 1 ~systemActive~0)) (not (<= 1 |old(~waterLevel~0)|))) (or (and (<= 1 |timeShift___utac_acc__Specification5_spec__2_#t~ret49#1|) (or .cse1 (= ~waterLevel~0 1)) (= ~pumpRunning~0 1)) .cse0 .cse2) (or .cse5 .cse6 .cse2 .cse3 .cse4) (or (not (= ~switchedOnBeforeTS~0 0)) .cse0 .cse2 (= |old(~switchedOnBeforeTS~0)| 0)) (or .cse0 .cse2 (<= 1 ~switchedOnBeforeTS~0) (not (<= 1 |old(~switchedOnBeforeTS~0)|)))))) [2022-11-23 14:25:24,046 INFO L895 garLoopResultBuilder]: At program point L512-1(lines 512 518) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse5 (= ~pumpRunning~0 1)) (.cse6 (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~4#1| 0) .cse1)) (.cse7 (not (= |old(~pumpRunning~0)| 0))) (.cse8 (not (= 1 ~systemActive~0))) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 (= ~waterLevel~0 1) .cse3 .cse4) (or (and (<= 1 ~switchedOnBeforeTS~0) .cse5) .cse0 .cse2) (or .cse6 .cse7 .cse2 .cse3 (and .cse1 .cse5) .cse4) (or .cse6 (not (<= |old(~waterLevel~0)| 1)) .cse7 .cse8 (not (<= 1 |old(~waterLevel~0)|))) (or .cse7 (= |timeShift_processEnvironment_~tmp~4#1| 1) .cse8 .cse3 .cse4)))) [2022-11-23 14:25:24,046 INFO L895 garLoopResultBuilder]: At program point L541(lines 541 549) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse5 (not (<= |old(~waterLevel~0)| 2))) (.cse6 (not (<= 2 |old(~waterLevel~0)|))) (.cse4 (= 0 ~systemActive~0))) (and (or (and .cse0 (= |timeShift_processEnvironment_~tmp~4#1| 0) .cse1) (not (<= |old(~waterLevel~0)| 1)) .cse2 .cse3 (not (<= 1 |old(~waterLevel~0)|))) (or .cse2 (and .cse0 .cse1) .cse4 .cse5 .cse6) (or .cse2 (= |timeShift_processEnvironment_~tmp~4#1| 1) .cse3 .cse5 .cse6) (or (not (= |old(~pumpRunning~0)| 1)) .cse4))) [2022-11-23 14:25:24,047 INFO L895 garLoopResultBuilder]: At program point L537(lines 537 554) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (and (= ~pumpRunning~0 0) .cse1)) (.cse2 (= 0 ~systemActive~0)) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 (= ~waterLevel~0 1) .cse3 .cse4) (or (and (<= 1 ~switchedOnBeforeTS~0) (= ~pumpRunning~0 1)) .cse0 .cse2) (or (not (<= |old(~waterLevel~0)| 1)) .cse5 .cse6 (not (= 1 ~systemActive~0)) (not (<= 1 |old(~waterLevel~0)|))) (or .cse5 .cse6 .cse2 .cse3 .cse4)))) [2022-11-23 14:25:24,047 INFO L899 garLoopResultBuilder]: For program point L921(lines 921 931) no Hoare annotation was computed. [2022-11-23 14:25:24,047 INFO L899 garLoopResultBuilder]: For program point L917(lines 917 934) no Hoare annotation was computed. [2022-11-23 14:25:24,047 INFO L895 garLoopResultBuilder]: At program point L917-1(lines 909 937) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse8 (= ~pumpRunning~0 0)) (.cse10 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~7#1| 2)) (.cse9 (= |timeShift_processEnvironment_~tmp~4#1| 0)) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (not (= 1 ~systemActive~0))) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse5 (= ~pumpRunning~0 1)) (.cse4 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 (= ~waterLevel~0 1) .cse3 .cse4) (or (and (<= 1 ~switchedOnBeforeTS~0) .cse5) .cse0 .cse2) (or .cse6 (not (= |old(~waterLevel~0)| 1)) .cse7 (and .cse8 .cse9 .cse1 (not .cse10))) (or .cse6 (and .cse10 .cse1 .cse5) .cse2 .cse3 (and .cse8 .cse10 .cse9 .cse1) .cse4) (or .cse6 .cse7 .cse3 .cse5 .cse4))) [2022-11-23 14:25:24,048 INFO L899 garLoopResultBuilder]: For program point L922(lines 922 928) no Hoare annotation was computed. [2022-11-23 14:25:24,048 INFO L899 garLoopResultBuilder]: For program point L505-2(lines 501 523) no Hoare annotation was computed. [2022-11-23 14:25:24,048 INFO L895 garLoopResultBuilder]: At program point L790(line 790) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (not (= 1 ~systemActive~0))) (or .cse0 .cse1 (not (<= |old(~waterLevel~0)| 2)) (not (<= 2 |old(~waterLevel~0)|))) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2022-11-23 14:25:24,048 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 498 524) the Hoare annotation is: (let ((.cse2 (= ~waterLevel~0 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (not (<= |old(~waterLevel~0)| 2))) (.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse4 (not (= |old(~pumpRunning~0)| 1))) (.cse5 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (not (= 1 ~systemActive~0)) (and .cse1 .cse2)) (or (and (or .cse3 .cse2) (= ~pumpRunning~0 1)) .cse4 .cse5) (or .cse4 .cse3 .cse5 .cse6 .cse7) (or .cse0 (and .cse1 .cse3) .cse5 .cse6 .cse7) (or (not (= ~switchedOnBeforeTS~0 0)) .cse4 .cse5 (= |old(~switchedOnBeforeTS~0)| 0)) (or .cse4 .cse5 (<= 1 ~switchedOnBeforeTS~0) (not (<= 1 |old(~switchedOnBeforeTS~0)|))))) [2022-11-23 14:25:24,049 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 498 524) no Hoare annotation was computed. [2022-11-23 14:25:24,049 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 790) no Hoare annotation was computed. [2022-11-23 14:25:24,049 INFO L895 garLoopResultBuilder]: At program point L547(line 547) the Hoare annotation is: (let ((.cse0 (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~4#1| 0) (= |old(~waterLevel~0)| ~waterLevel~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (= 1 ~systemActive~0))) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 (not (<= |old(~waterLevel~0)| 1)) .cse1 .cse5 (not (<= 1 |old(~waterLevel~0)|))) (or .cse1 .cse5 .cse3 .cse4) (or (not (= |old(~pumpRunning~0)| 1)) .cse2))) [2022-11-23 14:25:24,049 INFO L895 garLoopResultBuilder]: At program point L473(lines 430 475) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~6#1| ~systemActive~0))) (or (and .cse0 .cse1 .cse2 (= ~pumpRunning~0 1)) (and .cse0 .cse3 (<= 2 ~waterLevel~0) .cse1 (<= ~waterLevel~0 2) .cse2) (and .cse3 (= 1 ~systemActive~0) .cse1 (= ~waterLevel~0 1) .cse2))) [2022-11-23 14:25:24,050 INFO L899 garLoopResultBuilder]: For program point L440(lines 440 446) no Hoare annotation was computed. [2022-11-23 14:25:24,050 INFO L899 garLoopResultBuilder]: For program point L440-1(lines 440 446) no Hoare annotation was computed. [2022-11-23 14:25:24,050 INFO L902 garLoopResultBuilder]: At program point ULTIMATE.startENTRY(line -1) the Hoare annotation is: true [2022-11-23 14:25:24,050 INFO L895 garLoopResultBuilder]: At program point L466-2(lines 460 471) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| ~systemActive~0))) (or (and (= |ULTIMATE.start_main_~tmp~6#1| 1) .cse0 .cse1 (= ~pumpRunning~0 1)) (and .cse2 (<= 2 ~waterLevel~0) .cse3 .cse0 (<= ~waterLevel~0 2) .cse1) (and .cse2 .cse3 .cse0 (= ~waterLevel~0 1) .cse1))) [2022-11-23 14:25:24,050 INFO L895 garLoopResultBuilder]: At program point L772(lines 772 779) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1) (= |ULTIMATE.start_main_~tmp~6#1| ~systemActive~0)) [2022-11-23 14:25:24,050 INFO L899 garLoopResultBuilder]: For program point L450(lines 450 456) no Hoare annotation was computed. [2022-11-23 14:25:24,051 INFO L902 garLoopResultBuilder]: At program point L772-2(lines 772 779) the Hoare annotation is: true [2022-11-23 14:25:24,051 INFO L899 garLoopResultBuilder]: For program point L450-1(lines 450 456) no Hoare annotation was computed. [2022-11-23 14:25:24,051 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-23 14:25:24,051 INFO L902 garLoopResultBuilder]: At program point L479(lines 420 483) the Hoare annotation is: true [2022-11-23 14:25:24,051 INFO L895 garLoopResultBuilder]: At program point L442(line 442) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~6#1| ~systemActive~0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and .cse0 (let ((.cse4 (= ~pumpRunning~0 0))) (or (and .cse4 (<= 2 ~waterLevel~0) .cse1 (<= ~waterLevel~0 2) .cse2 .cse3) (and .cse4 .cse1 (= ~waterLevel~0 1) .cse2 .cse3)))))) [2022-11-23 14:25:24,052 INFO L895 garLoopResultBuilder]: At program point L476(lines 429 477) the Hoare annotation is: false [2022-11-23 14:25:24,052 INFO L899 garLoopResultBuilder]: For program point L431(lines 430 475) no Hoare annotation was computed. [2022-11-23 14:25:24,052 INFO L895 garLoopResultBuilder]: At program point L452(line 452) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| ~systemActive~0))) (or (and (= |ULTIMATE.start_main_~tmp~6#1| 1) .cse0 .cse1 (= ~pumpRunning~0 1)) (and .cse2 (<= 2 ~waterLevel~0) .cse3 .cse0 (<= ~waterLevel~0 2) .cse1) (and .cse2 .cse3 .cse0 (= ~waterLevel~0 1) .cse1))) [2022-11-23 14:25:24,052 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 810 821) no Hoare annotation was computed. [2022-11-23 14:25:24,052 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 810 821) the Hoare annotation is: (let ((.cse3 (= ~waterLevel~0 1)) (.cse0 (not (= ~pumpRunning~0 1))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (= 0 ~systemActive~0)) (.cse5 (not (<= |old(~waterLevel~0)| 2))) (.cse6 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or (let ((.cse4 (not (= ~pumpRunning~0 0)))) (and (or .cse4 .cse2 .cse5 .cse6) (or .cse4 (not (= |old(~waterLevel~0)| 1)) .cse2))) .cse1 .cse3) (or .cse0 .cse1 .cse2 .cse5 .cse6))) [2022-11-23 14:25:24,053 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 585 593) no Hoare annotation was computed. [2022-11-23 14:25:24,053 INFO L902 garLoopResultBuilder]: At program point isPumpRunningENTRY(lines 585 593) the Hoare annotation is: true [2022-11-23 14:25:24,056 INFO L444 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-23 14:25:24,058 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-23 14:25:24,083 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 23.11 02:25:24 BoogieIcfgContainer [2022-11-23 14:25:24,083 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-23 14:25:24,084 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-23 14:25:24,084 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-23 14:25:24,084 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-23 14:25:24,085 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 02:24:57" (3/4) ... [2022-11-23 14:25:24,087 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-23 14:25:24,093 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-23 14:25:24,093 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-23 14:25:24,093 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-23 14:25:24,094 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-23 14:25:24,094 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-23 14:25:24,094 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2022-11-23 14:25:24,100 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 42 nodes and edges [2022-11-23 14:25:24,101 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 13 nodes and edges [2022-11-23 14:25:24,101 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-11-23 14:25:24,102 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-23 14:25:24,102 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-23 14:25:24,128 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((1 <= aux-isPumpRunning()-aux && (\old(waterLevel) == waterLevel || waterLevel == 1)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(switchedOnBeforeTS == 0) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || \old(switchedOnBeforeTS) == 0)) && (((!(\old(pumpRunning) == 1) || 0 == systemActive) || 1 <= switchedOnBeforeTS) || !(1 <= \old(switchedOnBeforeTS))) [2022-11-23 14:25:24,128 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && (((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) <= 1)) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || tmp == 1) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-11-23 14:25:24,129 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || (((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) && !(tmp == 2)))) && (((((!(\old(pumpRunning) == 0) || ((tmp == 2 && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((pumpRunning == 0 && tmp == 2) && tmp == 0) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || pumpRunning == 1) || !(2 <= \old(waterLevel))) [2022-11-23 14:25:24,129 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-11-23 14:25:24,129 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && (((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-11-23 14:25:24,130 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && (((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) <= 1)) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || tmp == 1) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-11-23 14:25:24,130 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) <= 1)) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || tmp == 1) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-11-23 14:25:24,149 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/witness.graphml [2022-11-23 14:25:24,149 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-23 14:25:24,150 INFO L158 Benchmark]: Toolchain (without parser) took 27742.37ms. Allocated memory was 197.1MB in the beginning and 513.8MB in the end (delta: 316.7MB). Free memory was 165.1MB in the beginning and 237.7MB in the end (delta: -72.6MB). Peak memory consumption was 245.8MB. Max. memory is 16.1GB. [2022-11-23 14:25:24,150 INFO L158 Benchmark]: CDTParser took 0.26ms. Allocated memory is still 138.4MB. Free memory is still 80.6MB. There was no memory consumed. Max. memory is 16.1GB. [2022-11-23 14:25:24,150 INFO L158 Benchmark]: CACSL2BoogieTranslator took 498.19ms. Allocated memory is still 197.1MB. Free memory was 164.5MB in the beginning and 146.1MB in the end (delta: 18.4MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2022-11-23 14:25:24,151 INFO L158 Benchmark]: Boogie Procedure Inliner took 68.48ms. Allocated memory is still 197.1MB. Free memory was 146.1MB in the beginning and 144.1MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-23 14:25:24,151 INFO L158 Benchmark]: Boogie Preprocessor took 41.77ms. Allocated memory is still 197.1MB. Free memory was 144.1MB in the beginning and 142.9MB in the end (delta: 1.2MB). There was no memory consumed. Max. memory is 16.1GB. [2022-11-23 14:25:24,151 INFO L158 Benchmark]: RCFGBuilder took 699.80ms. Allocated memory is still 197.1MB. Free memory was 142.7MB in the beginning and 119.9MB in the end (delta: 22.8MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. [2022-11-23 14:25:24,152 INFO L158 Benchmark]: TraceAbstraction took 26360.13ms. Allocated memory was 197.1MB in the beginning and 513.8MB in the end (delta: 316.7MB). Free memory was 119.0MB in the beginning and 241.9MB in the end (delta: -122.9MB). Peak memory consumption was 262.5MB. Max. memory is 16.1GB. [2022-11-23 14:25:24,152 INFO L158 Benchmark]: Witness Printer took 65.42ms. Allocated memory is still 513.8MB. Free memory was 241.9MB in the beginning and 237.7MB in the end (delta: 4.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-11-23 14:25:24,154 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.26ms. Allocated memory is still 138.4MB. Free memory is still 80.6MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 498.19ms. Allocated memory is still 197.1MB. Free memory was 164.5MB in the beginning and 146.1MB in the end (delta: 18.4MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 68.48ms. Allocated memory is still 197.1MB. Free memory was 146.1MB in the beginning and 144.1MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 41.77ms. Allocated memory is still 197.1MB. Free memory was 144.1MB in the beginning and 142.9MB in the end (delta: 1.2MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 699.80ms. Allocated memory is still 197.1MB. Free memory was 142.7MB in the beginning and 119.9MB in the end (delta: 22.8MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. * TraceAbstraction took 26360.13ms. Allocated memory was 197.1MB in the beginning and 513.8MB in the end (delta: 316.7MB). Free memory was 119.0MB in the beginning and 241.9MB in the end (delta: -122.9MB). Peak memory consumption was 262.5MB. Max. memory is 16.1GB. * Witness Printer took 65.42ms. Allocated memory is still 513.8MB. Free memory was 241.9MB in the beginning and 237.7MB in the end (delta: 4.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 790]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 51 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 26.3s, OverallIterations: 10, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.9s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.4s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 792 SdHoareTripleChecker+Valid, 1.4s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 769 mSDsluCounter, 1489 SdHoareTripleChecker+Invalid, 1.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1031 mSDsCounter, 341 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1187 IncrementalHoareTripleChecker+Invalid, 1528 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 341 mSolverCounterUnsat, 458 mSDtfsCounter, 1187 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 470 GetRequests, 303 SyntacticMatches, 14 SemanticMatches, 153 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2473 ImplicationChecksByTransitivity, 10.0s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=248occurred in iteration=7, InterpolantAutomatonStates: 80, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 10 MinimizatonAttempts, 47 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 30 LocationsWithAnnotation, 659 PreInvPairs, 766 NumberOfFragments, 1438 HoareAnnotationTreeSize, 659 FomulaSimplifications, 3304 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 30 FomulaSimplificationsInter, 8489 FormulaSimplificationTreeSizeReductionInter, 3.1s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 3.5s InterpolantComputationTime, 488 NumberOfCodeBlocks, 488 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 583 ConstructedInterpolants, 0 QuantifiedInterpolants, 2065 SizeOfPredicates, 20 NumberOfNonLiveVariables, 752 ConjunctsInSsa, 50 ConjunctsInUnsatCore, 15 InterpolantComputations, 8 PerfectInterpolantSequences, 145/194 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: -1]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 772]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && 1 == systemActive) && waterLevel == 1) && tmp == systemActive - InvariantResult [Line: 537]: Loop Invariant Derived loop invariant: (((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 689]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 430]: Loop Invariant Derived loop invariant: ((((tmp == 1 && splverifierCounter == 0) && tmp == systemActive) && pumpRunning == 1) || (((((tmp == 1 && pumpRunning == 0) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == systemActive)) || ((((pumpRunning == 0 && 1 == systemActive) && splverifierCounter == 0) && waterLevel == 1) && tmp == systemActive) - InvariantResult [Line: 541]: Loop Invariant Derived loop invariant: ((((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) <= 1)) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= \old(waterLevel))) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || tmp == 1) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 790]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && (((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 429]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 533]: Loop Invariant Derived loop invariant: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && (((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) <= 1)) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || tmp == 1) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 909]: Loop Invariant Derived loop invariant: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || (((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) && !(tmp == 2)))) && (((((!(\old(pumpRunning) == 0) || ((tmp == 2 && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((pumpRunning == 0 && tmp == 2) && tmp == 0) && \old(waterLevel) == waterLevel)) || !(2 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || pumpRunning == 1) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 904]: Loop Invariant Derived loop invariant: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((1 <= aux-isPumpRunning()-aux && (\old(waterLevel) == waterLevel || waterLevel == 1)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && ((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(switchedOnBeforeTS == 0) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || \old(switchedOnBeforeTS) == 0)) && (((!(\old(pumpRunning) == 1) || 0 == systemActive) || 1 <= switchedOnBeforeTS) || !(1 <= \old(switchedOnBeforeTS))) - InvariantResult [Line: 699]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 512]: Loop Invariant Derived loop invariant: ((((((((!(\old(pumpRunning) == 1) || \old(waterLevel) == waterLevel) || 0 == systemActive) || waterLevel == 1) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((1 <= switchedOnBeforeTS && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive)) && (((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) || !(2 <= \old(waterLevel)))) && ((((((pumpRunning == 0 && tmp == 0) && \old(waterLevel) == waterLevel) || !(\old(waterLevel) <= 1)) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(1 <= \old(waterLevel)))) && ((((!(\old(pumpRunning) == 0) || tmp == 1) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 772]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 420]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2022-11-23 14:25:24,187 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1c67e959-fdf0-4ca5-8ffd-4764f90b3cb6/bin/utaipan-Q6hlc19bkW/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE