./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product46.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 527bcce2 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product46.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 5780768f89256c506186805750dd5ec09f07e7c3b9baffd6ca5edbcb4a88d3de --- Real Ultimate output --- This is Ultimate 0.2.3-dev-527bcce [2023-11-21 20:58:46,412 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-21 20:58:46,495 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-21 20:58:46,502 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-21 20:58:46,503 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-21 20:58:46,538 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-21 20:58:46,539 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-21 20:58:46,540 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-21 20:58:46,541 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-21 20:58:46,542 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-21 20:58:46,543 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-21 20:58:46,543 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-21 20:58:46,544 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-21 20:58:46,545 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-21 20:58:46,546 INFO L153 SettingsManager]: * Use SBE=true [2023-11-21 20:58:46,547 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-21 20:58:46,547 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-21 20:58:46,548 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-21 20:58:46,549 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-21 20:58:46,549 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-21 20:58:46,550 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-21 20:58:46,551 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-21 20:58:46,551 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-21 20:58:46,552 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-21 20:58:46,553 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-21 20:58:46,553 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-21 20:58:46,554 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-21 20:58:46,554 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-21 20:58:46,555 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-21 20:58:46,555 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-21 20:58:46,556 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-21 20:58:46,557 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 20:58:46,557 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-21 20:58:46,558 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-21 20:58:46,558 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-21 20:58:46,559 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-21 20:58:46,560 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-21 20:58:46,560 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-21 20:58:46,561 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-21 20:58:46,561 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-21 20:58:46,562 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-21 20:58:46,563 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-21 20:58:46,563 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 5780768f89256c506186805750dd5ec09f07e7c3b9baffd6ca5edbcb4a88d3de [2023-11-21 20:58:46,976 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-21 20:58:47,025 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-21 20:58:47,028 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-21 20:58:47,030 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-21 20:58:47,030 INFO L274 PluginConnector]: CDTParser initialized [2023-11-21 20:58:47,032 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/../../sv-benchmarks/c/product-lines/minepump_spec1_product46.cil.c [2023-11-21 20:58:50,857 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-21 20:58:51,237 INFO L384 CDTParser]: Found 1 translation units. [2023-11-21 20:58:51,238 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/sv-benchmarks/c/product-lines/minepump_spec1_product46.cil.c [2023-11-21 20:58:51,258 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/data/1e8fcba5b/8738adcdeab7447983df484d2cc0e622/FLAG203a82d1f [2023-11-21 20:58:51,278 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/data/1e8fcba5b/8738adcdeab7447983df484d2cc0e622 [2023-11-21 20:58:51,281 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-21 20:58:51,283 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-21 20:58:51,285 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-21 20:58:51,285 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-21 20:58:51,293 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-21 20:58:51,295 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 08:58:51" (1/1) ... [2023-11-21 20:58:51,297 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2216919e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:51, skipping insertion in model container [2023-11-21 20:58:51,297 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 08:58:51" (1/1) ... [2023-11-21 20:58:51,380 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-21 20:58:51,701 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/sv-benchmarks/c/product-lines/minepump_spec1_product46.cil.c[7019,7032] [2023-11-21 20:58:51,802 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 20:58:51,828 INFO L202 MainTranslator]: Completed pre-run [2023-11-21 20:58:51,843 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] [2023-11-21 20:58:51,846 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [121] [2023-11-21 20:58:51,846 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [333] [2023-11-21 20:58:51,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [432] [2023-11-21 20:58:51,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [467] [2023-11-21 20:58:51,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [476] [2023-11-21 20:58:51,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [502] [2023-11-21 20:58:51,849 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [597] [2023-11-21 20:58:51,912 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/sv-benchmarks/c/product-lines/minepump_spec1_product46.cil.c[7019,7032] [2023-11-21 20:58:52,020 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 20:58:52,055 INFO L206 MainTranslator]: Completed translation [2023-11-21 20:58:52,056 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52 WrapperNode [2023-11-21 20:58:52,056 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-21 20:58:52,058 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-21 20:58:52,058 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-21 20:58:52,059 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-21 20:58:52,070 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,107 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,161 INFO L138 Inliner]: procedures = 55, calls = 100, calls flagged for inlining = 22, calls inlined = 19, statements flattened = 188 [2023-11-21 20:58:52,161 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-21 20:58:52,162 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-21 20:58:52,163 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-21 20:58:52,163 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-21 20:58:52,181 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,181 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,199 INFO L184 PluginConnector]: Executing the observer HeapSplitter from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,228 INFO L187 HeapSplitter]: Split 2 memory accesses to 1 slices as follows [2] [2023-11-21 20:58:52,236 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,237 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,243 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,251 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,253 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,255 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,261 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-21 20:58:52,263 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-21 20:58:52,263 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-21 20:58:52,263 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-21 20:58:52,265 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (1/1) ... [2023-11-21 20:58:52,274 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 20:58:52,308 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:58:52,331 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-21 20:58:52,344 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-21 20:58:52,408 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-21 20:58:52,408 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-21 20:58:52,408 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-21 20:58:52,408 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-21 20:58:52,409 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-21 20:58:52,409 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-21 20:58:52,409 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-21 20:58:52,409 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-21 20:58:52,409 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-21 20:58:52,409 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-21 20:58:52,410 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-21 20:58:52,410 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-21 20:58:52,410 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-21 20:58:52,410 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-21 20:58:52,411 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-21 20:58:52,411 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-21 20:58:52,411 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-21 20:58:52,411 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-21 20:58:52,411 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-21 20:58:52,412 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-21 20:58:52,538 INFO L240 CfgBuilder]: Building ICFG [2023-11-21 20:58:52,542 INFO L266 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-21 20:58:53,098 INFO L281 CfgBuilder]: Performing block encoding [2023-11-21 20:58:53,345 INFO L303 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-21 20:58:53,346 INFO L308 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-21 20:58:53,348 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 08:58:53 BoogieIcfgContainer [2023-11-21 20:58:53,349 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-21 20:58:53,356 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-21 20:58:53,356 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-21 20:58:53,361 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-21 20:58:53,361 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.11 08:58:51" (1/3) ... [2023-11-21 20:58:53,362 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@70900bae and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 08:58:53, skipping insertion in model container [2023-11-21 20:58:53,362 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:52" (2/3) ... [2023-11-21 20:58:53,364 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@70900bae and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 08:58:53, skipping insertion in model container [2023-11-21 20:58:53,365 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 08:58:53" (3/3) ... [2023-11-21 20:58:53,366 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product46.cil.c [2023-11-21 20:58:53,395 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-21 20:58:53,396 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-21 20:58:53,490 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-21 20:58:53,502 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@1fc047c0, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-21 20:58:53,502 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-21 20:58:53,509 INFO L276 IsEmpty]: Start isEmpty. Operand has 63 states, 39 states have (on average 1.3846153846153846) internal successors, (54), 47 states have internal predecessors, (54), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 12 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-21 20:58:53,524 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2023-11-21 20:58:53,524 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:53,525 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:53,526 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:53,536 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:53,537 INFO L85 PathProgramCache]: Analyzing trace with hash 151782703, now seen corresponding path program 1 times [2023-11-21 20:58:53,553 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:53,554 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [875925679] [2023-11-21 20:58:53,555 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:53,555 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:53,732 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:53,846 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-21 20:58:53,849 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:53,863 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:53,871 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:53,872 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [875925679] [2023-11-21 20:58:53,873 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [875925679] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:53,874 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:53,874 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-21 20:58:53,876 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1596161213] [2023-11-21 20:58:53,878 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:53,885 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-21 20:58:53,886 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:53,942 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-21 20:58:53,944 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 20:58:53,948 INFO L87 Difference]: Start difference. First operand has 63 states, 39 states have (on average 1.3846153846153846) internal successors, (54), 47 states have internal predecessors, (54), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 12 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:54,083 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:54,083 INFO L93 Difference]: Finished difference Result 124 states and 165 transitions. [2023-11-21 20:58:54,087 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-21 20:58:54,089 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2023-11-21 20:58:54,090 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:54,117 INFO L225 Difference]: With dead ends: 124 [2023-11-21 20:58:54,118 INFO L226 Difference]: Without dead ends: 58 [2023-11-21 20:58:54,126 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 20:58:54,132 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 62 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:54,133 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 62 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 20:58:54,159 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2023-11-21 20:58:54,191 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 58. [2023-11-21 20:58:54,193 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 36 states have (on average 1.2777777777777777) internal successors, (46), 43 states have internal predecessors, (46), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 11 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-21 20:58:54,196 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 73 transitions. [2023-11-21 20:58:54,198 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 73 transitions. Word has length 16 [2023-11-21 20:58:54,199 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:54,199 INFO L495 AbstractCegarLoop]: Abstraction has 58 states and 73 transitions. [2023-11-21 20:58:54,200 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:54,200 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 73 transitions. [2023-11-21 20:58:54,203 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-21 20:58:54,203 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:54,204 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:54,204 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-21 20:58:54,205 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:54,205 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:54,206 INFO L85 PathProgramCache]: Analyzing trace with hash 374561926, now seen corresponding path program 1 times [2023-11-21 20:58:54,206 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:54,206 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1607664446] [2023-11-21 20:58:54,207 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:54,207 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:54,230 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:54,378 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 20:58:54,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:54,383 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:54,384 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:54,384 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1607664446] [2023-11-21 20:58:54,388 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1607664446] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:54,389 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:54,389 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 20:58:54,390 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [238373026] [2023-11-21 20:58:54,391 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:54,393 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 20:58:54,393 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:54,395 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 20:58:54,400 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:54,401 INFO L87 Difference]: Start difference. First operand 58 states and 73 transitions. Second operand has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:54,498 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:54,498 INFO L93 Difference]: Finished difference Result 93 states and 117 transitions. [2023-11-21 20:58:54,499 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 20:58:54,499 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-21 20:58:54,500 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:54,505 INFO L225 Difference]: With dead ends: 93 [2023-11-21 20:58:54,505 INFO L226 Difference]: Without dead ends: 50 [2023-11-21 20:58:54,509 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:54,512 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 7 mSDsluCounter, 39 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 87 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:54,513 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 87 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 20:58:54,517 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2023-11-21 20:58:54,537 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 50. [2023-11-21 20:58:54,538 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 50 states, 31 states have (on average 1.2903225806451613) internal successors, (40), 38 states have internal predecessors, (40), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-21 20:58:54,545 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 50 states to 50 states and 62 transitions. [2023-11-21 20:58:54,546 INFO L78 Accepts]: Start accepts. Automaton has 50 states and 62 transitions. Word has length 17 [2023-11-21 20:58:54,546 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:54,546 INFO L495 AbstractCegarLoop]: Abstraction has 50 states and 62 transitions. [2023-11-21 20:58:54,547 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:54,547 INFO L276 IsEmpty]: Start isEmpty. Operand 50 states and 62 transitions. [2023-11-21 20:58:54,551 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-11-21 20:58:54,551 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:54,552 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:54,552 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-21 20:58:54,552 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:54,554 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:54,555 INFO L85 PathProgramCache]: Analyzing trace with hash -2110353406, now seen corresponding path program 1 times [2023-11-21 20:58:54,560 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:54,561 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1709729283] [2023-11-21 20:58:54,561 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:54,562 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:54,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:54,825 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:54,829 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:54,833 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:54,835 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:54,836 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1709729283] [2023-11-21 20:58:54,836 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1709729283] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:54,836 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:54,837 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 20:58:54,837 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1691913806] [2023-11-21 20:58:54,837 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:54,838 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 20:58:54,838 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:54,839 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 20:58:54,839 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:54,840 INFO L87 Difference]: Start difference. First operand 50 states and 62 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:54,927 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:54,928 INFO L93 Difference]: Finished difference Result 98 states and 123 transitions. [2023-11-21 20:58:54,929 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 20:58:54,929 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2023-11-21 20:58:54,929 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:54,931 INFO L225 Difference]: With dead ends: 98 [2023-11-21 20:58:54,931 INFO L226 Difference]: Without dead ends: 50 [2023-11-21 20:58:54,932 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:54,934 INFO L413 NwaCegarLoop]: 46 mSDtfsCounter, 51 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 51 SdHoareTripleChecker+Valid, 46 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:54,935 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [51 Valid, 46 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 20:58:54,936 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2023-11-21 20:58:54,954 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 50. [2023-11-21 20:58:54,954 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 50 states, 31 states have (on average 1.2580645161290323) internal successors, (39), 38 states have internal predecessors, (39), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-21 20:58:54,956 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 50 states to 50 states and 61 transitions. [2023-11-21 20:58:54,956 INFO L78 Accepts]: Start accepts. Automaton has 50 states and 61 transitions. Word has length 19 [2023-11-21 20:58:54,956 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:54,956 INFO L495 AbstractCegarLoop]: Abstraction has 50 states and 61 transitions. [2023-11-21 20:58:54,957 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:54,957 INFO L276 IsEmpty]: Start isEmpty. Operand 50 states and 61 transitions. [2023-11-21 20:58:54,959 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-11-21 20:58:54,959 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:54,959 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:54,959 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-21 20:58:54,961 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:54,962 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:54,962 INFO L85 PathProgramCache]: Analyzing trace with hash -529745223, now seen corresponding path program 1 times [2023-11-21 20:58:54,962 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:54,963 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1775395689] [2023-11-21 20:58:54,963 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:54,963 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:55,007 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,126 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:55,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,152 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 20:58:55,154 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,157 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-11-21 20:58:55,159 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,162 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:55,162 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:55,162 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1775395689] [2023-11-21 20:58:55,163 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1775395689] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:55,163 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:55,163 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-21 20:58:55,163 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2116756533] [2023-11-21 20:58:55,164 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:55,164 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-21 20:58:55,164 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:55,165 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-21 20:58:55,166 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-21 20:58:55,166 INFO L87 Difference]: Start difference. First operand 50 states and 61 transitions. Second operand has 5 states, 4 states have (on average 5.5) internal successors, (22), 5 states have internal predecessors, (22), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 20:58:55,609 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:55,609 INFO L93 Difference]: Finished difference Result 160 states and 194 transitions. [2023-11-21 20:58:55,620 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-21 20:58:55,620 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 4 states have (on average 5.5) internal successors, (22), 5 states have internal predecessors, (22), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 29 [2023-11-21 20:58:55,621 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:55,623 INFO L225 Difference]: With dead ends: 160 [2023-11-21 20:58:55,623 INFO L226 Difference]: Without dead ends: 112 [2023-11-21 20:58:55,624 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2023-11-21 20:58:55,626 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 114 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 130 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 116 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 186 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 130 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:55,627 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [116 Valid, 137 Invalid, 186 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 130 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-21 20:58:55,628 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 112 states. [2023-11-21 20:58:55,694 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 112 to 106. [2023-11-21 20:58:55,695 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 106 states, 69 states have (on average 1.2173913043478262) internal successors, (84), 76 states have internal predecessors, (84), 18 states have call successors, (18), 15 states have call predecessors, (18), 18 states have return successors, (23), 19 states have call predecessors, (23), 18 states have call successors, (23) [2023-11-21 20:58:55,713 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 106 states to 106 states and 125 transitions. [2023-11-21 20:58:55,714 INFO L78 Accepts]: Start accepts. Automaton has 106 states and 125 transitions. Word has length 29 [2023-11-21 20:58:55,714 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:55,715 INFO L495 AbstractCegarLoop]: Abstraction has 106 states and 125 transitions. [2023-11-21 20:58:55,715 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 4 states have (on average 5.5) internal successors, (22), 5 states have internal predecessors, (22), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 20:58:55,716 INFO L276 IsEmpty]: Start isEmpty. Operand 106 states and 125 transitions. [2023-11-21 20:58:55,717 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2023-11-21 20:58:55,717 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:55,718 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:55,718 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-21 20:58:55,718 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:55,719 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:55,719 INFO L85 PathProgramCache]: Analyzing trace with hash -1013182192, now seen corresponding path program 1 times [2023-11-21 20:58:55,719 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:55,719 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [220839492] [2023-11-21 20:58:55,720 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:55,720 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:55,759 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,870 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:55,876 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,888 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:55,889 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,892 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-21 20:58:55,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:55,898 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:55,899 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:55,899 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [220839492] [2023-11-21 20:58:55,899 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [220839492] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:55,899 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:55,900 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-21 20:58:55,900 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [161627898] [2023-11-21 20:58:55,900 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:55,901 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-21 20:58:55,901 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:55,902 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-21 20:58:55,903 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-21 20:58:55,903 INFO L87 Difference]: Start difference. First operand 106 states and 125 transitions. Second operand has 5 states, 5 states have (on average 4.6) internal successors, (23), 4 states have internal predecessors, (23), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-21 20:58:56,187 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:56,188 INFO L93 Difference]: Finished difference Result 114 states and 131 transitions. [2023-11-21 20:58:56,188 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-21 20:58:56,188 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 4 states have internal predecessors, (23), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 30 [2023-11-21 20:58:56,189 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:56,194 INFO L225 Difference]: With dead ends: 114 [2023-11-21 20:58:56,196 INFO L226 Difference]: Without dead ends: 112 [2023-11-21 20:58:56,202 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-11-21 20:58:56,204 INFO L413 NwaCegarLoop]: 36 mSDtfsCounter, 78 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 126 mSolverCounterSat, 31 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 84 SdHoareTripleChecker+Valid, 118 SdHoareTripleChecker+Invalid, 157 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 31 IncrementalHoareTripleChecker+Valid, 126 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:56,205 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [84 Valid, 118 Invalid, 157 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [31 Valid, 126 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 20:58:56,206 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 112 states. [2023-11-21 20:58:56,234 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 112 to 106. [2023-11-21 20:58:56,235 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 106 states, 69 states have (on average 1.1884057971014492) internal successors, (82), 76 states have internal predecessors, (82), 18 states have call successors, (18), 15 states have call predecessors, (18), 18 states have return successors, (23), 19 states have call predecessors, (23), 18 states have call successors, (23) [2023-11-21 20:58:56,245 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 106 states to 106 states and 123 transitions. [2023-11-21 20:58:56,245 INFO L78 Accepts]: Start accepts. Automaton has 106 states and 123 transitions. Word has length 30 [2023-11-21 20:58:56,246 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:56,247 INFO L495 AbstractCegarLoop]: Abstraction has 106 states and 123 transitions. [2023-11-21 20:58:56,252 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 4 states have internal predecessors, (23), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-21 20:58:56,252 INFO L276 IsEmpty]: Start isEmpty. Operand 106 states and 123 transitions. [2023-11-21 20:58:56,254 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2023-11-21 20:58:56,254 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:56,255 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:56,255 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-21 20:58:56,255 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:56,256 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:56,256 INFO L85 PathProgramCache]: Analyzing trace with hash 1966029693, now seen corresponding path program 1 times [2023-11-21 20:58:56,256 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:56,258 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [791084616] [2023-11-21 20:58:56,259 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:56,259 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:56,307 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:56,571 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:56,587 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:56,671 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:56,673 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:56,682 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 20:58:56,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:56,687 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2023-11-21 20:58:56,691 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:56,696 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 20:58:56,696 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:56,697 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [791084616] [2023-11-21 20:58:56,697 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [791084616] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:56,697 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:56,697 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-21 20:58:56,698 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1532792235] [2023-11-21 20:58:56,699 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:56,700 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-21 20:58:56,700 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:56,702 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-21 20:58:56,702 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-11-21 20:58:56,703 INFO L87 Difference]: Start difference. First operand 106 states and 123 transitions. Second operand has 7 states, 7 states have (on average 3.5714285714285716) internal successors, (25), 6 states have internal predecessors, (25), 4 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2023-11-21 20:58:57,203 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:57,204 INFO L93 Difference]: Finished difference Result 281 states and 334 transitions. [2023-11-21 20:58:57,205 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-21 20:58:57,205 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 3.5714285714285716) internal successors, (25), 6 states have internal predecessors, (25), 4 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) Word has length 35 [2023-11-21 20:58:57,206 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:57,215 INFO L225 Difference]: With dead ends: 281 [2023-11-21 20:58:57,215 INFO L226 Difference]: Without dead ends: 177 [2023-11-21 20:58:57,219 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=42, Invalid=90, Unknown=0, NotChecked=0, Total=132 [2023-11-21 20:58:57,225 INFO L413 NwaCegarLoop]: 56 mSDtfsCounter, 152 mSDsluCounter, 114 mSDsCounter, 0 mSdLazyCounter, 217 mSolverCounterSat, 81 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 157 SdHoareTripleChecker+Valid, 170 SdHoareTripleChecker+Invalid, 298 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 81 IncrementalHoareTripleChecker+Valid, 217 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:57,227 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [157 Valid, 170 Invalid, 298 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [81 Valid, 217 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-21 20:58:57,231 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 177 states. [2023-11-21 20:58:57,289 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 177 to 153. [2023-11-21 20:58:57,296 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 153 states, 102 states have (on average 1.1862745098039216) internal successors, (121), 110 states have internal predecessors, (121), 25 states have call successors, (25), 23 states have call predecessors, (25), 25 states have return successors, (32), 26 states have call predecessors, (32), 25 states have call successors, (32) [2023-11-21 20:58:57,300 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 153 states to 153 states and 178 transitions. [2023-11-21 20:58:57,301 INFO L78 Accepts]: Start accepts. Automaton has 153 states and 178 transitions. Word has length 35 [2023-11-21 20:58:57,302 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:57,302 INFO L495 AbstractCegarLoop]: Abstraction has 153 states and 178 transitions. [2023-11-21 20:58:57,302 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 3.5714285714285716) internal successors, (25), 6 states have internal predecessors, (25), 4 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2023-11-21 20:58:57,303 INFO L276 IsEmpty]: Start isEmpty. Operand 153 states and 178 transitions. [2023-11-21 20:58:57,309 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2023-11-21 20:58:57,311 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:57,312 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:57,312 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-21 20:58:57,313 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:57,315 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:57,316 INFO L85 PathProgramCache]: Analyzing trace with hash 831071386, now seen corresponding path program 1 times [2023-11-21 20:58:57,316 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:57,316 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [143758935] [2023-11-21 20:58:57,317 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:57,317 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:57,369 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:57,488 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 20:58:57,492 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:57,505 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:57,514 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:57,524 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:57,532 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:57,535 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 20:58:57,536 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:57,538 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-11-21 20:58:57,540 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:57,560 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-21 20:58:57,560 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:57,560 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [143758935] [2023-11-21 20:58:57,561 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [143758935] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:57,561 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:57,561 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-21 20:58:57,561 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [240153452] [2023-11-21 20:58:57,562 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:57,562 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-21 20:58:57,562 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:57,564 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-21 20:58:57,564 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2023-11-21 20:58:57,564 INFO L87 Difference]: Start difference. First operand 153 states and 178 transitions. Second operand has 8 states, 7 states have (on average 3.857142857142857) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-21 20:58:58,068 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:58,069 INFO L93 Difference]: Finished difference Result 451 states and 538 transitions. [2023-11-21 20:58:58,069 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2023-11-21 20:58:58,070 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.857142857142857) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) Word has length 38 [2023-11-21 20:58:58,074 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:58,081 INFO L225 Difference]: With dead ends: 451 [2023-11-21 20:58:58,081 INFO L226 Difference]: Without dead ends: 300 [2023-11-21 20:58:58,083 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 52 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2023-11-21 20:58:58,087 INFO L413 NwaCegarLoop]: 26 mSDtfsCounter, 108 mSDsluCounter, 116 mSDsCounter, 0 mSdLazyCounter, 232 mSolverCounterSat, 85 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 112 SdHoareTripleChecker+Valid, 142 SdHoareTripleChecker+Invalid, 317 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 85 IncrementalHoareTripleChecker+Valid, 232 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:58,087 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [112 Valid, 142 Invalid, 317 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [85 Valid, 232 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-21 20:58:58,089 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 300 states. [2023-11-21 20:58:58,167 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 300 to 285. [2023-11-21 20:58:58,169 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 285 states, 192 states have (on average 1.1614583333333333) internal successors, (223), 203 states have internal predecessors, (223), 46 states have call successors, (46), 42 states have call predecessors, (46), 46 states have return successors, (60), 48 states have call predecessors, (60), 46 states have call successors, (60) [2023-11-21 20:58:58,173 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 285 states to 285 states and 329 transitions. [2023-11-21 20:58:58,174 INFO L78 Accepts]: Start accepts. Automaton has 285 states and 329 transitions. Word has length 38 [2023-11-21 20:58:58,174 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:58,175 INFO L495 AbstractCegarLoop]: Abstraction has 285 states and 329 transitions. [2023-11-21 20:58:58,176 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.857142857142857) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-21 20:58:58,176 INFO L276 IsEmpty]: Start isEmpty. Operand 285 states and 329 transitions. [2023-11-21 20:58:58,184 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2023-11-21 20:58:58,185 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:58,185 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:58,186 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-21 20:58:58,186 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:58,187 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:58,187 INFO L85 PathProgramCache]: Analyzing trace with hash 2128907731, now seen corresponding path program 1 times [2023-11-21 20:58:58,187 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:58,188 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1080696337] [2023-11-21 20:58:58,188 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:58,188 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:58,214 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:58,576 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 20:58:58,578 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:58,589 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 20:58:58,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:58,602 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-21 20:58:58,609 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:58,718 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:58,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:58,860 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 20:58:58,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:58,895 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-21 20:58:58,897 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:58,906 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 20:58:58,907 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:58,907 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1080696337] [2023-11-21 20:58:58,907 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1080696337] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:58,908 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:58,908 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [14] imperfect sequences [] total 14 [2023-11-21 20:58:58,908 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [705248879] [2023-11-21 20:58:58,909 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:58,909 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2023-11-21 20:58:58,910 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:58,910 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2023-11-21 20:58:58,911 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=29, Invalid=153, Unknown=0, NotChecked=0, Total=182 [2023-11-21 20:58:58,911 INFO L87 Difference]: Start difference. First operand 285 states and 329 transitions. Second operand has 14 states, 12 states have (on average 2.25) internal successors, (27), 8 states have internal predecessors, (27), 3 states have call successors, (7), 4 states have call predecessors, (7), 4 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) [2023-11-21 20:59:01,256 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:59:01,256 INFO L93 Difference]: Finished difference Result 588 states and 705 transitions. [2023-11-21 20:59:01,257 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 46 states. [2023-11-21 20:59:01,257 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 12 states have (on average 2.25) internal successors, (27), 8 states have internal predecessors, (27), 3 states have call successors, (7), 4 states have call predecessors, (7), 4 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) Word has length 41 [2023-11-21 20:59:01,258 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:59:01,262 INFO L225 Difference]: With dead ends: 588 [2023-11-21 20:59:01,262 INFO L226 Difference]: Without dead ends: 437 [2023-11-21 20:59:01,266 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 19 SyntacticMatches, 0 SemanticMatches, 54 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 934 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=627, Invalid=2453, Unknown=0, NotChecked=0, Total=3080 [2023-11-21 20:59:01,267 INFO L413 NwaCegarLoop]: 9 mSDtfsCounter, 499 mSDsluCounter, 72 mSDsCounter, 0 mSdLazyCounter, 631 mSolverCounterSat, 317 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 502 SdHoareTripleChecker+Valid, 81 SdHoareTripleChecker+Invalid, 948 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 317 IncrementalHoareTripleChecker+Valid, 631 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2023-11-21 20:59:01,267 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [502 Valid, 81 Invalid, 948 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [317 Valid, 631 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2023-11-21 20:59:01,269 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 437 states. [2023-11-21 20:59:01,351 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 437 to 387. [2023-11-21 20:59:01,352 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 387 states, 261 states have (on average 1.157088122605364) internal successors, (302), 278 states have internal predecessors, (302), 65 states have call successors, (65), 49 states have call predecessors, (65), 60 states have return successors, (88), 68 states have call predecessors, (88), 65 states have call successors, (88) [2023-11-21 20:59:01,357 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 387 states to 387 states and 455 transitions. [2023-11-21 20:59:01,357 INFO L78 Accepts]: Start accepts. Automaton has 387 states and 455 transitions. Word has length 41 [2023-11-21 20:59:01,358 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:59:01,358 INFO L495 AbstractCegarLoop]: Abstraction has 387 states and 455 transitions. [2023-11-21 20:59:01,358 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 12 states have (on average 2.25) internal successors, (27), 8 states have internal predecessors, (27), 3 states have call successors, (7), 4 states have call predecessors, (7), 4 states have return successors, (6), 5 states have call predecessors, (6), 3 states have call successors, (6) [2023-11-21 20:59:01,359 INFO L276 IsEmpty]: Start isEmpty. Operand 387 states and 455 transitions. [2023-11-21 20:59:01,362 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2023-11-21 20:59:01,363 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:59:01,363 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:59:01,363 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-21 20:59:01,364 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:59:01,364 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:59:01,365 INFO L85 PathProgramCache]: Analyzing trace with hash -1343220446, now seen corresponding path program 1 times [2023-11-21 20:59:01,365 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:59:01,365 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1113787727] [2023-11-21 20:59:01,365 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:59:01,366 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:59:01,388 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,553 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 20:59:01,554 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,569 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-21 20:59:01,573 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,591 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:59:01,594 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,599 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:59:01,600 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,603 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 20:59:01,605 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,606 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-21 20:59:01,608 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,619 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-11-21 20:59:01,621 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,623 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 51 [2023-11-21 20:59:01,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,667 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 20:59:01,668 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,690 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 60 [2023-11-21 20:59:01,692 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,695 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 20:59:01,696 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,697 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 70 [2023-11-21 20:59:01,699 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,705 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 11 proven. 1 refuted. 0 times theorem prover too weak. 23 trivial. 0 not checked. [2023-11-21 20:59:01,705 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:59:01,706 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1113787727] [2023-11-21 20:59:01,706 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1113787727] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 20:59:01,706 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [522235174] [2023-11-21 20:59:01,706 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:59:01,707 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:59:01,707 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:59:01,716 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 20:59:01,724 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-21 20:59:01,842 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:59:01,846 INFO L262 TraceCheckSpWp]: Trace formula consists of 286 conjuncts, 28 conjunts are in the unsatisfiable core [2023-11-21 20:59:01,855 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 20:59:02,196 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 15 proven. 13 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2023-11-21 20:59:02,197 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 20:59:02,700 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 12 proven. 3 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2023-11-21 20:59:02,700 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [522235174] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 20:59:02,700 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 20:59:02,700 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 11, 12] total 31 [2023-11-21 20:59:02,701 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [301235499] [2023-11-21 20:59:02,701 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 20:59:02,704 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2023-11-21 20:59:02,705 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:59:02,706 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2023-11-21 20:59:02,707 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=97, Invalid=833, Unknown=0, NotChecked=0, Total=930 [2023-11-21 20:59:02,708 INFO L87 Difference]: Start difference. First operand 387 states and 455 transitions. Second operand has 31 states, 23 states have (on average 4.304347826086956) internal successors, (99), 19 states have internal predecessors, (99), 5 states have call successors, (33), 10 states have call predecessors, (33), 11 states have return successors, (31), 12 states have call predecessors, (31), 5 states have call successors, (31) [2023-11-21 20:59:04,440 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:59:04,441 INFO L93 Difference]: Finished difference Result 926 states and 1109 transitions. [2023-11-21 20:59:04,441 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2023-11-21 20:59:04,441 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 23 states have (on average 4.304347826086956) internal successors, (99), 19 states have internal predecessors, (99), 5 states have call successors, (33), 10 states have call predecessors, (33), 11 states have return successors, (31), 12 states have call predecessors, (31), 5 states have call successors, (31) Word has length 77 [2023-11-21 20:59:04,442 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:59:04,442 INFO L225 Difference]: With dead ends: 926 [2023-11-21 20:59:04,443 INFO L226 Difference]: Without dead ends: 0 [2023-11-21 20:59:04,447 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 216 GetRequests, 160 SyntacticMatches, 0 SemanticMatches, 56 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 599 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=440, Invalid=2866, Unknown=0, NotChecked=0, Total=3306 [2023-11-21 20:59:04,448 INFO L413 NwaCegarLoop]: 18 mSDtfsCounter, 207 mSDsluCounter, 252 mSDsCounter, 0 mSdLazyCounter, 1626 mSolverCounterSat, 162 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 213 SdHoareTripleChecker+Valid, 270 SdHoareTripleChecker+Invalid, 1788 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 162 IncrementalHoareTripleChecker+Valid, 1626 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2023-11-21 20:59:04,448 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [213 Valid, 270 Invalid, 1788 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [162 Valid, 1626 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2023-11-21 20:59:04,449 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-21 20:59:04,449 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-21 20:59:04,449 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 20:59:04,449 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-21 20:59:04,450 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 77 [2023-11-21 20:59:04,450 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:59:04,450 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-21 20:59:04,451 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 23 states have (on average 4.304347826086956) internal successors, (99), 19 states have internal predecessors, (99), 5 states have call successors, (33), 10 states have call predecessors, (33), 11 states have return successors, (31), 12 states have call predecessors, (31), 5 states have call successors, (31) [2023-11-21 20:59:04,451 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-21 20:59:04,451 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-21 20:59:04,454 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-21 20:59:04,480 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-21 20:59:04,668 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable8 [2023-11-21 20:59:04,670 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-21 20:59:07,273 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 158 164) no Hoare annotation was computed. [2023-11-21 20:59:07,273 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 158 164) the Hoare annotation is: true [2023-11-21 20:59:07,274 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 530 541) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (= ~methaneLevelCritical~0 1) (not (= |old(~methaneLevelCritical~0)| 1))) (or (not (= |old(~methaneLevelCritical~0)| 0)) (= ~methaneLevelCritical~0 0) .cse0))) [2023-11-21 20:59:07,274 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 530 541) no Hoare annotation was computed. [2023-11-21 20:59:07,274 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 542 550) the Hoare annotation is: true [2023-11-21 20:59:07,274 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 542 550) no Hoare annotation was computed. [2023-11-21 20:59:07,274 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 335 364) no Hoare annotation was computed. [2023-11-21 20:59:07,274 INFO L899 garLoopResultBuilder]: For program point L349(lines 349 353) no Hoare annotation was computed. [2023-11-21 20:59:07,275 INFO L902 garLoopResultBuilder]: At program point L349-1(lines 349 353) the Hoare annotation is: true [2023-11-21 20:59:07,275 INFO L902 garLoopResultBuilder]: At program point L345-2(lines 345 359) the Hoare annotation is: true [2023-11-21 20:59:07,275 INFO L902 garLoopResultBuilder]: At program point L341(line 341) the Hoare annotation is: true [2023-11-21 20:59:07,275 INFO L899 garLoopResultBuilder]: For program point L341-1(line 341) no Hoare annotation was computed. [2023-11-21 20:59:07,275 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 335 364) the Hoare annotation is: true [2023-11-21 20:59:07,275 INFO L899 garLoopResultBuilder]: For program point L360(lines 335 364) no Hoare annotation was computed. [2023-11-21 20:59:07,275 INFO L899 garLoopResultBuilder]: For program point L356(line 356) no Hoare annotation was computed. [2023-11-21 20:59:07,275 INFO L895 garLoopResultBuilder]: At program point L206(line 206) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= |old(~pumpRunning~0)| 0)) (= |timeShift_processEnvironment_~tmp~2#1| 0))) (or .cse0 (not (= ~methaneLevelCritical~0 1))))) [2023-11-21 20:59:07,276 INFO L895 garLoopResultBuilder]: At program point L198(line 198) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= |old(~pumpRunning~0)| 0))))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 1))) (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))))) [2023-11-21 20:59:07,276 INFO L899 garLoopResultBuilder]: For program point L198-1(line 198) no Hoare annotation was computed. [2023-11-21 20:59:07,276 INFO L895 garLoopResultBuilder]: At program point L483(line 483) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse3 (not (= ~methaneLevelCritical~0 1))) (.cse0 (not .cse7)) (.cse1 (and .cse4 .cse6)) (.cse2 (not (= 1 ~systemActive~0))) (.cse5 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse2 .cse3) (or .cse0 .cse1 .cse2 .cse5 (and (<= 2 ~waterLevel~0) .cse6)) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2 .cse7 .cse5)))) [2023-11-21 20:59:07,276 INFO L899 garLoopResultBuilder]: For program point L483-1(line 483) no Hoare annotation was computed. [2023-11-21 20:59:07,276 INFO L895 garLoopResultBuilder]: At program point L211(line 211) the Hoare annotation is: (let ((.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse6)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (not (= ~methaneLevelCritical~0 0))) (.cse4 (= ~pumpRunning~0 0)) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 (and .cse4 .cse3) .cse1 .cse5) (or .cse1 .cse6 .cse5) (or .cse4 .cse1 .cse2) (or .cse1 .cse6 .cse2)))) [2023-11-21 20:59:07,276 INFO L899 garLoopResultBuilder]: For program point L211-1(lines 192 216) no Hoare annotation was computed. [2023-11-21 20:59:07,276 INFO L899 garLoopResultBuilder]: For program point L145-1(lines 145 151) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 134 157) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| ~waterLevel~0)))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) .cse1) (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 1))))) [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point L472(line 472) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 134 157) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point L138-1(lines 137 156) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point L489(lines 489 495) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 472) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point L200(lines 200 208) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point L485(lines 485 498) no Hoare annotation was computed. [2023-11-21 20:59:07,277 INFO L899 garLoopResultBuilder]: For program point L196(lines 196 213) no Hoare annotation was computed. [2023-11-21 20:59:07,278 INFO L899 garLoopResultBuilder]: For program point L485-1(lines 477 501) no Hoare annotation was computed. [2023-11-21 20:59:07,278 INFO L899 garLoopResultBuilder]: For program point L419-2(lines 419 426) no Hoare annotation was computed. [2023-11-21 20:59:07,278 INFO L899 garLoopResultBuilder]: For program point L85(lines 85 91) no Hoare annotation was computed. [2023-11-21 20:59:07,278 INFO L899 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2023-11-21 20:59:07,278 INFO L895 garLoopResultBuilder]: At program point L110(lines 65 112) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 (= ~methaneLevelCritical~0 1) .cse1) (and (= ~methaneLevelCritical~0 0) .cse0 .cse1))) [2023-11-21 20:59:07,278 INFO L895 garLoopResultBuilder]: At program point L77(line 77) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 (= ~methaneLevelCritical~0 1) .cse1) (and (= ~methaneLevelCritical~0 0) .cse0 .cse1))) [2023-11-21 20:59:07,278 INFO L895 garLoopResultBuilder]: At program point L103-2(lines 95 108) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~methaneLevelCritical~0 0) .cse0 .cse1) (and .cse0 (= ~methaneLevelCritical~0 1) .cse1))) [2023-11-21 20:59:07,278 INFO L899 garLoopResultBuilder]: For program point L66(lines 65 112) no Hoare annotation was computed. [2023-11-21 20:59:07,279 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-21 20:59:07,279 INFO L895 garLoopResultBuilder]: At program point L87(line 87) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~methaneLevelCritical~0 0) .cse0 .cse1) (and .cse0 (= ~methaneLevelCritical~0 1) .cse1))) [2023-11-21 20:59:07,279 INFO L899 garLoopResultBuilder]: For program point L116(lines 55 120) no Hoare annotation was computed. [2023-11-21 20:59:07,279 INFO L899 garLoopResultBuilder]: For program point L75(lines 75 81) no Hoare annotation was computed. [2023-11-21 20:59:07,279 INFO L899 garLoopResultBuilder]: For program point L75-1(lines 75 81) no Hoare annotation was computed. [2023-11-21 20:59:07,279 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-21 20:59:07,279 INFO L895 garLoopResultBuilder]: At program point L113(lines 64 114) the Hoare annotation is: false [2023-11-21 20:59:07,279 INFO L899 garLoopResultBuilder]: For program point L419(lines 419 426) no Hoare annotation was computed. [2023-11-21 20:59:07,279 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 518 529) no Hoare annotation was computed. [2023-11-21 20:59:07,287 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 518 529) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 (not (= ~methaneLevelCritical~0 0)) .cse1) (or (not (= ~pumpRunning~0 0)) .cse0 (not (= ~methaneLevelCritical~0 1)) .cse1))) [2023-11-21 20:59:07,287 INFO L895 garLoopResultBuilder]: At program point L180(line 180) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse3 (and (or (< 1 ~waterLevel~0) (= |processEnvironment__wrappee__methaneQuery_~tmp~1#1| 0)) (= ~pumpRunning~0 0)))) (and (or .cse0 .cse1 .cse2) (or (not .cse1) .cse0 (not (= ~methaneLevelCritical~0 1)) .cse3) (or .cse0 .cse2 .cse3))) [2023-11-21 20:59:07,288 INFO L899 garLoopResultBuilder]: For program point L174(lines 174 182) no Hoare annotation was computed. [2023-11-21 20:59:07,288 INFO L899 garLoopResultBuilder]: For program point L170(lines 170 187) no Hoare annotation was computed. [2023-11-21 20:59:07,288 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 166 190) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~methaneLevelCritical~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 (not (= ~methaneLevelCritical~0 1))))) [2023-11-21 20:59:07,288 INFO L895 garLoopResultBuilder]: At program point L230(line 230) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse3 (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)))) (and (or .cse0 .cse1 .cse2) (or (not .cse1) .cse0 .cse3 (not (= ~methaneLevelCritical~0 1))) (or .cse0 .cse2 .cse3))) [2023-11-21 20:59:07,288 INFO L899 garLoopResultBuilder]: For program point L230-1(line 230) no Hoare annotation was computed. [2023-11-21 20:59:07,289 INFO L895 garLoopResultBuilder]: At program point L185(line 185) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= ~methaneLevelCritical~0 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 .cse1) (or .cse2 .cse0 (not (= ~methaneLevelCritical~0 1))) (or .cse2 .cse0 .cse1))) [2023-11-21 20:59:07,289 INFO L899 garLoopResultBuilder]: For program point L185-1(lines 166 190) no Hoare annotation was computed. [2023-11-21 20:59:07,289 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 166 190) no Hoare annotation was computed. [2023-11-21 20:59:07,289 INFO L902 garLoopResultBuilder]: At program point L255(line 255) the Hoare annotation is: true [2023-11-21 20:59:07,289 INFO L899 garLoopResultBuilder]: For program point L255-1(line 255) no Hoare annotation was computed. [2023-11-21 20:59:07,289 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 250 260) no Hoare annotation was computed. [2023-11-21 20:59:07,290 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 250 260) the Hoare annotation is: true [2023-11-21 20:59:07,294 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:59:07,297 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-21 20:59:07,314 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.11 08:59:07 BoogieIcfgContainer [2023-11-21 20:59:07,314 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-21 20:59:07,315 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-21 20:59:07,315 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-21 20:59:07,315 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-21 20:59:07,316 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 08:58:53" (3/4) ... [2023-11-21 20:59:07,319 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-21 20:59:07,323 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-21 20:59:07,323 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-21 20:59:07,323 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-21 20:59:07,323 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-21 20:59:07,323 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-21 20:59:07,324 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-21 20:59:07,324 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-21 20:59:07,324 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-21 20:59:07,342 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 44 nodes and edges [2023-11-21 20:59:07,342 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2023-11-21 20:59:07,343 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-21 20:59:07,344 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 20:59:07,345 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 20:59:07,378 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((1 == systemActive)) || !((methaneLevelCritical == 0))) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) && ((!((1 == systemActive)) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) || !((methaneLevelCritical == 1)))) [2023-11-21 20:59:07,437 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((1 == systemActive)) || !((methaneLevelCritical == 0))) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) && ((!((1 == systemActive)) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) || !((methaneLevelCritical == 1)))) [2023-11-21 20:59:07,501 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/witness.graphml [2023-11-21 20:59:07,502 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/witness.yml [2023-11-21 20:59:07,502 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-21 20:59:07,503 INFO L158 Benchmark]: Toolchain (without parser) took 16219.63ms. Allocated memory was 134.2MB in the beginning and 234.9MB in the end (delta: 100.7MB). Free memory was 88.0MB in the beginning and 145.2MB in the end (delta: -57.2MB). Peak memory consumption was 44.3MB. Max. memory is 16.1GB. [2023-11-21 20:59:07,503 INFO L158 Benchmark]: CDTParser took 0.34ms. Allocated memory is still 134.2MB. Free memory is still 76.1MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-21 20:59:07,504 INFO L158 Benchmark]: CACSL2BoogieTranslator took 771.79ms. Allocated memory is still 134.2MB. Free memory was 87.6MB in the beginning and 68.4MB in the end (delta: 19.2MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-21 20:59:07,504 INFO L158 Benchmark]: Boogie Procedure Inliner took 103.70ms. Allocated memory is still 134.2MB. Free memory was 68.4MB in the beginning and 66.2MB in the end (delta: 2.2MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-21 20:59:07,504 INFO L158 Benchmark]: Boogie Preprocessor took 99.45ms. Allocated memory is still 134.2MB. Free memory was 66.2MB in the beginning and 64.2MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-21 20:59:07,505 INFO L158 Benchmark]: RCFGBuilder took 1086.07ms. Allocated memory was 134.2MB in the beginning and 195.0MB in the end (delta: 60.8MB). Free memory was 64.2MB in the beginning and 141.9MB in the end (delta: -77.8MB). Peak memory consumption was 14.0MB. Max. memory is 16.1GB. [2023-11-21 20:59:07,506 INFO L158 Benchmark]: TraceAbstraction took 13958.60ms. Allocated memory was 195.0MB in the beginning and 234.9MB in the end (delta: 39.8MB). Free memory was 140.9MB in the beginning and 152.5MB in the end (delta: -11.6MB). Peak memory consumption was 118.4MB. Max. memory is 16.1GB. [2023-11-21 20:59:07,506 INFO L158 Benchmark]: Witness Printer took 187.17ms. Allocated memory is still 234.9MB. Free memory was 152.5MB in the beginning and 145.2MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2023-11-21 20:59:07,509 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.34ms. Allocated memory is still 134.2MB. Free memory is still 76.1MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 771.79ms. Allocated memory is still 134.2MB. Free memory was 87.6MB in the beginning and 68.4MB in the end (delta: 19.2MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 103.70ms. Allocated memory is still 134.2MB. Free memory was 68.4MB in the beginning and 66.2MB in the end (delta: 2.2MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 99.45ms. Allocated memory is still 134.2MB. Free memory was 66.2MB in the beginning and 64.2MB in the end (delta: 2.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 1086.07ms. Allocated memory was 134.2MB in the beginning and 195.0MB in the end (delta: 60.8MB). Free memory was 64.2MB in the beginning and 141.9MB in the end (delta: -77.8MB). Peak memory consumption was 14.0MB. Max. memory is 16.1GB. * TraceAbstraction took 13958.60ms. Allocated memory was 195.0MB in the beginning and 234.9MB in the end (delta: 39.8MB). Free memory was 140.9MB in the beginning and 152.5MB in the end (delta: -11.6MB). Peak memory consumption was 118.4MB. Max. memory is 16.1GB. * Witness Printer took 187.17ms. Allocated memory is still 234.9MB. Free memory was 152.5MB in the beginning and 145.2MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] - GenericResultAtLocation [Line: 121]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [121] - GenericResultAtLocation [Line: 333]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [333] - GenericResultAtLocation [Line: 432]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [432] - GenericResultAtLocation [Line: 467]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [467] - GenericResultAtLocation [Line: 476]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [476] - GenericResultAtLocation [Line: 502]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [502] - GenericResultAtLocation [Line: 597]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [597] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 472]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 63 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 13.8s, OverallIterations: 9, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 6.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.6s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1245 SdHoareTripleChecker+Valid, 3.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1216 mSDsluCounter, 1113 SdHoareTripleChecker+Invalid, 2.8s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 755 mSDsCounter, 733 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 3019 IncrementalHoareTripleChecker+Invalid, 3752 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 733 mSolverCounterUnsat, 358 mSDtfsCounter, 3019 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 386 GetRequests, 234 SyntacticMatches, 0 SemanticMatches, 152 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1607 ImplicationChecksByTransitivity, 2.8s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=387occurred in iteration=8, InterpolantAutomatonStates: 130, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 9 MinimizatonAttempts, 101 StatesRemovedByMinimization, 5 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 24 LocationsWithAnnotation, 608 PreInvPairs, 685 NumberOfFragments, 573 HoareAnnotationTreeSize, 608 FomulaSimplifications, 6295 FormulaSimplificationTreeSizeReduction, 0.5s HoareSimplificationTime, 24 FomulaSimplificationsInter, 6222 FormulaSimplificationTreeSizeReductionInter, 2.0s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 3.2s InterpolantComputationTime, 379 NumberOfCodeBlocks, 379 NumberOfCodeBlocksAsserted, 10 NumberOfCheckSat, 445 ConstructedInterpolants, 0 QuantifiedInterpolants, 990 SizeOfPredicates, 5 NumberOfNonLiveVariables, 286 ConjunctsInSsa, 28 ConjunctsInUnsatCore, 11 InterpolantComputations, 8 PerfectInterpolantSequences, 94/111 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (splverifierCounter == 0)) || (((methaneLevelCritical == 0) && (1 == systemActive)) && (splverifierCounter == 0))) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 345]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 134]: Loop Invariant Derived loop invariant: (((!((1 == systemActive)) || !((methaneLevelCritical == 0))) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) && ((!((1 == systemActive)) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) || !((methaneLevelCritical == 1)))) RESULT: Ultimate proved your program to be correct! [2023-11-21 20:59:07,565 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1608bfa4-721b-43ce-97a7-1564f7f8e26c/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE