./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product16.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0e0057cc Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product16.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 2d1ca9044da6bfd8ea8e8fb421260ee2f744733ad29714ab0a4cdf49955938a8 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-0e0057c [2023-11-26 10:42:33,802 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-26 10:42:33,903 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-26 10:42:33,915 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-26 10:42:33,919 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-26 10:42:33,959 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-26 10:42:33,960 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-26 10:42:33,961 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-26 10:42:33,962 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-26 10:42:33,967 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-26 10:42:33,968 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-26 10:42:33,968 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-26 10:42:33,969 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-26 10:42:33,971 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-26 10:42:33,971 INFO L153 SettingsManager]: * Use SBE=true [2023-11-26 10:42:33,972 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-26 10:42:33,972 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-26 10:42:33,972 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-26 10:42:33,973 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-26 10:42:33,973 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-26 10:42:33,974 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-26 10:42:33,974 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-26 10:42:33,975 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-26 10:42:33,975 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-26 10:42:33,976 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-26 10:42:33,976 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-26 10:42:33,976 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-26 10:42:33,977 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-26 10:42:33,978 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-26 10:42:33,978 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-26 10:42:33,979 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-26 10:42:33,980 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-26 10:42:33,980 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-26 10:42:33,980 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-26 10:42:33,981 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-26 10:42:33,981 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-26 10:42:33,981 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-26 10:42:33,981 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-26 10:42:33,982 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-26 10:42:33,982 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-26 10:42:33,982 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-26 10:42:33,982 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-26 10:42:33,983 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 2d1ca9044da6bfd8ea8e8fb421260ee2f744733ad29714ab0a4cdf49955938a8 [2023-11-26 10:42:34,272 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-26 10:42:34,306 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-26 10:42:34,309 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-26 10:42:34,310 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-26 10:42:34,311 INFO L274 PluginConnector]: CDTParser initialized [2023-11-26 10:42:34,312 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/../../sv-benchmarks/c/product-lines/minepump_spec5_product16.cil.c [2023-11-26 10:42:37,405 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-26 10:42:37,734 INFO L384 CDTParser]: Found 1 translation units. [2023-11-26 10:42:37,735 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/sv-benchmarks/c/product-lines/minepump_spec5_product16.cil.c [2023-11-26 10:42:37,758 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/data/b6f26a7ff/15ce21cac2e441849f6074a7cfedcb24/FLAG5b48a8f64 [2023-11-26 10:42:37,771 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/data/b6f26a7ff/15ce21cac2e441849f6074a7cfedcb24 [2023-11-26 10:42:37,773 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-26 10:42:37,775 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-26 10:42:37,776 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-26 10:42:37,776 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-26 10:42:37,782 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-26 10:42:37,783 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.11 10:42:37" (1/1) ... [2023-11-26 10:42:37,784 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@27b0c888 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:37, skipping insertion in model container [2023-11-26 10:42:37,784 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.11 10:42:37" (1/1) ... [2023-11-26 10:42:37,850 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-26 10:42:38,098 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/sv-benchmarks/c/product-lines/minepump_spec5_product16.cil.c[13833,13846] [2023-11-26 10:42:38,122 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-26 10:42:38,133 INFO L202 MainTranslator]: Completed pre-run [2023-11-26 10:42:38,143 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] [2023-11-26 10:42:38,145 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [415] [2023-11-26 10:42:38,145 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [467] [2023-11-26 10:42:38,146 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [572] [2023-11-26 10:42:38,146 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [607] [2023-11-26 10:42:38,146 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [616] [2023-11-26 10:42:38,147 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [799] [2023-11-26 10:42:38,147 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [868] [2023-11-26 10:42:38,212 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/sv-benchmarks/c/product-lines/minepump_spec5_product16.cil.c[13833,13846] [2023-11-26 10:42:38,228 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-26 10:42:38,262 INFO L206 MainTranslator]: Completed translation [2023-11-26 10:42:38,265 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38 WrapperNode [2023-11-26 10:42:38,265 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-26 10:42:38,266 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-26 10:42:38,267 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-26 10:42:38,267 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-26 10:42:38,275 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,301 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,336 INFO L138 Inliner]: procedures = 55, calls = 100, calls flagged for inlining = 22, calls inlined = 18, statements flattened = 171 [2023-11-26 10:42:38,337 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-26 10:42:38,338 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-26 10:42:38,338 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-26 10:42:38,338 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-26 10:42:38,350 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,350 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,366 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,386 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-11-26 10:42:38,395 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,396 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,400 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,411 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,414 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,419 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,422 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-26 10:42:38,424 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-26 10:42:38,425 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-26 10:42:38,426 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-26 10:42:38,427 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (1/1) ... [2023-11-26 10:42:38,433 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-26 10:42:38,446 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 10:42:38,459 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-11-26 10:42:38,461 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-11-26 10:42:38,492 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-26 10:42:38,492 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-26 10:42:38,492 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-26 10:42:38,492 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-26 10:42:38,492 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-26 10:42:38,492 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-26 10:42:38,492 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-26 10:42:38,493 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-26 10:42:38,493 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-26 10:42:38,493 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-11-26 10:42:38,493 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-11-26 10:42:38,493 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-26 10:42:38,493 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-26 10:42:38,493 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-26 10:42:38,493 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-26 10:42:38,494 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-26 10:42:38,494 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-26 10:42:38,494 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-26 10:42:38,494 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-26 10:42:38,494 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-26 10:42:38,566 INFO L241 CfgBuilder]: Building ICFG [2023-11-26 10:42:38,569 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-26 10:42:38,860 INFO L282 CfgBuilder]: Performing block encoding [2023-11-26 10:42:38,957 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-26 10:42:38,957 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-26 10:42:38,958 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 10:42:38 BoogieIcfgContainer [2023-11-26 10:42:38,958 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-26 10:42:38,961 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-26 10:42:38,962 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-26 10:42:38,965 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-26 10:42:38,966 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 26.11 10:42:37" (1/3) ... [2023-11-26 10:42:38,966 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@50a1b00c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.11 10:42:38, skipping insertion in model container [2023-11-26 10:42:38,967 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:42:38" (2/3) ... [2023-11-26 10:42:38,967 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@50a1b00c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.11 10:42:38, skipping insertion in model container [2023-11-26 10:42:38,967 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 10:42:38" (3/3) ... [2023-11-26 10:42:38,969 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product16.cil.c [2023-11-26 10:42:38,989 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-26 10:42:38,989 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-26 10:42:39,052 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-26 10:42:39,059 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@3f7175de, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-26 10:42:39,060 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-26 10:42:39,064 INFO L276 IsEmpty]: Start isEmpty. Operand has 68 states, 45 states have (on average 1.511111111111111) internal successors, (68), 52 states have internal predecessors, (68), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 11 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-26 10:42:39,075 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-11-26 10:42:39,075 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:42:39,076 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:42:39,077 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:42:39,082 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:42:39,083 INFO L85 PathProgramCache]: Analyzing trace with hash -1351021729, now seen corresponding path program 1 times [2023-11-26 10:42:39,092 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:42:39,093 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1259907217] [2023-11-26 10:42:39,093 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:42:39,093 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:42:39,200 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,279 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-26 10:42:39,284 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,289 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-26 10:42:39,291 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,295 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-26 10:42:39,296 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:42:39,296 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1259907217] [2023-11-26 10:42:39,297 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1259907217] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:42:39,297 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:42:39,297 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-26 10:42:39,299 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1361198261] [2023-11-26 10:42:39,299 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:42:39,304 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-26 10:42:39,304 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:42:39,333 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-26 10:42:39,333 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-26 10:42:39,336 INFO L87 Difference]: Start difference. First operand has 68 states, 45 states have (on average 1.511111111111111) internal successors, (68), 52 states have internal predecessors, (68), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 11 states have call predecessors, (13), 13 states have call successors, (13) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 10:42:39,406 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:42:39,407 INFO L93 Difference]: Finished difference Result 134 states and 189 transitions. [2023-11-26 10:42:39,410 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-26 10:42:39,411 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-11-26 10:42:39,412 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:42:39,422 INFO L225 Difference]: With dead ends: 134 [2023-11-26 10:42:39,422 INFO L226 Difference]: Without dead ends: 63 [2023-11-26 10:42:39,427 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-26 10:42:39,434 INFO L413 NwaCegarLoop]: 75 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 14 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 75 SdHoareTripleChecker+Invalid, 14 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 14 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-26 10:42:39,436 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 75 Invalid, 14 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 14 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-26 10:42:39,453 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 63 states. [2023-11-26 10:42:39,486 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 63 to 63. [2023-11-26 10:42:39,488 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 63 states, 42 states have (on average 1.380952380952381) internal successors, (58), 48 states have internal predecessors, (58), 13 states have call successors, (13), 8 states have call predecessors, (13), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) [2023-11-26 10:42:39,493 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 63 states to 63 states and 83 transitions. [2023-11-26 10:42:39,496 INFO L78 Accepts]: Start accepts. Automaton has 63 states and 83 transitions. Word has length 22 [2023-11-26 10:42:39,497 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:42:39,497 INFO L495 AbstractCegarLoop]: Abstraction has 63 states and 83 transitions. [2023-11-26 10:42:39,497 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 10:42:39,497 INFO L276 IsEmpty]: Start isEmpty. Operand 63 states and 83 transitions. [2023-11-26 10:42:39,504 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-11-26 10:42:39,504 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:42:39,504 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:42:39,505 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-26 10:42:39,505 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:42:39,506 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:42:39,506 INFO L85 PathProgramCache]: Analyzing trace with hash 598540897, now seen corresponding path program 1 times [2023-11-26 10:42:39,506 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:42:39,507 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [902842557] [2023-11-26 10:42:39,507 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:42:39,507 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:42:39,559 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,641 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-26 10:42:39,644 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,646 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-26 10:42:39,648 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,651 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-26 10:42:39,651 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:42:39,651 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [902842557] [2023-11-26 10:42:39,652 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [902842557] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:42:39,652 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:42:39,652 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-26 10:42:39,652 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2044731377] [2023-11-26 10:42:39,652 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:42:39,654 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 10:42:39,654 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:42:39,655 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 10:42:39,655 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:42:39,655 INFO L87 Difference]: Start difference. First operand 63 states and 83 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 10:42:39,720 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:42:39,721 INFO L93 Difference]: Finished difference Result 96 states and 124 transitions. [2023-11-26 10:42:39,721 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 10:42:39,722 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-11-26 10:42:39,722 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:42:39,723 INFO L225 Difference]: With dead ends: 96 [2023-11-26 10:42:39,723 INFO L226 Difference]: Without dead ends: 55 [2023-11-26 10:42:39,724 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:42:39,726 INFO L413 NwaCegarLoop]: 61 mSDtfsCounter, 14 mSDsluCounter, 45 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 106 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 10:42:39,726 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 106 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 10:42:39,727 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2023-11-26 10:42:39,734 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2023-11-26 10:42:39,735 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 37 states have (on average 1.4054054054054055) internal successors, (52), 43 states have internal predecessors, (52), 10 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2023-11-26 10:42:39,736 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 72 transitions. [2023-11-26 10:42:39,736 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 72 transitions. Word has length 23 [2023-11-26 10:42:39,736 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:42:39,737 INFO L495 AbstractCegarLoop]: Abstraction has 55 states and 72 transitions. [2023-11-26 10:42:39,737 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 10:42:39,737 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 72 transitions. [2023-11-26 10:42:39,738 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-11-26 10:42:39,738 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:42:39,739 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:42:39,739 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-26 10:42:39,739 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:42:39,740 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:42:39,740 INFO L85 PathProgramCache]: Analyzing trace with hash -1705793899, now seen corresponding path program 1 times [2023-11-26 10:42:39,740 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:42:39,741 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [130943194] [2023-11-26 10:42:39,741 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:42:39,741 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:42:39,762 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,864 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-26 10:42:39,868 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,875 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-26 10:42:39,877 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:39,879 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-26 10:42:39,879 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:42:39,879 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [130943194] [2023-11-26 10:42:39,880 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [130943194] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:42:39,880 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:42:39,880 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-26 10:42:39,880 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1739520677] [2023-11-26 10:42:39,880 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:42:39,881 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 10:42:39,881 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:42:39,882 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 10:42:39,882 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:42:39,882 INFO L87 Difference]: Start difference. First operand 55 states and 72 transitions. Second operand has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-26 10:42:39,985 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:42:39,985 INFO L93 Difference]: Finished difference Result 161 states and 213 transitions. [2023-11-26 10:42:39,987 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 10:42:39,987 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-11-26 10:42:39,988 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:42:39,991 INFO L225 Difference]: With dead ends: 161 [2023-11-26 10:42:39,993 INFO L226 Difference]: Without dead ends: 108 [2023-11-26 10:42:39,994 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:42:39,997 INFO L413 NwaCegarLoop]: 72 mSDtfsCounter, 63 mSDsluCounter, 59 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 63 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 10:42:40,001 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [63 Valid, 131 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 10:42:40,002 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 108 states. [2023-11-26 10:42:40,028 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 108 to 105. [2023-11-26 10:42:40,030 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 105 states, 70 states have (on average 1.4142857142857144) internal successors, (99), 81 states have internal predecessors, (99), 20 states have call successors, (20), 14 states have call predecessors, (20), 14 states have return successors, (20), 15 states have call predecessors, (20), 20 states have call successors, (20) [2023-11-26 10:42:40,035 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 105 states to 105 states and 139 transitions. [2023-11-26 10:42:40,035 INFO L78 Accepts]: Start accepts. Automaton has 105 states and 139 transitions. Word has length 26 [2023-11-26 10:42:40,036 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:42:40,036 INFO L495 AbstractCegarLoop]: Abstraction has 105 states and 139 transitions. [2023-11-26 10:42:40,036 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-26 10:42:40,036 INFO L276 IsEmpty]: Start isEmpty. Operand 105 states and 139 transitions. [2023-11-26 10:42:40,044 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-11-26 10:42:40,044 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:42:40,044 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:42:40,045 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-26 10:42:40,045 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:42:40,046 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:42:40,046 INFO L85 PathProgramCache]: Analyzing trace with hash -554014830, now seen corresponding path program 1 times [2023-11-26 10:42:40,046 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:42:40,046 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [632819526] [2023-11-26 10:42:40,047 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:42:40,048 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:42:40,080 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:40,262 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-26 10:42:40,264 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:40,274 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-11-26 10:42:40,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:42:40,296 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-26 10:42:40,296 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:42:40,297 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [632819526] [2023-11-26 10:42:40,297 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [632819526] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:42:40,297 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:42:40,298 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-26 10:42:40,298 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1970274991] [2023-11-26 10:42:40,299 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:42:40,300 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-26 10:42:40,300 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:42:40,301 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-26 10:42:40,301 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-26 10:42:40,303 INFO L87 Difference]: Start difference. First operand 105 states and 139 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 10:42:40,465 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:42:40,465 INFO L93 Difference]: Finished difference Result 182 states and 243 transitions. [2023-11-26 10:42:40,466 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-26 10:42:40,466 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-11-26 10:42:40,467 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:42:40,467 INFO L225 Difference]: With dead ends: 182 [2023-11-26 10:42:40,467 INFO L226 Difference]: Without dead ends: 0 [2023-11-26 10:42:40,473 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-11-26 10:42:40,474 INFO L413 NwaCegarLoop]: 35 mSDtfsCounter, 29 mSDsluCounter, 92 mSDsCounter, 0 mSdLazyCounter, 69 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 127 SdHoareTripleChecker+Invalid, 72 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 69 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 10:42:40,479 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 127 Invalid, 72 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 69 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 10:42:40,481 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-26 10:42:40,485 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-26 10:42:40,485 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-26 10:42:40,486 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-26 10:42:40,486 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 29 [2023-11-26 10:42:40,486 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:42:40,486 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-26 10:42:40,487 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-26 10:42:40,487 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-26 10:42:40,487 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-26 10:42:40,490 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-26 10:42:40,490 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-26 10:42:40,493 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-26 10:42:40,681 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 712 719) no Hoare annotation was computed. [2023-11-26 10:42:40,681 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 712 719) the Hoare annotation is: true [2023-11-26 10:42:40,681 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 895 906) the Hoare annotation is: true [2023-11-26 10:42:40,682 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 895 906) no Hoare annotation was computed. [2023-11-26 10:42:40,682 INFO L899 garLoopResultBuilder]: For program point L899-1(lines 895 906) no Hoare annotation was computed. [2023-11-26 10:42:40,682 INFO L895 garLoopResultBuilder]: At program point L448(line 448) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 10:42:40,682 INFO L899 garLoopResultBuilder]: For program point L448-1(line 448) no Hoare annotation was computed. [2023-11-26 10:42:40,683 INFO L899 garLoopResultBuilder]: For program point L634(lines 634 640) no Hoare annotation was computed. [2023-11-26 10:42:40,683 INFO L899 garLoopResultBuilder]: For program point L634-2(lines 630 652) no Hoare annotation was computed. [2023-11-26 10:42:40,683 INFO L895 garLoopResultBuilder]: At program point L676(line 676) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 10:42:40,685 INFO L895 garLoopResultBuilder]: At program point L672(line 672) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 10:42:40,685 INFO L895 garLoopResultBuilder]: At program point L668(line 668) the Hoare annotation is: (not (= |old(~pumpRunning~0)| 0)) [2023-11-26 10:42:40,686 INFO L899 garLoopResultBuilder]: For program point L668-1(line 668) no Hoare annotation was computed. [2023-11-26 10:42:40,687 INFO L895 garLoopResultBuilder]: At program point L433(line 433) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 10:42:40,687 INFO L899 garLoopResultBuilder]: For program point L433-1(line 433) no Hoare annotation was computed. [2023-11-26 10:42:40,687 INFO L899 garLoopResultBuilder]: For program point L875(lines 875 879) no Hoare annotation was computed. [2023-11-26 10:42:40,688 INFO L899 garLoopResultBuilder]: For program point L875-2(lines 871 882) no Hoare annotation was computed. [2023-11-26 10:42:40,688 INFO L895 garLoopResultBuilder]: At program point L681(line 681) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 10:42:40,689 INFO L899 garLoopResultBuilder]: For program point L681-1(lines 662 686) no Hoare annotation was computed. [2023-11-26 10:42:40,689 INFO L899 garLoopResultBuilder]: For program point L450(lines 450 460) no Hoare annotation was computed. [2023-11-26 10:42:40,689 INFO L899 garLoopResultBuilder]: For program point L446(lines 446 463) no Hoare annotation was computed. [2023-11-26 10:42:40,690 INFO L899 garLoopResultBuilder]: For program point L446-1(lines 438 466) no Hoare annotation was computed. [2023-11-26 10:42:40,690 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 627 653) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2023-11-26 10:42:40,690 INFO L899 garLoopResultBuilder]: For program point L612(line 612) no Hoare annotation was computed. [2023-11-26 10:42:40,690 INFO L899 garLoopResultBuilder]: For program point L451(lines 451 457) no Hoare annotation was computed. [2023-11-26 10:42:40,691 INFO L899 garLoopResultBuilder]: For program point L641-1(lines 641 647) no Hoare annotation was computed. [2023-11-26 10:42:40,691 INFO L899 garLoopResultBuilder]: For program point L670(lines 670 678) no Hoare annotation was computed. [2023-11-26 10:42:40,691 INFO L899 garLoopResultBuilder]: For program point L666(lines 666 683) no Hoare annotation was computed. [2023-11-26 10:42:40,691 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 627 653) no Hoare annotation was computed. [2023-11-26 10:42:40,691 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 612) no Hoare annotation was computed. [2023-11-26 10:42:40,692 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 470 499) no Hoare annotation was computed. [2023-11-26 10:42:40,696 INFO L902 garLoopResultBuilder]: At program point L480-2(lines 480 494) the Hoare annotation is: true [2023-11-26 10:42:40,697 INFO L902 garLoopResultBuilder]: At program point L476(line 476) the Hoare annotation is: true [2023-11-26 10:42:40,697 INFO L899 garLoopResultBuilder]: For program point L476-1(line 476) no Hoare annotation was computed. [2023-11-26 10:42:40,701 INFO L899 garLoopResultBuilder]: For program point L495(lines 470 499) no Hoare annotation was computed. [2023-11-26 10:42:40,701 INFO L899 garLoopResultBuilder]: For program point L491(line 491) no Hoare annotation was computed. [2023-11-26 10:42:40,702 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 470 499) the Hoare annotation is: true [2023-11-26 10:42:40,702 INFO L899 garLoopResultBuilder]: For program point L484(lines 484 488) no Hoare annotation was computed. [2023-11-26 10:42:40,702 INFO L902 garLoopResultBuilder]: At program point L484-1(lines 484 488) the Hoare annotation is: true [2023-11-26 10:42:40,702 INFO L895 garLoopResultBuilder]: At program point L832(line 832) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 10:42:40,707 INFO L895 garLoopResultBuilder]: At program point L857(lines 810 859) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 10:42:40,708 INFO L899 garLoopResultBuilder]: For program point L820(lines 820 826) no Hoare annotation was computed. [2023-11-26 10:42:40,708 INFO L899 garLoopResultBuilder]: For program point L820-1(lines 820 826) no Hoare annotation was computed. [2023-11-26 10:42:40,708 INFO L899 garLoopResultBuilder]: For program point L780(lines 780 786) no Hoare annotation was computed. [2023-11-26 10:42:40,708 INFO L899 garLoopResultBuilder]: For program point L780-1(lines 780 786) no Hoare annotation was computed. [2023-11-26 10:42:40,709 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-26 10:42:40,721 INFO L899 garLoopResultBuilder]: For program point L863(lines 800 867) no Hoare annotation was computed. [2023-11-26 10:42:40,722 INFO L899 garLoopResultBuilder]: For program point L830(lines 830 836) no Hoare annotation was computed. [2023-11-26 10:42:40,722 INFO L899 garLoopResultBuilder]: For program point L830-1(lines 830 836) no Hoare annotation was computed. [2023-11-26 10:42:40,722 INFO L895 garLoopResultBuilder]: At program point L822(line 822) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 10:42:40,723 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-26 10:42:40,723 INFO L895 garLoopResultBuilder]: At program point L860(lines 809 861) the Hoare annotation is: false [2023-11-26 10:42:40,724 INFO L899 garLoopResultBuilder]: For program point L848(lines 848 854) no Hoare annotation was computed. [2023-11-26 10:42:40,725 INFO L899 garLoopResultBuilder]: For program point L559(lines 559 566) no Hoare annotation was computed. [2023-11-26 10:42:40,725 INFO L895 garLoopResultBuilder]: At program point L782(line 782) the Hoare annotation is: false [2023-11-26 10:42:40,725 INFO L895 garLoopResultBuilder]: At program point L848-2(lines 840 855) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-26 10:42:40,725 INFO L899 garLoopResultBuilder]: For program point L559-2(lines 559 566) no Hoare annotation was computed. [2023-11-26 10:42:40,725 INFO L899 garLoopResultBuilder]: For program point L811(lines 810 859) no Hoare annotation was computed. [2023-11-26 10:42:40,726 INFO L899 garLoopResultBuilder]: For program point L840(lines 840 855) no Hoare annotation was computed. [2023-11-26 10:42:40,726 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 883 894) no Hoare annotation was computed. [2023-11-26 10:42:40,726 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 883 894) the Hoare annotation is: true [2023-11-26 10:42:40,726 INFO L899 garLoopResultBuilder]: For program point L887-1(lines 883 894) no Hoare annotation was computed. [2023-11-26 10:42:40,726 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 654 660) no Hoare annotation was computed. [2023-11-26 10:42:40,726 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryFINAL(lines 654 660) the Hoare annotation is: true [2023-11-26 10:42:40,727 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 731 739) no Hoare annotation was computed. [2023-11-26 10:42:40,727 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 731 739) the Hoare annotation is: true [2023-11-26 10:42:40,727 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 720 730) no Hoare annotation was computed. [2023-11-26 10:42:40,727 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 720 730) the Hoare annotation is: true [2023-11-26 10:42:40,733 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1] [2023-11-26 10:42:40,735 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-26 10:42:40,747 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 26.11 10:42:40 BoogieIcfgContainer [2023-11-26 10:42:40,747 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-26 10:42:40,748 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-26 10:42:40,748 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-26 10:42:40,749 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-26 10:42:40,751 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 10:42:38" (3/4) ... [2023-11-26 10:42:40,753 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-26 10:42:40,757 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-26 10:42:40,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-26 10:42:40,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-26 10:42:40,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-26 10:42:40,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-26 10:42:40,759 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-26 10:42:40,759 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2023-11-26 10:42:40,759 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-26 10:42:40,766 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 33 nodes and edges [2023-11-26 10:42:40,767 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2023-11-26 10:42:40,768 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-26 10:42:40,769 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-26 10:42:40,769 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-26 10:42:40,879 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/witness.graphml [2023-11-26 10:42:40,879 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/witness.yml [2023-11-26 10:42:40,880 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-26 10:42:40,880 INFO L158 Benchmark]: Toolchain (without parser) took 3105.97ms. Allocated memory is still 167.8MB. Free memory was 135.8MB in the beginning and 128.1MB in the end (delta: 7.7MB). Peak memory consumption was 10.6MB. Max. memory is 16.1GB. [2023-11-26 10:42:40,881 INFO L158 Benchmark]: CDTParser took 0.33ms. Allocated memory is still 117.4MB. Free memory is still 66.7MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-26 10:42:40,881 INFO L158 Benchmark]: CACSL2BoogieTranslator took 489.30ms. Allocated memory is still 167.8MB. Free memory was 135.6MB in the beginning and 116.2MB in the end (delta: 19.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2023-11-26 10:42:40,882 INFO L158 Benchmark]: Boogie Procedure Inliner took 70.81ms. Allocated memory is still 167.8MB. Free memory was 116.2MB in the beginning and 114.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-26 10:42:40,882 INFO L158 Benchmark]: Boogie Preprocessor took 85.50ms. Allocated memory is still 167.8MB. Free memory was 114.1MB in the beginning and 111.4MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-26 10:42:40,882 INFO L158 Benchmark]: RCFGBuilder took 534.38ms. Allocated memory is still 167.8MB. Free memory was 111.4MB in the beginning and 91.0MB in the end (delta: 20.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2023-11-26 10:42:40,883 INFO L158 Benchmark]: TraceAbstraction took 1786.23ms. Allocated memory is still 167.8MB. Free memory was 90.5MB in the beginning and 135.5MB in the end (delta: -45.0MB). Peak memory consumption was 29.5MB. Max. memory is 16.1GB. [2023-11-26 10:42:40,883 INFO L158 Benchmark]: Witness Printer took 131.77ms. Allocated memory is still 167.8MB. Free memory was 135.5MB in the beginning and 128.1MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-26 10:42:40,885 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.33ms. Allocated memory is still 117.4MB. Free memory is still 66.7MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 489.30ms. Allocated memory is still 167.8MB. Free memory was 135.6MB in the beginning and 116.2MB in the end (delta: 19.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 70.81ms. Allocated memory is still 167.8MB. Free memory was 116.2MB in the beginning and 114.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 85.50ms. Allocated memory is still 167.8MB. Free memory was 114.1MB in the beginning and 111.4MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 534.38ms. Allocated memory is still 167.8MB. Free memory was 111.4MB in the beginning and 91.0MB in the end (delta: 20.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * TraceAbstraction took 1786.23ms. Allocated memory is still 167.8MB. Free memory was 90.5MB in the beginning and 135.5MB in the end (delta: -45.0MB). Peak memory consumption was 29.5MB. Max. memory is 16.1GB. * Witness Printer took 131.77ms. Allocated memory is still 167.8MB. Free memory was 135.5MB in the beginning and 128.1MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] - GenericResultAtLocation [Line: 415]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [415] - GenericResultAtLocation [Line: 467]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [467] - GenericResultAtLocation [Line: 572]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [572] - GenericResultAtLocation [Line: 607]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [607] - GenericResultAtLocation [Line: 616]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [616] - GenericResultAtLocation [Line: 799]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [799] - GenericResultAtLocation [Line: 868]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [868] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 612]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 68 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 1.7s, OverallIterations: 4, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.2s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 111 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 106 mSDsluCounter, 439 SdHoareTripleChecker+Invalid, 0.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 196 mSDsCounter, 4 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 125 IncrementalHoareTripleChecker+Invalid, 129 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 4 mSolverCounterUnsat, 243 mSDtfsCounter, 125 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 32 GetRequests, 23 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=105occurred in iteration=3, InterpolantAutomatonStates: 14, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 4 MinimizatonAttempts, 3 StatesRemovedByMinimization, 1 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 23 LocationsWithAnnotation, 136 PreInvPairs, 148 NumberOfFragments, 84 HoareAnnotationTreeSize, 136 FomulaSimplifications, 0 FormulaSimplificationTreeSizeReduction, 0.0s HoareSimplificationTime, 23 FomulaSimplificationsInter, 202 FormulaSimplificationTreeSizeReductionInter, 0.1s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.5s InterpolantComputationTime, 100 NumberOfCodeBlocks, 100 NumberOfCodeBlocksAsserted, 4 NumberOfCheckSat, 96 ConstructedInterpolants, 0 QuantifiedInterpolants, 158 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 4 InterpolantComputations, 4 PerfectInterpolantSequences, 8/8 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 480]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 720]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 809]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 810]: Loop Invariant Derived loop invariant: ((pumpRunning == 0) && (splverifierCounter == 0)) RESULT: Ultimate proved your program to be correct! [2023-11-26 10:42:40,913 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a5911c4d-78b2-4392-9cb2-f89c67028c7d/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE