./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product31.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0e0057cc Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product31.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 929dace20230ddc06ca4ae48df9d26fbf35d81f20edb15688ea1cc72e971ff98 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-0e0057c [2023-11-26 11:56:36,528 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-26 11:56:36,595 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-26 11:56:36,600 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-26 11:56:36,601 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-26 11:56:36,627 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-26 11:56:36,628 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-26 11:56:36,629 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-26 11:56:36,630 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-26 11:56:36,630 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-26 11:56:36,631 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-26 11:56:36,631 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-26 11:56:36,632 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-26 11:56:36,633 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-26 11:56:36,633 INFO L153 SettingsManager]: * Use SBE=true [2023-11-26 11:56:36,634 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-26 11:56:36,635 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-26 11:56:36,635 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-26 11:56:36,636 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-26 11:56:36,636 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-26 11:56:36,637 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-26 11:56:36,644 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-26 11:56:36,645 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-26 11:56:36,645 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-26 11:56:36,646 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-26 11:56:36,646 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-26 11:56:36,647 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-26 11:56:36,647 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-26 11:56:36,648 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-26 11:56:36,648 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-26 11:56:36,649 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-26 11:56:36,650 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-26 11:56:36,650 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-26 11:56:36,651 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-26 11:56:36,651 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-26 11:56:36,651 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-26 11:56:36,651 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-26 11:56:36,652 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-26 11:56:36,652 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-26 11:56:36,652 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-26 11:56:36,652 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-26 11:56:36,653 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-26 11:56:36,653 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 929dace20230ddc06ca4ae48df9d26fbf35d81f20edb15688ea1cc72e971ff98 [2023-11-26 11:56:36,933 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-26 11:56:36,966 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-26 11:56:36,969 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-26 11:56:36,970 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-26 11:56:36,971 INFO L274 PluginConnector]: CDTParser initialized [2023-11-26 11:56:36,972 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/../../sv-benchmarks/c/product-lines/minepump_spec5_product31.cil.c [2023-11-26 11:56:40,010 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-26 11:56:40,397 INFO L384 CDTParser]: Found 1 translation units. [2023-11-26 11:56:40,398 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/sv-benchmarks/c/product-lines/minepump_spec5_product31.cil.c [2023-11-26 11:56:40,418 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/data/b1041abee/a21b1f582db54f14b0f686dbb46110ea/FLAG8a4508bb6 [2023-11-26 11:56:40,446 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/data/b1041abee/a21b1f582db54f14b0f686dbb46110ea [2023-11-26 11:56:40,449 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-26 11:56:40,450 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-26 11:56:40,452 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-26 11:56:40,452 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-26 11:56:40,461 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-26 11:56:40,464 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.11 11:56:40" (1/1) ... [2023-11-26 11:56:40,469 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@8cb7b48 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:40, skipping insertion in model container [2023-11-26 11:56:40,469 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.11 11:56:40" (1/1) ... [2023-11-26 11:56:40,521 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-26 11:56:40,699 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/sv-benchmarks/c/product-lines/minepump_spec5_product31.cil.c[1605,1618] [2023-11-26 11:56:40,846 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-26 11:56:40,868 INFO L202 MainTranslator]: Completed pre-run [2023-11-26 11:56:40,879 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2023-11-26 11:56:40,881 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [58] [2023-11-26 11:56:40,881 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [130] [2023-11-26 11:56:40,881 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [353] [2023-11-26 11:56:40,882 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [443] [2023-11-26 11:56:40,882 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] [2023-11-26 11:56:40,882 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [910] [2023-11-26 11:56:40,882 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [959] [2023-11-26 11:56:40,895 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/sv-benchmarks/c/product-lines/minepump_spec5_product31.cil.c[1605,1618] [2023-11-26 11:56:41,001 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-26 11:56:41,029 INFO L206 MainTranslator]: Completed translation [2023-11-26 11:56:41,029 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41 WrapperNode [2023-11-26 11:56:41,030 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-26 11:56:41,031 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-26 11:56:41,031 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-26 11:56:41,031 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-26 11:56:41,039 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,064 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,108 INFO L138 Inliner]: procedures = 57, calls = 104, calls flagged for inlining = 23, calls inlined = 19, statements flattened = 200 [2023-11-26 11:56:41,108 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-26 11:56:41,109 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-26 11:56:41,109 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-26 11:56:41,110 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-26 11:56:41,122 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,122 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,135 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,155 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-11-26 11:56:41,156 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,167 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,173 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,177 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,179 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,180 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,183 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-26 11:56:41,185 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-26 11:56:41,185 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-26 11:56:41,187 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-26 11:56:41,188 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (1/1) ... [2023-11-26 11:56:41,194 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-26 11:56:41,208 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 11:56:41,226 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-11-26 11:56:41,236 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-11-26 11:56:41,260 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-26 11:56:41,261 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-26 11:56:41,261 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-26 11:56:41,261 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-26 11:56:41,261 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-26 11:56:41,262 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-26 11:56:41,262 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-26 11:56:41,262 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-26 11:56:41,262 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-26 11:56:41,263 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-26 11:56:41,263 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-26 11:56:41,264 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-11-26 11:56:41,264 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-11-26 11:56:41,264 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-26 11:56:41,265 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-26 11:56:41,265 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-26 11:56:41,265 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-26 11:56:41,267 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-26 11:56:41,268 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-26 11:56:41,268 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-26 11:56:41,268 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-26 11:56:41,269 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-26 11:56:41,353 INFO L241 CfgBuilder]: Building ICFG [2023-11-26 11:56:41,356 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-26 11:56:41,650 INFO L282 CfgBuilder]: Performing block encoding [2023-11-26 11:56:41,731 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-26 11:56:41,732 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-26 11:56:41,732 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 11:56:41 BoogieIcfgContainer [2023-11-26 11:56:41,732 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-26 11:56:41,740 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-26 11:56:41,741 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-26 11:56:41,743 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-26 11:56:41,744 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 26.11 11:56:40" (1/3) ... [2023-11-26 11:56:41,744 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@480d1953 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.11 11:56:41, skipping insertion in model container [2023-11-26 11:56:41,745 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 11:56:41" (2/3) ... [2023-11-26 11:56:41,745 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@480d1953 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.11 11:56:41, skipping insertion in model container [2023-11-26 11:56:41,745 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 11:56:41" (3/3) ... [2023-11-26 11:56:41,747 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product31.cil.c [2023-11-26 11:56:41,765 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-26 11:56:41,765 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-26 11:56:41,853 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-26 11:56:41,878 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@55b70d06, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-26 11:56:41,892 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-26 11:56:41,897 INFO L276 IsEmpty]: Start isEmpty. Operand has 78 states, 51 states have (on average 1.5098039215686274) internal successors, (77), 60 states have internal predecessors, (77), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 12 states have call predecessors, (16), 16 states have call successors, (16) [2023-11-26 11:56:41,910 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-11-26 11:56:41,910 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 11:56:41,911 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 11:56:41,912 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 11:56:41,918 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 11:56:41,919 INFO L85 PathProgramCache]: Analyzing trace with hash 755302927, now seen corresponding path program 1 times [2023-11-26 11:56:41,929 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 11:56:41,930 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [318894493] [2023-11-26 11:56:41,930 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 11:56:41,931 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 11:56:42,063 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,140 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-26 11:56:42,144 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,149 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-26 11:56:42,152 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,157 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-26 11:56:42,157 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 11:56:42,158 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [318894493] [2023-11-26 11:56:42,159 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [318894493] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 11:56:42,159 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 11:56:42,159 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-26 11:56:42,161 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2004040809] [2023-11-26 11:56:42,163 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 11:56:42,169 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-26 11:56:42,169 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 11:56:42,201 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-26 11:56:42,202 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-26 11:56:42,204 INFO L87 Difference]: Start difference. First operand has 78 states, 51 states have (on average 1.5098039215686274) internal successors, (77), 60 states have internal predecessors, (77), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 12 states have call predecessors, (16), 16 states have call successors, (16) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 11:56:42,276 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 11:56:42,277 INFO L93 Difference]: Finished difference Result 154 states and 219 transitions. [2023-11-26 11:56:42,279 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-26 11:56:42,280 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-11-26 11:56:42,281 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 11:56:42,292 INFO L225 Difference]: With dead ends: 154 [2023-11-26 11:56:42,293 INFO L226 Difference]: Without dead ends: 73 [2023-11-26 11:56:42,298 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-26 11:56:42,303 INFO L413 NwaCegarLoop]: 89 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 89 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-26 11:56:42,304 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 89 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-26 11:56:42,320 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 73 states. [2023-11-26 11:56:42,347 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 73 to 73. [2023-11-26 11:56:42,349 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 73 states, 48 states have (on average 1.3958333333333333) internal successors, (67), 56 states have internal predecessors, (67), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 11 states have call predecessors, (15), 15 states have call successors, (15) [2023-11-26 11:56:42,352 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 73 states to 73 states and 98 transitions. [2023-11-26 11:56:42,354 INFO L78 Accepts]: Start accepts. Automaton has 73 states and 98 transitions. Word has length 22 [2023-11-26 11:56:42,354 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 11:56:42,355 INFO L495 AbstractCegarLoop]: Abstraction has 73 states and 98 transitions. [2023-11-26 11:56:42,355 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 11:56:42,356 INFO L276 IsEmpty]: Start isEmpty. Operand 73 states and 98 transitions. [2023-11-26 11:56:42,359 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-11-26 11:56:42,359 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 11:56:42,360 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 11:56:42,360 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-26 11:56:42,360 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 11:56:42,362 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 11:56:42,362 INFO L85 PathProgramCache]: Analyzing trace with hash -1453261388, now seen corresponding path program 1 times [2023-11-26 11:56:42,362 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 11:56:42,363 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1020441426] [2023-11-26 11:56:42,363 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 11:56:42,363 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 11:56:42,403 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,515 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-26 11:56:42,518 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,520 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-26 11:56:42,523 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,526 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-26 11:56:42,526 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 11:56:42,527 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1020441426] [2023-11-26 11:56:42,527 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1020441426] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 11:56:42,527 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 11:56:42,527 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-26 11:56:42,528 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [9907935] [2023-11-26 11:56:42,528 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 11:56:42,529 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 11:56:42,530 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 11:56:42,531 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 11:56:42,533 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 11:56:42,533 INFO L87 Difference]: Start difference. First operand 73 states and 98 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 11:56:42,597 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 11:56:42,597 INFO L93 Difference]: Finished difference Result 116 states and 154 transitions. [2023-11-26 11:56:42,599 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 11:56:42,599 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-11-26 11:56:42,600 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 11:56:42,601 INFO L225 Difference]: With dead ends: 116 [2023-11-26 11:56:42,603 INFO L226 Difference]: Without dead ends: 65 [2023-11-26 11:56:42,605 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 11:56:42,608 INFO L413 NwaCegarLoop]: 75 mSDtfsCounter, 14 mSDsluCounter, 58 mSDsCounter, 0 mSdLazyCounter, 21 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 133 SdHoareTripleChecker+Invalid, 21 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 21 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-26 11:56:42,609 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 133 Invalid, 21 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 21 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-26 11:56:42,611 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 65 states. [2023-11-26 11:56:42,622 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 65 to 65. [2023-11-26 11:56:42,626 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 65 states, 43 states have (on average 1.4186046511627908) internal successors, (61), 51 states have internal predecessors, (61), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 9 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-26 11:56:42,636 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 65 states to 65 states and 87 transitions. [2023-11-26 11:56:42,640 INFO L78 Accepts]: Start accepts. Automaton has 65 states and 87 transitions. Word has length 23 [2023-11-26 11:56:42,640 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 11:56:42,640 INFO L495 AbstractCegarLoop]: Abstraction has 65 states and 87 transitions. [2023-11-26 11:56:42,641 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 11:56:42,641 INFO L276 IsEmpty]: Start isEmpty. Operand 65 states and 87 transitions. [2023-11-26 11:56:42,643 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-11-26 11:56:42,647 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 11:56:42,647 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 11:56:42,647 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-26 11:56:42,648 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 11:56:42,648 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 11:56:42,650 INFO L85 PathProgramCache]: Analyzing trace with hash 1965930726, now seen corresponding path program 1 times [2023-11-26 11:56:42,651 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 11:56:42,651 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [869030522] [2023-11-26 11:56:42,651 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 11:56:42,651 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 11:56:42,697 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,774 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-26 11:56:42,777 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,781 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-26 11:56:42,783 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:42,785 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-26 11:56:42,786 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 11:56:42,786 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [869030522] [2023-11-26 11:56:42,786 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [869030522] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 11:56:42,786 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 11:56:42,787 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-26 11:56:42,787 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [322314703] [2023-11-26 11:56:42,787 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 11:56:42,788 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 11:56:42,788 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 11:56:42,789 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 11:56:42,789 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 11:56:42,789 INFO L87 Difference]: Start difference. First operand 65 states and 87 transitions. Second operand has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-26 11:56:42,853 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 11:56:42,853 INFO L93 Difference]: Finished difference Result 191 states and 258 transitions. [2023-11-26 11:56:42,854 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 11:56:42,854 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-11-26 11:56:42,854 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 11:56:42,857 INFO L225 Difference]: With dead ends: 191 [2023-11-26 11:56:42,857 INFO L226 Difference]: Without dead ends: 128 [2023-11-26 11:56:42,858 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 11:56:42,860 INFO L413 NwaCegarLoop]: 87 mSDtfsCounter, 71 mSDsluCounter, 73 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 71 SdHoareTripleChecker+Valid, 160 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-26 11:56:42,861 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [71 Valid, 160 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-26 11:56:42,862 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 128 states. [2023-11-26 11:56:42,899 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 128 to 125. [2023-11-26 11:56:42,899 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 125 states, 82 states have (on average 1.4268292682926829) internal successors, (117), 97 states have internal predecessors, (117), 26 states have call successors, (26), 16 states have call predecessors, (26), 16 states have return successors, (26), 17 states have call predecessors, (26), 26 states have call successors, (26) [2023-11-26 11:56:42,902 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 125 states to 125 states and 169 transitions. [2023-11-26 11:56:42,902 INFO L78 Accepts]: Start accepts. Automaton has 125 states and 169 transitions. Word has length 26 [2023-11-26 11:56:42,902 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 11:56:42,902 INFO L495 AbstractCegarLoop]: Abstraction has 125 states and 169 transitions. [2023-11-26 11:56:42,903 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-26 11:56:42,903 INFO L276 IsEmpty]: Start isEmpty. Operand 125 states and 169 transitions. [2023-11-26 11:56:42,905 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-11-26 11:56:42,905 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 11:56:42,905 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 11:56:42,905 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-26 11:56:42,906 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 11:56:42,906 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 11:56:42,906 INFO L85 PathProgramCache]: Analyzing trace with hash -1169242648, now seen corresponding path program 1 times [2023-11-26 11:56:42,906 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 11:56:42,907 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [320961772] [2023-11-26 11:56:42,907 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 11:56:42,907 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 11:56:42,937 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:43,129 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-26 11:56:43,132 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:43,135 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-11-26 11:56:43,137 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 11:56:43,151 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-26 11:56:43,151 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 11:56:43,151 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [320961772] [2023-11-26 11:56:43,152 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [320961772] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 11:56:43,152 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 11:56:43,152 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-26 11:56:43,152 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1753906276] [2023-11-26 11:56:43,153 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 11:56:43,153 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-26 11:56:43,153 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 11:56:43,154 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-26 11:56:43,154 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-26 11:56:43,155 INFO L87 Difference]: Start difference. First operand 125 states and 169 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 11:56:43,279 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 11:56:43,280 INFO L93 Difference]: Finished difference Result 212 states and 287 transitions. [2023-11-26 11:56:43,280 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-26 11:56:43,280 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-11-26 11:56:43,281 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 11:56:43,281 INFO L225 Difference]: With dead ends: 212 [2023-11-26 11:56:43,281 INFO L226 Difference]: Without dead ends: 0 [2023-11-26 11:56:43,283 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-11-26 11:56:43,285 INFO L413 NwaCegarLoop]: 40 mSDtfsCounter, 34 mSDsluCounter, 105 mSDsCounter, 0 mSdLazyCounter, 71 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 145 SdHoareTripleChecker+Invalid, 75 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 71 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 11:56:43,286 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 145 Invalid, 75 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 71 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 11:56:43,287 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-26 11:56:43,287 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-26 11:56:43,287 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-26 11:56:43,287 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-26 11:56:43,288 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 29 [2023-11-26 11:56:43,288 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 11:56:43,288 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-26 11:56:43,288 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 11:56:43,289 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-26 11:56:43,289 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-26 11:56:43,292 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-26 11:56:43,293 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-26 11:56:43,295 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-26 11:56:43,515 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 255 262) no Hoare annotation was computed. [2023-11-26 11:56:43,516 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 255 262) the Hoare annotation is: true [2023-11-26 11:56:43,516 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 171 177) no Hoare annotation was computed. [2023-11-26 11:56:43,516 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 171 177) the Hoare annotation is: true [2023-11-26 11:56:43,516 INFO L899 garLoopResultBuilder]: For program point L385-1(lines 381 392) no Hoare annotation was computed. [2023-11-26 11:56:43,517 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 381 392) the Hoare annotation is: true [2023-11-26 11:56:43,517 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 381 392) no Hoare annotation was computed. [2023-11-26 11:56:43,517 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 445 474) no Hoare annotation was computed. [2023-11-26 11:56:43,517 INFO L899 garLoopResultBuilder]: For program point L470(lines 445 474) no Hoare annotation was computed. [2023-11-26 11:56:43,517 INFO L899 garLoopResultBuilder]: For program point L466(line 466) no Hoare annotation was computed. [2023-11-26 11:56:43,518 INFO L899 garLoopResultBuilder]: For program point L459(lines 459 463) no Hoare annotation was computed. [2023-11-26 11:56:43,518 INFO L902 garLoopResultBuilder]: At program point L459-1(lines 459 463) the Hoare annotation is: true [2023-11-26 11:56:43,518 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 445 474) the Hoare annotation is: true [2023-11-26 11:56:43,518 INFO L902 garLoopResultBuilder]: At program point L455-2(lines 455 469) the Hoare annotation is: true [2023-11-26 11:56:43,519 INFO L902 garLoopResultBuilder]: At program point L451(line 451) the Hoare annotation is: true [2023-11-26 11:56:43,519 INFO L899 garLoopResultBuilder]: For program point L451-1(line 451) no Hoare annotation was computed. [2023-11-26 11:56:43,519 INFO L899 garLoopResultBuilder]: For program point L151(lines 151 157) no Hoare annotation was computed. [2023-11-26 11:56:43,519 INFO L899 garLoopResultBuilder]: For program point L151-2(lines 147 169) no Hoare annotation was computed. [2023-11-26 11:56:43,519 INFO L899 garLoopResultBuilder]: For program point L213(lines 213 221) no Hoare annotation was computed. [2023-11-26 11:56:43,520 INFO L899 garLoopResultBuilder]: For program point L209(lines 209 226) no Hoare annotation was computed. [2023-11-26 11:56:43,520 INFO L895 garLoopResultBuilder]: At program point L940(line 940) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 11:56:43,520 INFO L899 garLoopResultBuilder]: For program point L940-1(line 940) no Hoare annotation was computed. [2023-11-26 11:56:43,520 INFO L895 garLoopResultBuilder]: At program point L925(line 925) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 11:56:43,521 INFO L899 garLoopResultBuilder]: For program point L925-1(line 925) no Hoare annotation was computed. [2023-11-26 11:56:43,521 INFO L895 garLoopResultBuilder]: At program point L219(line 219) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 11:56:43,521 INFO L895 garLoopResultBuilder]: At program point L215(line 215) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 11:56:43,521 INFO L899 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2023-11-26 11:56:43,521 INFO L895 garLoopResultBuilder]: At program point L211(line 211) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 11:56:43,522 INFO L899 garLoopResultBuilder]: For program point L211-1(line 211) no Hoare annotation was computed. [2023-11-26 11:56:43,522 INFO L899 garLoopResultBuilder]: For program point L942(lines 942 952) no Hoare annotation was computed. [2023-11-26 11:56:43,522 INFO L899 garLoopResultBuilder]: For program point L938(lines 938 955) no Hoare annotation was computed. [2023-11-26 11:56:43,522 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 144 170) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 11:56:43,523 INFO L899 garLoopResultBuilder]: For program point L938-1(lines 930 958) no Hoare annotation was computed. [2023-11-26 11:56:43,523 INFO L895 garLoopResultBuilder]: At program point L224(line 224) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 11:56:43,523 INFO L899 garLoopResultBuilder]: For program point L224-1(lines 205 229) no Hoare annotation was computed. [2023-11-26 11:56:43,523 INFO L899 garLoopResultBuilder]: For program point L158-1(lines 158 164) no Hoare annotation was computed. [2023-11-26 11:56:43,523 INFO L899 garLoopResultBuilder]: For program point L943(lines 943 949) no Hoare annotation was computed. [2023-11-26 11:56:43,524 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 144 170) no Hoare annotation was computed. [2023-11-26 11:56:43,524 INFO L899 garLoopResultBuilder]: For program point L361(lines 361 365) no Hoare annotation was computed. [2023-11-26 11:56:43,524 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2023-11-26 11:56:43,524 INFO L899 garLoopResultBuilder]: For program point L361-2(lines 357 368) no Hoare annotation was computed. [2023-11-26 11:56:43,525 INFO L895 garLoopResultBuilder]: At program point L122(lines 73 123) the Hoare annotation is: false [2023-11-26 11:56:43,525 INFO L899 garLoopResultBuilder]: For program point L531(lines 531 538) no Hoare annotation was computed. [2023-11-26 11:56:43,525 INFO L899 garLoopResultBuilder]: For program point L531-2(lines 531 538) no Hoare annotation was computed. [2023-11-26 11:56:43,525 INFO L899 garLoopResultBuilder]: For program point L110(lines 110 116) no Hoare annotation was computed. [2023-11-26 11:56:43,525 INFO L895 garLoopResultBuilder]: At program point L110-2(lines 104 117) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 11:56:43,526 INFO L899 garLoopResultBuilder]: For program point L94(lines 94 100) no Hoare annotation was computed. [2023-11-26 11:56:43,526 INFO L899 garLoopResultBuilder]: For program point L94-1(lines 94 100) no Hoare annotation was computed. [2023-11-26 11:56:43,526 INFO L895 garLoopResultBuilder]: At program point L119(lines 74 121) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 11:56:43,526 INFO L895 garLoopResultBuilder]: At program point L86(line 86) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 11:56:43,526 INFO L899 garLoopResultBuilder]: For program point L342(lines 342 348) no Hoare annotation was computed. [2023-11-26 11:56:43,527 INFO L899 garLoopResultBuilder]: For program point L342-1(lines 342 348) no Hoare annotation was computed. [2023-11-26 11:56:43,527 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-26 11:56:43,527 INFO L899 garLoopResultBuilder]: For program point L75(lines 74 121) no Hoare annotation was computed. [2023-11-26 11:56:43,527 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-26 11:56:43,527 INFO L899 garLoopResultBuilder]: For program point L104(lines 104 117) no Hoare annotation was computed. [2023-11-26 11:56:43,528 INFO L895 garLoopResultBuilder]: At program point L96(line 96) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 11:56:43,528 INFO L899 garLoopResultBuilder]: For program point L125(lines 64 129) no Hoare annotation was computed. [2023-11-26 11:56:43,528 INFO L895 garLoopResultBuilder]: At program point L344(line 344) the Hoare annotation is: false [2023-11-26 11:56:43,528 INFO L899 garLoopResultBuilder]: For program point L84(lines 84 90) no Hoare annotation was computed. [2023-11-26 11:56:43,528 INFO L899 garLoopResultBuilder]: For program point L84-1(lines 84 90) no Hoare annotation was computed. [2023-11-26 11:56:43,529 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 369 380) no Hoare annotation was computed. [2023-11-26 11:56:43,529 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 369 380) the Hoare annotation is: true [2023-11-26 11:56:43,529 INFO L899 garLoopResultBuilder]: For program point L373-1(lines 369 380) no Hoare annotation was computed. [2023-11-26 11:56:43,529 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 179 203) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 11:56:43,530 INFO L895 garLoopResultBuilder]: At program point L193(line 193) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 11:56:43,530 INFO L895 garLoopResultBuilder]: At program point L189(line 189) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 11:56:43,530 INFO L899 garLoopResultBuilder]: For program point L187(lines 187 195) no Hoare annotation was computed. [2023-11-26 11:56:43,530 INFO L899 garLoopResultBuilder]: For program point L183(lines 183 200) no Hoare annotation was computed. [2023-11-26 11:56:43,530 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 179 203) no Hoare annotation was computed. [2023-11-26 11:56:43,531 INFO L899 garLoopResultBuilder]: For program point L328(lines 328 332) no Hoare annotation was computed. [2023-11-26 11:56:43,531 INFO L899 garLoopResultBuilder]: For program point L328-2(lines 328 332) no Hoare annotation was computed. [2023-11-26 11:56:43,531 INFO L895 garLoopResultBuilder]: At program point L198(line 198) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 11:56:43,531 INFO L899 garLoopResultBuilder]: For program point L198-1(lines 179 203) no Hoare annotation was computed. [2023-11-26 11:56:43,531 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 274 282) no Hoare annotation was computed. [2023-11-26 11:56:43,532 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 274 282) the Hoare annotation is: true [2023-11-26 11:56:43,532 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 263 273) no Hoare annotation was computed. [2023-11-26 11:56:43,532 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 263 273) the Hoare annotation is: true [2023-11-26 11:56:43,535 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1] [2023-11-26 11:56:43,537 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-26 11:56:43,550 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 26.11 11:56:43 BoogieIcfgContainer [2023-11-26 11:56:43,550 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-26 11:56:43,551 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-26 11:56:43,551 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-26 11:56:43,552 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-26 11:56:43,552 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 11:56:41" (3/4) ... [2023-11-26 11:56:43,554 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-26 11:56:43,558 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-26 11:56:43,559 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-26 11:56:43,559 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-26 11:56:43,559 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-26 11:56:43,559 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-26 11:56:43,560 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-26 11:56:43,560 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-26 11:56:43,560 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2023-11-26 11:56:43,560 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-26 11:56:43,568 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 35 nodes and edges [2023-11-26 11:56:43,569 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2023-11-26 11:56:43,570 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-26 11:56:43,570 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-26 11:56:43,571 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-26 11:56:43,691 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/witness.graphml [2023-11-26 11:56:43,692 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/witness.yml [2023-11-26 11:56:43,692 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-26 11:56:43,693 INFO L158 Benchmark]: Toolchain (without parser) took 3242.90ms. Allocated memory is still 151.0MB. Free memory was 120.3MB in the beginning and 85.7MB in the end (delta: 34.6MB). Peak memory consumption was 35.5MB. Max. memory is 16.1GB. [2023-11-26 11:56:43,694 INFO L158 Benchmark]: CDTParser took 0.23ms. Allocated memory is still 125.8MB. Free memory is still 85.2MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-26 11:56:43,694 INFO L158 Benchmark]: CACSL2BoogieTranslator took 578.49ms. Allocated memory is still 151.0MB. Free memory was 120.1MB in the beginning and 100.4MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-26 11:56:43,695 INFO L158 Benchmark]: Boogie Procedure Inliner took 77.74ms. Allocated memory is still 151.0MB. Free memory was 100.4MB in the beginning and 98.1MB in the end (delta: 2.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-26 11:56:43,695 INFO L158 Benchmark]: Boogie Preprocessor took 75.01ms. Allocated memory is still 151.0MB. Free memory was 98.1MB in the beginning and 95.8MB in the end (delta: 2.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-26 11:56:43,696 INFO L158 Benchmark]: RCFGBuilder took 547.54ms. Allocated memory is still 151.0MB. Free memory was 95.8MB in the beginning and 73.7MB in the end (delta: 22.1MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. [2023-11-26 11:56:43,696 INFO L158 Benchmark]: TraceAbstraction took 1810.13ms. Allocated memory is still 151.0MB. Free memory was 73.0MB in the beginning and 92.8MB in the end (delta: -19.9MB). There was no memory consumed. Max. memory is 16.1GB. [2023-11-26 11:56:43,697 INFO L158 Benchmark]: Witness Printer took 141.10ms. Allocated memory is still 151.0MB. Free memory was 92.8MB in the beginning and 85.7MB in the end (delta: 7.2MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2023-11-26 11:56:43,700 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.23ms. Allocated memory is still 125.8MB. Free memory is still 85.2MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 578.49ms. Allocated memory is still 151.0MB. Free memory was 120.1MB in the beginning and 100.4MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 77.74ms. Allocated memory is still 151.0MB. Free memory was 100.4MB in the beginning and 98.1MB in the end (delta: 2.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 75.01ms. Allocated memory is still 151.0MB. Free memory was 98.1MB in the beginning and 95.8MB in the end (delta: 2.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 547.54ms. Allocated memory is still 151.0MB. Free memory was 95.8MB in the beginning and 73.7MB in the end (delta: 22.1MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. * TraceAbstraction took 1810.13ms. Allocated memory is still 151.0MB. Free memory was 73.0MB in the beginning and 92.8MB in the end (delta: -19.9MB). There was no memory consumed. Max. memory is 16.1GB. * Witness Printer took 141.10ms. Allocated memory is still 151.0MB. Free memory was 92.8MB in the beginning and 85.7MB in the end (delta: 7.2MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [58] - GenericResultAtLocation [Line: 130]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [130] - GenericResultAtLocation [Line: 353]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [353] - GenericResultAtLocation [Line: 443]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [443] - GenericResultAtLocation [Line: 544]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] - GenericResultAtLocation [Line: 910]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [910] - GenericResultAtLocation [Line: 959]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [959] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 78 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 1.7s, OverallIterations: 4, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.2s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 124 SdHoareTripleChecker+Valid, 0.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 119 mSDsluCounter, 527 SdHoareTripleChecker+Invalid, 0.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 236 mSDsCounter, 4 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 134 IncrementalHoareTripleChecker+Invalid, 138 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 4 mSolverCounterUnsat, 291 mSDtfsCounter, 134 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 31 GetRequests, 22 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=125occurred in iteration=3, InterpolantAutomatonStates: 14, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 4 MinimizatonAttempts, 3 StatesRemovedByMinimization, 1 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 27 LocationsWithAnnotation, 189 PreInvPairs, 201 NumberOfFragments, 108 HoareAnnotationTreeSize, 189 FomulaSimplifications, 0 FormulaSimplificationTreeSizeReduction, 0.0s HoareSimplificationTime, 27 FomulaSimplificationsInter, 256 FormulaSimplificationTreeSizeReductionInter, 0.2s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.5s InterpolantComputationTime, 100 NumberOfCodeBlocks, 100 NumberOfCodeBlocksAsserted, 4 NumberOfCheckSat, 96 ConstructedInterpolants, 0 QuantifiedInterpolants, 174 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 4 InterpolantComputations, 4 PerfectInterpolantSequences, 8/8 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 74]: Loop Invariant Derived loop invariant: ((pumpRunning == 0) && (splverifierCounter == 0)) - InvariantResult [Line: 263]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 455]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 73]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2023-11-26 11:56:43,736 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_410033f0-0e44-4027-8699-f21807e7fda0/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE