./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product12.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e7bb482b Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product12.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash f629674af99a09af382dbe6cebebcc4fb4b60762fab54c6aa0b3a2dc7cf784d0 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-e7bb482 [2023-11-06 21:59:17,457 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-06 21:59:17,573 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-06 21:59:17,584 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-06 21:59:17,586 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-06 21:59:17,614 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-06 21:59:17,615 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-06 21:59:17,616 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-06 21:59:17,616 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-06 21:59:17,617 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-06 21:59:17,618 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-06 21:59:17,618 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-06 21:59:17,619 INFO L153 SettingsManager]: * Use SBE=true [2023-11-06 21:59:17,620 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-06 21:59:17,620 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-06 21:59:17,621 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-06 21:59:17,621 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-06 21:59:17,622 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-06 21:59:17,622 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-06 21:59:17,623 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-06 21:59:17,624 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-06 21:59:17,624 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-06 21:59:17,625 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-06 21:59:17,626 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-06 21:59:17,626 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-06 21:59:17,627 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-06 21:59:17,627 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-06 21:59:17,628 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-06 21:59:17,628 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 21:59:17,629 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-06 21:59:17,629 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-06 21:59:17,630 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2023-11-06 21:59:17,630 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-06 21:59:17,630 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-06 21:59:17,631 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-06 21:59:17,631 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-06 21:59:17,631 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-06 21:59:17,632 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-06 21:59:17,632 INFO L153 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-11-06 21:59:17,632 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> f629674af99a09af382dbe6cebebcc4fb4b60762fab54c6aa0b3a2dc7cf784d0 [2023-11-06 21:59:17,859 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-06 21:59:17,891 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-06 21:59:17,893 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-06 21:59:17,894 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-06 21:59:17,895 INFO L274 PluginConnector]: CDTParser initialized [2023-11-06 21:59:17,896 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/../../sv-benchmarks/c/product-lines/minepump_spec4_product12.cil.c [2023-11-06 21:59:20,967 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-06 21:59:21,215 INFO L384 CDTParser]: Found 1 translation units. [2023-11-06 21:59:21,216 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/sv-benchmarks/c/product-lines/minepump_spec4_product12.cil.c [2023-11-06 21:59:21,230 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/data/078bceafe/7bd26cff6b604a4fb76d789f34948979/FLAGb92a054a1 [2023-11-06 21:59:21,246 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/data/078bceafe/7bd26cff6b604a4fb76d789f34948979 [2023-11-06 21:59:21,250 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-06 21:59:21,252 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-06 21:59:21,253 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-06 21:59:21,253 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-06 21:59:21,259 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-06 21:59:21,260 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,261 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@77030df8 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21, skipping insertion in model container [2023-11-06 21:59:21,261 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,315 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-06 21:59:21,603 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/sv-benchmarks/c/product-lines/minepump_spec4_product12.cil.c[17234,17247] [2023-11-06 21:59:21,607 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 21:59:21,636 INFO L202 MainTranslator]: Completed pre-run [2023-11-06 21:59:21,646 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] [2023-11-06 21:59:21,648 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [135] [2023-11-06 21:59:21,649 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [163] [2023-11-06 21:59:21,649 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [236] [2023-11-06 21:59:21,649 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [387] [2023-11-06 21:59:21,649 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [425] [2023-11-06 21:59:21,650 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [521] [2023-11-06 21:59:21,650 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [887] [2023-11-06 21:59:21,760 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/sv-benchmarks/c/product-lines/minepump_spec4_product12.cil.c[17234,17247] [2023-11-06 21:59:21,773 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 21:59:21,794 INFO L206 MainTranslator]: Completed translation [2023-11-06 21:59:21,795 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21 WrapperNode [2023-11-06 21:59:21,795 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-06 21:59:21,796 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-06 21:59:21,796 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-06 21:59:21,797 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-06 21:59:21,804 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,853 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,887 INFO L138 Inliner]: procedures = 52, calls = 93, calls flagged for inlining = 23, calls inlined = 17, statements flattened = 143 [2023-11-06 21:59:21,887 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-06 21:59:21,888 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-06 21:59:21,888 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-06 21:59:21,888 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-06 21:59:21,898 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,899 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,900 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,901 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,906 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,911 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,913 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,914 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,916 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-06 21:59:21,917 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-06 21:59:21,918 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-06 21:59:21,918 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-06 21:59:21,919 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (1/1) ... [2023-11-06 21:59:21,930 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 21:59:21,943 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:59:21,955 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-06 21:59:21,958 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-06 21:59:21,992 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-06 21:59:21,993 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-06 21:59:21,993 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-06 21:59:21,993 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-06 21:59:21,993 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-06 21:59:21,994 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-06 21:59:21,994 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-06 21:59:21,994 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-06 21:59:21,994 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-06 21:59:21,994 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-06 21:59:21,994 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-06 21:59:21,995 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-06 21:59:22,068 INFO L236 CfgBuilder]: Building ICFG [2023-11-06 21:59:22,071 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-06 21:59:22,311 INFO L277 CfgBuilder]: Performing block encoding [2023-11-06 21:59:22,318 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-06 21:59:22,319 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-06 21:59:22,321 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:59:22 BoogieIcfgContainer [2023-11-06 21:59:22,321 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-06 21:59:22,324 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-06 21:59:22,324 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-06 21:59:22,328 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-06 21:59:22,328 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.11 09:59:21" (1/3) ... [2023-11-06 21:59:22,329 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6106f9fc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 09:59:22, skipping insertion in model container [2023-11-06 21:59:22,330 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:59:21" (2/3) ... [2023-11-06 21:59:22,330 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6106f9fc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 09:59:22, skipping insertion in model container [2023-11-06 21:59:22,330 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:59:22" (3/3) ... [2023-11-06 21:59:22,331 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product12.cil.c [2023-11-06 21:59:22,351 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-06 21:59:22,351 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-06 21:59:22,407 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-06 21:59:22,414 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@6b434ec7, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-11-06 21:59:22,414 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-06 21:59:22,419 INFO L276 IsEmpty]: Start isEmpty. Operand has 63 states, 51 states have (on average 1.392156862745098) internal successors, (71), 55 states have internal predecessors, (71), 6 states have call successors, (6), 4 states have call predecessors, (6), 4 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) [2023-11-06 21:59:22,427 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-11-06 21:59:22,428 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:59:22,428 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:59:22,429 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:59:22,434 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:59:22,435 INFO L85 PathProgramCache]: Analyzing trace with hash 1188594590, now seen corresponding path program 1 times [2023-11-06 21:59:22,444 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:59:22,445 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [421848862] [2023-11-06 21:59:22,445 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:59:22,445 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:59:22,610 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:22,716 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:59:22,717 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:59:22,717 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [421848862] [2023-11-06 21:59:22,718 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [421848862] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:59:22,718 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:59:22,718 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 21:59:22,719 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1611061277] [2023-11-06 21:59:22,720 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:59:22,726 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-06 21:59:22,727 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:59:22,774 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-06 21:59:22,775 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 21:59:22,778 INFO L87 Difference]: Start difference. First operand has 63 states, 51 states have (on average 1.392156862745098) internal successors, (71), 55 states have internal predecessors, (71), 6 states have call successors, (6), 4 states have call predecessors, (6), 4 states have return successors, (6), 6 states have call predecessors, (6), 6 states have call successors, (6) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:22,808 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:59:22,808 INFO L93 Difference]: Finished difference Result 118 states and 161 transitions. [2023-11-06 21:59:22,809 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-06 21:59:22,810 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2023-11-06 21:59:22,811 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:59:22,818 INFO L225 Difference]: With dead ends: 118 [2023-11-06 21:59:22,819 INFO L226 Difference]: Without dead ends: 54 [2023-11-06 21:59:22,822 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 21:59:22,826 INFO L413 NwaCegarLoop]: 77 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 77 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:59:22,827 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 77 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:59:22,845 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 54 states. [2023-11-06 21:59:22,865 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 54 to 54. [2023-11-06 21:59:22,866 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 54 states, 44 states have (on average 1.2954545454545454) internal successors, (57), 47 states have internal predecessors, (57), 6 states have call successors, (6), 4 states have call predecessors, (6), 3 states have return successors, (5), 5 states have call predecessors, (5), 5 states have call successors, (5) [2023-11-06 21:59:22,868 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 54 states to 54 states and 68 transitions. [2023-11-06 21:59:22,870 INFO L78 Accepts]: Start accepts. Automaton has 54 states and 68 transitions. Word has length 19 [2023-11-06 21:59:22,870 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:59:22,870 INFO L495 AbstractCegarLoop]: Abstraction has 54 states and 68 transitions. [2023-11-06 21:59:22,871 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:22,871 INFO L276 IsEmpty]: Start isEmpty. Operand 54 states and 68 transitions. [2023-11-06 21:59:22,873 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2023-11-06 21:59:22,873 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:59:22,873 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:59:22,874 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-06 21:59:22,874 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:59:22,875 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:59:22,875 INFO L85 PathProgramCache]: Analyzing trace with hash -926361742, now seen corresponding path program 1 times [2023-11-06 21:59:22,875 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:59:22,875 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1358701944] [2023-11-06 21:59:22,875 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:59:22,876 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:59:22,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:22,978 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:59:22,979 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:59:22,979 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1358701944] [2023-11-06 21:59:22,980 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1358701944] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:59:22,980 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:59:22,980 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 21:59:22,980 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [938082848] [2023-11-06 21:59:22,981 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:59:22,982 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 21:59:22,982 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:59:22,983 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 21:59:22,983 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:59:22,984 INFO L87 Difference]: Start difference. First operand 54 states and 68 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:22,997 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:59:22,998 INFO L93 Difference]: Finished difference Result 69 states and 86 transitions. [2023-11-06 21:59:22,998 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 21:59:22,999 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2023-11-06 21:59:22,999 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:59:23,000 INFO L225 Difference]: With dead ends: 69 [2023-11-06 21:59:23,000 INFO L226 Difference]: Without dead ends: 45 [2023-11-06 21:59:23,001 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:59:23,003 INFO L413 NwaCegarLoop]: 55 mSDtfsCounter, 18 mSDsluCounter, 33 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 88 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:59:23,003 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 88 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:59:23,004 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 45 states. [2023-11-06 21:59:23,011 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 45 to 45. [2023-11-06 21:59:23,012 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 45 states, 38 states have (on average 1.3157894736842106) internal successors, (50), 41 states have internal predecessors, (50), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-06 21:59:23,013 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 45 states to 45 states and 56 transitions. [2023-11-06 21:59:23,014 INFO L78 Accepts]: Start accepts. Automaton has 45 states and 56 transitions. Word has length 20 [2023-11-06 21:59:23,014 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:59:23,014 INFO L495 AbstractCegarLoop]: Abstraction has 45 states and 56 transitions. [2023-11-06 21:59:23,014 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:23,015 INFO L276 IsEmpty]: Start isEmpty. Operand 45 states and 56 transitions. [2023-11-06 21:59:23,016 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2023-11-06 21:59:23,016 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:59:23,016 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:59:23,016 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-06 21:59:23,017 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:59:23,018 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:59:23,018 INFO L85 PathProgramCache]: Analyzing trace with hash -953598743, now seen corresponding path program 1 times [2023-11-06 21:59:23,018 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:59:23,018 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [423444307] [2023-11-06 21:59:23,019 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:59:23,019 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:59:23,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:23,241 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:59:23,242 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:59:23,242 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [423444307] [2023-11-06 21:59:23,243 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [423444307] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:59:23,243 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:59:23,244 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 21:59:23,245 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [242863981] [2023-11-06 21:59:23,245 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:59:23,245 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 21:59:23,247 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:59:23,248 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 21:59:23,249 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 21:59:23,250 INFO L87 Difference]: Start difference. First operand 45 states and 56 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:23,380 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:59:23,380 INFO L93 Difference]: Finished difference Result 118 states and 153 transitions. [2023-11-06 21:59:23,381 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 21:59:23,381 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2023-11-06 21:59:23,382 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:59:23,385 INFO L225 Difference]: With dead ends: 118 [2023-11-06 21:59:23,385 INFO L226 Difference]: Without dead ends: 80 [2023-11-06 21:59:23,386 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-06 21:59:23,387 INFO L413 NwaCegarLoop]: 50 mSDtfsCounter, 124 mSDsluCounter, 101 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 124 SdHoareTripleChecker+Valid, 151 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 21:59:23,388 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [124 Valid, 151 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 21:59:23,389 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 80 states. [2023-11-06 21:59:23,405 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 80 to 75. [2023-11-06 21:59:23,405 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 75 states, 62 states have (on average 1.3548387096774193) internal successors, (84), 67 states have internal predecessors, (84), 6 states have call successors, (6), 6 states have call predecessors, (6), 6 states have return successors, (7), 6 states have call predecessors, (7), 6 states have call successors, (7) [2023-11-06 21:59:23,407 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 75 states to 75 states and 97 transitions. [2023-11-06 21:59:23,408 INFO L78 Accepts]: Start accepts. Automaton has 75 states and 97 transitions. Word has length 25 [2023-11-06 21:59:23,408 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:59:23,408 INFO L495 AbstractCegarLoop]: Abstraction has 75 states and 97 transitions. [2023-11-06 21:59:23,408 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:23,408 INFO L276 IsEmpty]: Start isEmpty. Operand 75 states and 97 transitions. [2023-11-06 21:59:23,410 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-11-06 21:59:23,410 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:59:23,410 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:59:23,410 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-06 21:59:23,410 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:59:23,411 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:59:23,411 INFO L85 PathProgramCache]: Analyzing trace with hash -1488202758, now seen corresponding path program 1 times [2023-11-06 21:59:23,411 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:59:23,412 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1006459630] [2023-11-06 21:59:23,412 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:59:23,412 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:59:23,429 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:23,664 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:59:23,665 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:59:23,665 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1006459630] [2023-11-06 21:59:23,665 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1006459630] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:59:23,665 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:59:23,665 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 21:59:23,666 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1244046537] [2023-11-06 21:59:23,666 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:59:23,667 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-06 21:59:23,667 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:59:23,668 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-06 21:59:23,668 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-11-06 21:59:23,668 INFO L87 Difference]: Start difference. First operand 75 states and 97 transitions. Second operand has 8 states, 8 states have (on average 3.125) internal successors, (25), 7 states have internal predecessors, (25), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:23,932 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:59:23,933 INFO L93 Difference]: Finished difference Result 263 states and 369 transitions. [2023-11-06 21:59:23,933 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-06 21:59:23,934 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.125) internal successors, (25), 7 states have internal predecessors, (25), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2023-11-06 21:59:23,934 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:59:23,942 INFO L225 Difference]: With dead ends: 263 [2023-11-06 21:59:23,942 INFO L226 Difference]: Without dead ends: 195 [2023-11-06 21:59:23,947 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=51, Invalid=131, Unknown=0, NotChecked=0, Total=182 [2023-11-06 21:59:23,952 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 140 mSDsluCounter, 259 mSDsCounter, 0 mSdLazyCounter, 81 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 140 SdHoareTripleChecker+Valid, 307 SdHoareTripleChecker+Invalid, 99 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 81 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 21:59:23,953 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [140 Valid, 307 Invalid, 99 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 81 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 21:59:23,955 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 195 states. [2023-11-06 21:59:23,990 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 195 to 189. [2023-11-06 21:59:23,991 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 189 states, 156 states have (on average 1.3333333333333333) internal successors, (208), 167 states have internal predecessors, (208), 16 states have call successors, (16), 16 states have call predecessors, (16), 16 states have return successors, (27), 16 states have call predecessors, (27), 16 states have call successors, (27) [2023-11-06 21:59:23,994 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 189 states to 189 states and 251 transitions. [2023-11-06 21:59:23,994 INFO L78 Accepts]: Start accepts. Automaton has 189 states and 251 transitions. Word has length 26 [2023-11-06 21:59:23,995 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:59:23,995 INFO L495 AbstractCegarLoop]: Abstraction has 189 states and 251 transitions. [2023-11-06 21:59:23,995 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.125) internal successors, (25), 7 states have internal predecessors, (25), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:23,995 INFO L276 IsEmpty]: Start isEmpty. Operand 189 states and 251 transitions. [2023-11-06 21:59:23,997 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2023-11-06 21:59:23,997 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:59:23,998 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:59:23,998 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-06 21:59:23,998 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:59:23,999 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:59:23,999 INFO L85 PathProgramCache]: Analyzing trace with hash 1542388661, now seen corresponding path program 1 times [2023-11-06 21:59:23,999 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:59:24,000 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [330708997] [2023-11-06 21:59:24,000 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:59:24,000 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:59:24,014 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:24,041 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:59:24,041 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:59:24,041 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [330708997] [2023-11-06 21:59:24,042 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [330708997] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:59:24,042 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:59:24,042 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 21:59:24,042 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [414866167] [2023-11-06 21:59:24,042 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:59:24,043 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 21:59:24,043 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:59:24,044 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 21:59:24,044 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:59:24,044 INFO L87 Difference]: Start difference. First operand 189 states and 251 transitions. Second operand has 3 states, 3 states have (on average 9.0) internal successors, (27), 2 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:24,073 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:59:24,073 INFO L93 Difference]: Finished difference Result 358 states and 484 transitions. [2023-11-06 21:59:24,073 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 21:59:24,074 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.0) internal successors, (27), 2 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2023-11-06 21:59:24,074 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:59:24,076 INFO L225 Difference]: With dead ends: 358 [2023-11-06 21:59:24,076 INFO L226 Difference]: Without dead ends: 176 [2023-11-06 21:59:24,077 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:59:24,079 INFO L413 NwaCegarLoop]: 47 mSDtfsCounter, 33 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 47 SdHoareTripleChecker+Invalid, 4 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:59:24,079 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 47 Invalid, 4 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:59:24,081 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 176 states. [2023-11-06 21:59:24,130 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 176 to 176. [2023-11-06 21:59:24,132 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 176 states, 143 states have (on average 1.2727272727272727) internal successors, (182), 154 states have internal predecessors, (182), 16 states have call successors, (16), 16 states have call predecessors, (16), 16 states have return successors, (21), 16 states have call predecessors, (21), 16 states have call successors, (21) [2023-11-06 21:59:24,134 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 176 states to 176 states and 219 transitions. [2023-11-06 21:59:24,135 INFO L78 Accepts]: Start accepts. Automaton has 176 states and 219 transitions. Word has length 28 [2023-11-06 21:59:24,135 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:59:24,135 INFO L495 AbstractCegarLoop]: Abstraction has 176 states and 219 transitions. [2023-11-06 21:59:24,136 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.0) internal successors, (27), 2 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:24,136 INFO L276 IsEmpty]: Start isEmpty. Operand 176 states and 219 transitions. [2023-11-06 21:59:24,139 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2023-11-06 21:59:24,139 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:59:24,140 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:59:24,140 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-06 21:59:24,140 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:59:24,141 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:59:24,141 INFO L85 PathProgramCache]: Analyzing trace with hash 1578429454, now seen corresponding path program 1 times [2023-11-06 21:59:24,141 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:59:24,142 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [578747684] [2023-11-06 21:59:24,142 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:59:24,142 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:59:24,164 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:24,268 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:59:24,270 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:24,273 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 21:59:24,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:24,284 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-06 21:59:24,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:24,290 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2023-11-06 21:59:24,290 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:59:24,290 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [578747684] [2023-11-06 21:59:24,291 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [578747684] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:59:24,291 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [650295066] [2023-11-06 21:59:24,291 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:59:24,291 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:59:24,292 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:59:24,295 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:59:24,318 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-06 21:59:24,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:59:24,438 INFO L262 TraceCheckSpWp]: Trace formula consists of 208 conjuncts, 9 conjunts are in the unsatisfiable core [2023-11-06 21:59:24,452 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:59:24,642 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 17 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-06 21:59:24,643 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-06 21:59:24,945 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 17 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:59:24,945 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [650295066] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-06 21:59:24,946 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-06 21:59:24,946 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [6, 6, 7] total 14 [2023-11-06 21:59:24,946 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [79077553] [2023-11-06 21:59:24,946 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-06 21:59:24,948 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2023-11-06 21:59:24,948 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:59:24,949 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2023-11-06 21:59:24,950 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=42, Invalid=140, Unknown=0, NotChecked=0, Total=182 [2023-11-06 21:59:24,950 INFO L87 Difference]: Start difference. First operand 176 states and 219 transitions. Second operand has 14 states, 14 states have (on average 6.214285714285714) internal successors, (87), 12 states have internal predecessors, (87), 4 states have call successors, (10), 6 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2023-11-06 21:59:25,145 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:59:25,145 INFO L93 Difference]: Finished difference Result 237 states and 294 transitions. [2023-11-06 21:59:25,146 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-06 21:59:25,146 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 6.214285714285714) internal successors, (87), 12 states have internal predecessors, (87), 4 states have call successors, (10), 6 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 53 [2023-11-06 21:59:25,146 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:59:25,147 INFO L225 Difference]: With dead ends: 237 [2023-11-06 21:59:25,147 INFO L226 Difference]: Without dead ends: 0 [2023-11-06 21:59:25,148 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 99 SyntacticMatches, 4 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 38 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=91, Invalid=251, Unknown=0, NotChecked=0, Total=342 [2023-11-06 21:59:25,155 INFO L413 NwaCegarLoop]: 61 mSDtfsCounter, 78 mSDsluCounter, 333 mSDsCounter, 0 mSdLazyCounter, 144 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 78 SdHoareTripleChecker+Valid, 394 SdHoareTripleChecker+Invalid, 159 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 144 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 21:59:25,155 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [78 Valid, 394 Invalid, 159 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 144 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 21:59:25,157 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-06 21:59:25,157 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-06 21:59:25,157 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:59:25,157 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-06 21:59:25,157 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 53 [2023-11-06 21:59:25,159 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:59:25,159 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-06 21:59:25,159 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 6.214285714285714) internal successors, (87), 12 states have internal predecessors, (87), 4 states have call successors, (10), 6 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2023-11-06 21:59:25,159 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-06 21:59:25,160 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-06 21:59:25,163 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-06 21:59:25,174 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-06 21:59:25,368 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:59:25,370 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-06 21:59:26,207 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 82 93) the Hoare annotation is: true [2023-11-06 21:59:26,207 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 82 93) no Hoare annotation was computed. [2023-11-06 21:59:26,207 INFO L899 garLoopResultBuilder]: For program point L86-1(lines 82 93) no Hoare annotation was computed. [2023-11-06 21:59:26,207 INFO L899 garLoopResultBuilder]: For program point L448(line 448) no Hoare annotation was computed. [2023-11-06 21:59:26,207 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 427 456) no Hoare annotation was computed. [2023-11-06 21:59:26,208 INFO L899 garLoopResultBuilder]: For program point L441(lines 441 445) no Hoare annotation was computed. [2023-11-06 21:59:26,208 INFO L902 garLoopResultBuilder]: At program point L441-1(lines 441 445) the Hoare annotation is: true [2023-11-06 21:59:26,208 INFO L899 garLoopResultBuilder]: For program point L438(line 438) no Hoare annotation was computed. [2023-11-06 21:59:26,208 INFO L902 garLoopResultBuilder]: At program point L437-2(lines 437 451) the Hoare annotation is: true [2023-11-06 21:59:26,208 INFO L902 garLoopResultBuilder]: At program point L433(line 433) the Hoare annotation is: true [2023-11-06 21:59:26,208 INFO L899 garLoopResultBuilder]: For program point L433-1(line 433) no Hoare annotation was computed. [2023-11-06 21:59:26,208 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 427 456) the Hoare annotation is: true [2023-11-06 21:59:26,208 INFO L902 garLoopResultBuilder]: At program point L452(lines 427 456) the Hoare annotation is: true [2023-11-06 21:59:26,209 INFO L899 garLoopResultBuilder]: For program point L62(lines 62 66) no Hoare annotation was computed. [2023-11-06 21:59:26,209 INFO L899 garLoopResultBuilder]: For program point L254-1(lines 254 260) no Hoare annotation was computed. [2023-11-06 21:59:26,209 INFO L895 garLoopResultBuilder]: At program point L62-2(lines 58 69) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1))) (or .cse0 (< |old(~waterLevel~0)| 2)))) [2023-11-06 21:59:26,209 INFO L899 garLoopResultBuilder]: For program point L892(line 892) no Hoare annotation was computed. [2023-11-06 21:59:26,210 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 888 895) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1))) (or .cse0 (< |old(~waterLevel~0)| 2)))) [2023-11-06 21:59:26,212 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 243 266) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (= |old(~waterLevel~0)| ~waterLevel~0)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (= ~waterLevel~0 1)))) [2023-11-06 21:59:26,212 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 243 266) no Hoare annotation was computed. [2023-11-06 21:59:26,212 INFO L895 garLoopResultBuilder]: At program point processEnvironment_returnLabel#1(lines 267 273) the Hoare annotation is: (let ((.cse0 (not (= 0 ~systemActive~0))) (.cse1 (not (= ~pumpRunning~0 0)))) (and (or (and (= ~waterLevel~0 1) .cse0) .cse1 (not (= |old(~waterLevel~0)| 1))) (or (and (= |old(~waterLevel~0)| ~waterLevel~0) .cse0) .cse1 (< |old(~waterLevel~0)| 2)))) [2023-11-06 21:59:26,213 INFO L899 garLoopResultBuilder]: For program point L247-1(lines 246 265) no Hoare annotation was computed. [2023-11-06 21:59:26,213 INFO L895 garLoopResultBuilder]: At program point getWaterLevel_returnLabel#1(lines 126 134) the Hoare annotation is: (let ((.cse1 (not (= ~pumpRunning~0 0))) (.cse0 (not (= |timeShift_getWaterLevel_#res#1| 0)))) (and (or (and .cse0 (= ~waterLevel~0 1)) .cse1 (not (= |old(~waterLevel~0)| 1))) (or .cse1 (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (< |old(~waterLevel~0)| 2)))) [2023-11-06 21:59:26,213 INFO L899 garLoopResultBuilder]: For program point L150(lines 150 156) no Hoare annotation was computed. [2023-11-06 21:59:26,215 INFO L899 garLoopResultBuilder]: For program point L146(lines 146 159) no Hoare annotation was computed. [2023-11-06 21:59:26,215 INFO L895 garLoopResultBuilder]: At program point L146-1(lines 138 162) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp~0#1| 0))) (.cse2 (not (= |timeShift_getWaterLevel_#res#1| 0)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse2 (= ~waterLevel~0 1))) (or .cse0 (< |old(~waterLevel~0)| 2) (and .cse1 .cse2 (= |old(~waterLevel~0)| ~waterLevel~0))))) [2023-11-06 21:59:26,217 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 243 266) no Hoare annotation was computed. [2023-11-06 21:59:26,217 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 319 327) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1))) (or .cse0 (< |old(~waterLevel~0)| 2)))) [2023-11-06 21:59:26,219 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 892) no Hoare annotation was computed. [2023-11-06 21:59:26,220 INFO L895 garLoopResultBuilder]: At program point L225(lines 178 227) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:59:26,220 INFO L899 garLoopResultBuilder]: For program point L188(lines 188 194) no Hoare annotation was computed. [2023-11-06 21:59:26,220 INFO L895 garLoopResultBuilder]: At program point startSystem_returnLabel#1(lines 379 386) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1) .cse4) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3 .cse4))) [2023-11-06 21:59:26,220 INFO L899 garLoopResultBuilder]: For program point L188-1(lines 188 194) no Hoare annotation was computed. [2023-11-06 21:59:26,220 INFO L899 garLoopResultBuilder]: For program point L180(lines 180 184) no Hoare annotation was computed. [2023-11-06 21:59:26,221 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 488 497) the Hoare annotation is: true [2023-11-06 21:59:26,221 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 402 408) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:59:26,221 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 498 520) the Hoare annotation is: true [2023-11-06 21:59:26,221 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2023-11-06 21:59:26,221 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2023-11-06 21:59:26,222 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 481 487) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~3#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:59:26,222 INFO L902 garLoopResultBuilder]: At program point L231(lines 168 235) the Hoare annotation is: true [2023-11-06 21:59:26,222 INFO L899 garLoopResultBuilder]: For program point L198(lines 198 204) no Hoare annotation was computed. [2023-11-06 21:59:26,222 INFO L899 garLoopResultBuilder]: For program point L198-1(lines 198 204) no Hoare annotation was computed. [2023-11-06 21:59:26,223 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-06 21:59:26,223 INFO L895 garLoopResultBuilder]: At program point L190(line 190) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:59:26,223 INFO L899 garLoopResultBuilder]: For program point L508(lines 508 515) no Hoare annotation was computed. [2023-11-06 21:59:26,223 INFO L899 garLoopResultBuilder]: For program point L508-2(lines 508 515) no Hoare annotation was computed. [2023-11-06 21:59:26,224 INFO L899 garLoopResultBuilder]: For program point L368(lines 368 374) no Hoare annotation was computed. [2023-11-06 21:59:26,224 INFO L899 garLoopResultBuilder]: For program point L368-2(lines 368 374) no Hoare annotation was computed. [2023-11-06 21:59:26,225 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-06 21:59:26,225 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 409 415) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:59:26,225 INFO L895 garLoopResultBuilder]: At program point L228(lines 177 229) the Hoare annotation is: false [2023-11-06 21:59:26,226 INFO L895 garLoopResultBuilder]: At program point deactivatePump_returnLabel#1(lines 300 307) the Hoare annotation is: false [2023-11-06 21:59:26,226 INFO L899 garLoopResultBuilder]: For program point L216(lines 216 222) no Hoare annotation was computed. [2023-11-06 21:59:26,226 INFO L895 garLoopResultBuilder]: At program point L216-2(lines 208 223) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:59:26,226 INFO L899 garLoopResultBuilder]: For program point L179(lines 178 227) no Hoare annotation was computed. [2023-11-06 21:59:26,226 INFO L895 garLoopResultBuilder]: At program point stopSystem_returnLabel#1(lines 364 378) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:59:26,227 INFO L899 garLoopResultBuilder]: For program point L208(lines 208 223) no Hoare annotation was computed. [2023-11-06 21:59:26,227 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 416 424) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:59:26,227 INFO L895 garLoopResultBuilder]: At program point L200(line 200) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:59:26,227 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 70 81) no Hoare annotation was computed. [2023-11-06 21:59:26,227 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 70 81) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (= |old(~waterLevel~0)| ~waterLevel~0)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (= ~waterLevel~0 1)))) [2023-11-06 21:59:26,228 INFO L899 garLoopResultBuilder]: For program point L74-1(lines 70 81) no Hoare annotation was computed. [2023-11-06 21:59:26,230 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1] [2023-11-06 21:59:26,232 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-06 21:59:26,256 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.11 09:59:26 BoogieIcfgContainer [2023-11-06 21:59:26,256 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-06 21:59:26,257 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-06 21:59:26,257 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-06 21:59:26,257 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-06 21:59:26,257 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:59:22" (3/4) ... [2023-11-06 21:59:26,259 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-06 21:59:26,263 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-06 21:59:26,264 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-06 21:59:26,264 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-06 21:59:26,264 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-06 21:59:26,271 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 15 nodes and edges [2023-11-06 21:59:26,271 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2023-11-06 21:59:26,272 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-06 21:59:26,272 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 21:59:26,273 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 21:59:26,301 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:59:26,301 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:59:26,302 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1))) [2023-11-06 21:59:26,302 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,303 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((waterLevel == 1) && !((0 == systemActive))) || !((pumpRunning == 0))) || !((\old(waterLevel) == 1))) && ((((\old(waterLevel) == waterLevel) && !((0 == systemActive))) || !((pumpRunning == 0))) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,304 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\result == 0)) && (waterLevel == 1)) || !((pumpRunning == 0))) || !((\old(waterLevel) == 1))) && ((!((pumpRunning == 0)) || (!((\result == 0)) && (\old(waterLevel) == waterLevel))) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,304 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) [2023-11-06 21:59:26,304 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) || ((!((tmp == 0)) && !((\result == 0))) && (waterLevel == 1))) && ((!((pumpRunning == 0)) || (\old(waterLevel) < 2)) || ((!((tmp == 0)) && !((\result == 0))) && (\old(waterLevel) == waterLevel)))) [2023-11-06 21:59:26,304 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1))) [2023-11-06 21:59:26,305 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,305 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,331 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:59:26,331 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:59:26,332 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1))) [2023-11-06 21:59:26,332 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,332 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((waterLevel == 1) && !((0 == systemActive))) || !((pumpRunning == 0))) || !((\old(waterLevel) == 1))) && ((((\old(waterLevel) == waterLevel) && !((0 == systemActive))) || !((pumpRunning == 0))) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,333 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\result == 0)) && (waterLevel == 1)) || !((pumpRunning == 0))) || !((\old(waterLevel) == 1))) && ((!((pumpRunning == 0)) || (!((\result == 0)) && (\old(waterLevel) == waterLevel))) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,333 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) [2023-11-06 21:59:26,333 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) || ((!((tmp == 0)) && !((\result == 0))) && (waterLevel == 1))) && ((!((pumpRunning == 0)) || (\old(waterLevel) < 2)) || ((!((tmp == 0)) && !((\result == 0))) && (\old(waterLevel) == waterLevel)))) [2023-11-06 21:59:26,333 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1))) [2023-11-06 21:59:26,334 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,334 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) [2023-11-06 21:59:26,349 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.graphml [2023-11-06 21:59:26,350 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.yaml [2023-11-06 21:59:26,350 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-06 21:59:26,351 INFO L158 Benchmark]: Toolchain (without parser) took 5099.16ms. Allocated memory was 134.2MB in the beginning and 174.1MB in the end (delta: 39.8MB). Free memory was 90.9MB in the beginning and 85.7MB in the end (delta: 5.2MB). Peak memory consumption was 46.4MB. Max. memory is 16.1GB. [2023-11-06 21:59:26,351 INFO L158 Benchmark]: CDTParser took 0.27ms. Allocated memory is still 100.7MB. Free memory is still 51.7MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 21:59:26,351 INFO L158 Benchmark]: CACSL2BoogieTranslator took 542.27ms. Allocated memory is still 134.2MB. Free memory was 90.6MB in the beginning and 72.0MB in the end (delta: 18.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-06 21:59:26,352 INFO L158 Benchmark]: Boogie Procedure Inliner took 91.17ms. Allocated memory is still 134.2MB. Free memory was 72.0MB in the beginning and 107.4MB in the end (delta: -35.3MB). Peak memory consumption was 6.6MB. Max. memory is 16.1GB. [2023-11-06 21:59:26,352 INFO L158 Benchmark]: Boogie Preprocessor took 28.58ms. Allocated memory is still 134.2MB. Free memory was 107.4MB in the beginning and 105.4MB in the end (delta: 1.9MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 21:59:26,353 INFO L158 Benchmark]: RCFGBuilder took 404.07ms. Allocated memory is still 134.2MB. Free memory was 105.4MB in the beginning and 92.0MB in the end (delta: 13.4MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. [2023-11-06 21:59:26,353 INFO L158 Benchmark]: TraceAbstraction took 3931.94ms. Allocated memory was 134.2MB in the beginning and 174.1MB in the end (delta: 39.8MB). Free memory was 90.8MB in the beginning and 92.0MB in the end (delta: -1.3MB). Peak memory consumption was 59.2MB. Max. memory is 16.1GB. [2023-11-06 21:59:26,354 INFO L158 Benchmark]: Witness Printer took 93.47ms. Allocated memory is still 174.1MB. Free memory was 92.0MB in the beginning and 85.7MB in the end (delta: 6.3MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2023-11-06 21:59:26,356 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.27ms. Allocated memory is still 100.7MB. Free memory is still 51.7MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 542.27ms. Allocated memory is still 134.2MB. Free memory was 90.6MB in the beginning and 72.0MB in the end (delta: 18.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 91.17ms. Allocated memory is still 134.2MB. Free memory was 72.0MB in the beginning and 107.4MB in the end (delta: -35.3MB). Peak memory consumption was 6.6MB. Max. memory is 16.1GB. * Boogie Preprocessor took 28.58ms. Allocated memory is still 134.2MB. Free memory was 107.4MB in the beginning and 105.4MB in the end (delta: 1.9MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 404.07ms. Allocated memory is still 134.2MB. Free memory was 105.4MB in the beginning and 92.0MB in the end (delta: 13.4MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. * TraceAbstraction took 3931.94ms. Allocated memory was 134.2MB in the beginning and 174.1MB in the end (delta: 39.8MB). Free memory was 90.8MB in the beginning and 92.0MB in the end (delta: -1.3MB). Peak memory consumption was 59.2MB. Max. memory is 16.1GB. * Witness Printer took 93.47ms. Allocated memory is still 174.1MB. Free memory was 92.0MB in the beginning and 85.7MB in the end (delta: 6.3MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] - GenericResultAtLocation [Line: 135]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [135] - GenericResultAtLocation [Line: 163]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [163] - GenericResultAtLocation [Line: 236]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [236] - GenericResultAtLocation [Line: 387]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [387] - GenericResultAtLocation [Line: 425]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [425] - GenericResultAtLocation [Line: 521]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [521] - GenericResultAtLocation [Line: 887]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [887] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 892]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 5 procedures, 63 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 3.8s, OverallIterations: 6, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.8s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 396 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 393 mSDsluCounter, 1064 SdHoareTripleChecker+Invalid, 0.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 726 mSDsCounter, 50 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 240 IncrementalHoareTripleChecker+Invalid, 290 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 50 mSolverCounterUnsat, 338 mSDtfsCounter, 240 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 152 GetRequests, 111 SyntacticMatches, 4 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 55 ImplicationChecksByTransitivity, 0.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=189occurred in iteration=4, InterpolantAutomatonStates: 32, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 6 MinimizatonAttempts, 11 StatesRemovedByMinimization, 2 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 29 LocationsWithAnnotation, 211 PreInvPairs, 251 NumberOfFragments, 482 HoareAnnotationTreeSize, 211 FomulaSimplifications, 210 FormulaSimplificationTreeSizeReduction, 0.0s HoareSimplificationTime, 29 FomulaSimplificationsInter, 838 FormulaSimplificationTreeSizeReductionInter, 0.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 224 NumberOfCodeBlocks, 224 NumberOfCodeBlocksAsserted, 7 NumberOfCheckSat, 269 ConstructedInterpolants, 0 QuantifiedInterpolants, 682 SizeOfPredicates, 0 NumberOfNonLiveVariables, 208 ConjunctsInSsa, 9 ConjunctsInUnsatCore, 8 InterpolantComputations, 5 PerfectInterpolantSequences, 54/60 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 364]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1))) - InvariantResult [Line: 481]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 177]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 300]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 437]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 379]: Loop Invariant Derived loop invariant: (((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) - InvariantResult [Line: 888]: Loop Invariant Derived loop invariant: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) - InvariantResult [Line: 427]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 402]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 126]: Loop Invariant Derived loop invariant: ((((!((\result == 0)) && (waterLevel == 1)) || !((pumpRunning == 0))) || !((\old(waterLevel) == 1))) && ((!((pumpRunning == 0)) || (!((\result == 0)) && (\old(waterLevel) == waterLevel))) || (\old(waterLevel) < 2))) - InvariantResult [Line: 178]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (waterLevel == 1))) - InvariantResult [Line: 416]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 409]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 138]: Loop Invariant Derived loop invariant: (((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) || ((!((tmp == 0)) && !((\result == 0))) && (waterLevel == 1))) && ((!((pumpRunning == 0)) || (\old(waterLevel) < 2)) || ((!((tmp == 0)) && !((\result == 0))) && (\old(waterLevel) == waterLevel)))) - InvariantResult [Line: 498]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 58]: Loop Invariant Derived loop invariant: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) - InvariantResult [Line: 267]: Loop Invariant Derived loop invariant: (((((waterLevel == 1) && !((0 == systemActive))) || !((pumpRunning == 0))) || !((\old(waterLevel) == 1))) && ((((\old(waterLevel) == waterLevel) && !((0 == systemActive))) || !((pumpRunning == 0))) || (\old(waterLevel) < 2))) - InvariantResult [Line: 319]: Loop Invariant Derived loop invariant: ((!((pumpRunning == 0)) || !((\old(waterLevel) == 1))) && (!((pumpRunning == 0)) || (\old(waterLevel) < 2))) - InvariantResult [Line: 168]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2023-11-06 21:59:26,417 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_85499dfd-de31-457f-93d2-f7fd9d445ac9/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE