./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product49.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 9bd2c7ff Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product49.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 837951bb35a66379a80a07f15314d2b43ee3f47728002b8b604897c09f36abe4 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-9bd2c7f [2023-11-19 04:50:37,432 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-19 04:50:37,555 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/config/svcomp-Reach-32bit-Taipan_Default.epf [2023-11-19 04:50:37,567 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-19 04:50:37,568 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-19 04:50:37,607 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-19 04:50:37,608 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-19 04:50:37,609 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-19 04:50:37,610 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-19 04:50:37,615 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-19 04:50:37,616 INFO L153 SettingsManager]: * User list type=DISABLED [2023-11-19 04:50:37,616 INFO L151 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2023-11-19 04:50:37,617 INFO L153 SettingsManager]: * Explicit value domain=true [2023-11-19 04:50:37,618 INFO L153 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2023-11-19 04:50:37,619 INFO L153 SettingsManager]: * Octagon Domain=false [2023-11-19 04:50:37,619 INFO L153 SettingsManager]: * Abstract domain=CompoundDomain [2023-11-19 04:50:37,620 INFO L153 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2023-11-19 04:50:37,620 INFO L153 SettingsManager]: * Use the RCFG-of-the-future interface=true [2023-11-19 04:50:37,621 INFO L153 SettingsManager]: * Interval Domain=false [2023-11-19 04:50:37,621 INFO L151 SettingsManager]: Preferences of Sifa differ from their defaults: [2023-11-19 04:50:37,622 INFO L153 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2023-11-19 04:50:37,622 INFO L153 SettingsManager]: * Simplification Technique=POLY_PAC [2023-11-19 04:50:37,624 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-19 04:50:37,624 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-19 04:50:37,624 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-19 04:50:37,625 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-19 04:50:37,625 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-19 04:50:37,626 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-19 04:50:37,626 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-19 04:50:37,627 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-19 04:50:37,628 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-19 04:50:37,629 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-19 04:50:37,629 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-19 04:50:37,629 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-19 04:50:37,630 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-19 04:50:37,630 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-19 04:50:37,630 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-19 04:50:37,630 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-19 04:50:37,631 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-19 04:50:37,631 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-19 04:50:37,631 INFO L153 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2023-11-19 04:50:37,632 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-19 04:50:37,632 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-19 04:50:37,633 INFO L153 SettingsManager]: * Trace refinement exception blacklist=NONE [2023-11-19 04:50:37,633 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-19 04:50:37,634 INFO L153 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 837951bb35a66379a80a07f15314d2b43ee3f47728002b8b604897c09f36abe4 [2023-11-19 04:50:37,956 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-19 04:50:37,994 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-19 04:50:37,997 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-19 04:50:37,998 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-19 04:50:37,999 INFO L274 PluginConnector]: CDTParser initialized [2023-11-19 04:50:38,001 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/../../sv-benchmarks/c/product-lines/minepump_spec3_product49.cil.c [2023-11-19 04:50:41,060 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-19 04:50:41,425 INFO L384 CDTParser]: Found 1 translation units. [2023-11-19 04:50:41,431 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/sv-benchmarks/c/product-lines/minepump_spec3_product49.cil.c [2023-11-19 04:50:41,447 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/data/2f0a15b4f/d053f155886546b29a11c06095f35743/FLAGdddaf5896 [2023-11-19 04:50:41,460 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/data/2f0a15b4f/d053f155886546b29a11c06095f35743 [2023-11-19 04:50:41,463 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-19 04:50:41,464 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-19 04:50:41,466 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-19 04:50:41,466 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-19 04:50:41,471 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-19 04:50:41,472 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 04:50:41" (1/1) ... [2023-11-19 04:50:41,473 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@79d080b7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:41, skipping insertion in model container [2023-11-19 04:50:41,474 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 19.11 04:50:41" (1/1) ... [2023-11-19 04:50:41,550 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-19 04:50:41,866 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/sv-benchmarks/c/product-lines/minepump_spec3_product49.cil.c[18588,18601] [2023-11-19 04:50:41,877 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-19 04:50:41,894 INFO L202 MainTranslator]: Completed pre-run [2023-11-19 04:50:41,904 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] [2023-11-19 04:50:41,906 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [257] [2023-11-19 04:50:41,906 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification3_spec.i","") [325] [2023-11-19 04:50:41,906 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [361] [2023-11-19 04:50:41,907 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [464] [2023-11-19 04:50:41,907 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [502] [2023-11-19 04:50:41,907 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [868] [2023-11-19 04:50:41,907 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [964] [2023-11-19 04:50:41,987 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/sv-benchmarks/c/product-lines/minepump_spec3_product49.cil.c[18588,18601] [2023-11-19 04:50:41,987 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-19 04:50:42,007 INFO L206 MainTranslator]: Completed translation [2023-11-19 04:50:42,008 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42 WrapperNode [2023-11-19 04:50:42,008 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-19 04:50:42,009 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-19 04:50:42,009 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-19 04:50:42,010 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-19 04:50:42,017 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,040 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,082 INFO L138 Inliner]: procedures = 55, calls = 99, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 210 [2023-11-19 04:50:42,083 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-19 04:50:42,083 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-19 04:50:42,084 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-19 04:50:42,084 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-19 04:50:42,094 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,095 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,106 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,107 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,115 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,120 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,122 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,124 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,127 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-19 04:50:42,128 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-19 04:50:42,128 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-19 04:50:42,128 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-19 04:50:42,129 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (1/1) ... [2023-11-19 04:50:42,135 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-19 04:50:42,160 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 [2023-11-19 04:50:42,178 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-19 04:50:42,192 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-19 04:50:42,223 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-19 04:50:42,224 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-19 04:50:42,224 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-19 04:50:42,224 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-19 04:50:42,224 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-19 04:50:42,224 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-19 04:50:42,225 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-19 04:50:42,225 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-19 04:50:42,225 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-19 04:50:42,225 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-19 04:50:42,226 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-19 04:50:42,226 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-19 04:50:42,226 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-19 04:50:42,227 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-19 04:50:42,227 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-19 04:50:42,228 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-19 04:50:42,229 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-19 04:50:42,230 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-19 04:50:42,368 INFO L236 CfgBuilder]: Building ICFG [2023-11-19 04:50:42,371 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-19 04:50:42,725 INFO L277 CfgBuilder]: Performing block encoding [2023-11-19 04:50:42,866 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-19 04:50:42,866 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-19 04:50:42,871 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 04:50:42 BoogieIcfgContainer [2023-11-19 04:50:42,872 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-19 04:50:42,874 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-19 04:50:42,874 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-19 04:50:42,878 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-19 04:50:42,878 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 19.11 04:50:41" (1/3) ... [2023-11-19 04:50:42,879 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@dd08e2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 04:50:42, skipping insertion in model container [2023-11-19 04:50:42,879 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 19.11 04:50:42" (2/3) ... [2023-11-19 04:50:42,880 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@dd08e2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 19.11 04:50:42, skipping insertion in model container [2023-11-19 04:50:42,880 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 04:50:42" (3/3) ... [2023-11-19 04:50:42,881 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product49.cil.c [2023-11-19 04:50:42,899 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-19 04:50:42,899 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-19 04:50:42,948 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-19 04:50:42,957 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@542957df, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-19 04:50:42,958 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-19 04:50:42,963 INFO L276 IsEmpty]: Start isEmpty. Operand has 56 states, 36 states have (on average 1.4444444444444444) internal successors, (52), 44 states have internal predecessors, (52), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-19 04:50:42,974 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-19 04:50:42,975 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:42,975 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:42,976 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:42,983 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:42,984 INFO L85 PathProgramCache]: Analyzing trace with hash -534644872, now seen corresponding path program 1 times [2023-11-19 04:50:42,995 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:42,996 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [43490243] [2023-11-19 04:50:42,996 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:42,996 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:43,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:43,212 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:43,213 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:43,213 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [43490243] [2023-11-19 04:50:43,214 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [43490243] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:43,214 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:43,215 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-19 04:50:43,216 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [641485831] [2023-11-19 04:50:43,217 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:43,221 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-19 04:50:43,221 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:43,248 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-19 04:50:43,249 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-19 04:50:43,251 INFO L87 Difference]: Start difference. First operand has 56 states, 36 states have (on average 1.4444444444444444) internal successors, (52), 44 states have internal predecessors, (52), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:43,328 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:43,328 INFO L93 Difference]: Finished difference Result 110 states and 149 transitions. [2023-11-19 04:50:43,329 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-19 04:50:43,331 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-19 04:50:43,331 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:43,340 INFO L225 Difference]: With dead ends: 110 [2023-11-19 04:50:43,341 INFO L226 Difference]: Without dead ends: 51 [2023-11-19 04:50:43,344 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-19 04:50:43,348 INFO L413 NwaCegarLoop]: 53 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 53 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:43,349 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 53 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-19 04:50:43,367 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 51 states. [2023-11-19 04:50:43,388 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 51 to 51. [2023-11-19 04:50:43,390 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 51 states, 33 states have (on average 1.3333333333333333) internal successors, (44), 40 states have internal predecessors, (44), 11 states have call successors, (11), 7 states have call predecessors, (11), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2023-11-19 04:50:43,392 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 51 states to 51 states and 65 transitions. [2023-11-19 04:50:43,395 INFO L78 Accepts]: Start accepts. Automaton has 51 states and 65 transitions. Word has length 17 [2023-11-19 04:50:43,395 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:43,396 INFO L495 AbstractCegarLoop]: Abstraction has 51 states and 65 transitions. [2023-11-19 04:50:43,397 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:43,397 INFO L276 IsEmpty]: Start isEmpty. Operand 51 states and 65 transitions. [2023-11-19 04:50:43,400 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2023-11-19 04:50:43,400 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:43,400 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:43,400 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-19 04:50:43,401 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:43,402 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:43,402 INFO L85 PathProgramCache]: Analyzing trace with hash -1954263928, now seen corresponding path program 1 times [2023-11-19 04:50:43,402 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:43,402 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1912730954] [2023-11-19 04:50:43,402 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:43,403 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:43,423 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:43,513 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:43,514 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:43,514 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1912730954] [2023-11-19 04:50:43,514 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1912730954] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:43,514 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:43,514 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-19 04:50:43,515 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [177559184] [2023-11-19 04:50:43,515 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:43,516 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-19 04:50:43,517 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:43,517 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-19 04:50:43,518 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-19 04:50:43,518 INFO L87 Difference]: Start difference. First operand 51 states and 65 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:43,601 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:43,602 INFO L93 Difference]: Finished difference Result 79 states and 101 transitions. [2023-11-19 04:50:43,603 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-19 04:50:43,603 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2023-11-19 04:50:43,604 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:43,606 INFO L225 Difference]: With dead ends: 79 [2023-11-19 04:50:43,607 INFO L226 Difference]: Without dead ends: 43 [2023-11-19 04:50:43,608 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-19 04:50:43,611 INFO L413 NwaCegarLoop]: 39 mSDtfsCounter, 7 mSDsluCounter, 30 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 69 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:43,612 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 69 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-19 04:50:43,613 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 43 states. [2023-11-19 04:50:43,619 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 43 to 43. [2023-11-19 04:50:43,620 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 43 states, 28 states have (on average 1.3571428571428572) internal successors, (38), 35 states have internal predecessors, (38), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 6 states have call predecessors, (8), 8 states have call successors, (8) [2023-11-19 04:50:43,621 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 43 states to 43 states and 54 transitions. [2023-11-19 04:50:43,622 INFO L78 Accepts]: Start accepts. Automaton has 43 states and 54 transitions. Word has length 18 [2023-11-19 04:50:43,622 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:43,622 INFO L495 AbstractCegarLoop]: Abstraction has 43 states and 54 transitions. [2023-11-19 04:50:43,622 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:43,623 INFO L276 IsEmpty]: Start isEmpty. Operand 43 states and 54 transitions. [2023-11-19 04:50:43,624 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2023-11-19 04:50:43,624 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:43,624 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:43,624 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-19 04:50:43,625 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:43,625 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:43,625 INFO L85 PathProgramCache]: Analyzing trace with hash -71382354, now seen corresponding path program 1 times [2023-11-19 04:50:43,626 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:43,626 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1243506626] [2023-11-19 04:50:43,626 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:43,626 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:43,662 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:43,781 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:43,781 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:43,781 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1243506626] [2023-11-19 04:50:43,782 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1243506626] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:43,782 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:43,782 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-19 04:50:43,782 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [931935261] [2023-11-19 04:50:43,782 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:43,783 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-19 04:50:43,783 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:43,784 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-19 04:50:43,784 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-19 04:50:43,784 INFO L87 Difference]: Start difference. First operand 43 states and 54 transitions. Second operand has 4 states, 4 states have (on average 4.25) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:43,916 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:43,917 INFO L93 Difference]: Finished difference Result 84 states and 107 transitions. [2023-11-19 04:50:43,917 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-19 04:50:43,918 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.25) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2023-11-19 04:50:43,918 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:43,919 INFO L225 Difference]: With dead ends: 84 [2023-11-19 04:50:43,919 INFO L226 Difference]: Without dead ends: 43 [2023-11-19 04:50:43,920 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-19 04:50:43,922 INFO L413 NwaCegarLoop]: 34 mSDtfsCounter, 50 mSDsluCounter, 15 mSDsCounter, 0 mSdLazyCounter, 44 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 50 SdHoareTripleChecker+Valid, 49 SdHoareTripleChecker+Invalid, 50 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 44 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:43,923 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [50 Valid, 49 Invalid, 50 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 44 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-19 04:50:43,924 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 43 states. [2023-11-19 04:50:43,931 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 43 to 43. [2023-11-19 04:50:43,932 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 43 states, 28 states have (on average 1.3214285714285714) internal successors, (37), 35 states have internal predecessors, (37), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 6 states have call predecessors, (8), 8 states have call successors, (8) [2023-11-19 04:50:43,933 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 43 states to 43 states and 53 transitions. [2023-11-19 04:50:43,933 INFO L78 Accepts]: Start accepts. Automaton has 43 states and 53 transitions. Word has length 20 [2023-11-19 04:50:43,934 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:43,934 INFO L495 AbstractCegarLoop]: Abstraction has 43 states and 53 transitions. [2023-11-19 04:50:43,934 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.25) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:43,934 INFO L276 IsEmpty]: Start isEmpty. Operand 43 states and 53 transitions. [2023-11-19 04:50:43,935 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-11-19 04:50:43,936 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:43,936 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:43,936 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-19 04:50:43,937 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:43,937 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:43,937 INFO L85 PathProgramCache]: Analyzing trace with hash 257204092, now seen corresponding path program 1 times [2023-11-19 04:50:43,938 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:43,938 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1112806609] [2023-11-19 04:50:43,938 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:43,939 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:43,979 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:44,297 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:44,298 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:44,298 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1112806609] [2023-11-19 04:50:44,298 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1112806609] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:44,298 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:44,299 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-19 04:50:44,299 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [442024312] [2023-11-19 04:50:44,299 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:44,300 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-19 04:50:44,300 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:44,301 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-19 04:50:44,301 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2023-11-19 04:50:44,301 INFO L87 Difference]: Start difference. First operand 43 states and 53 transitions. Second operand has 6 states, 6 states have (on average 3.3333333333333335) internal successors, (20), 6 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:44,548 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:44,548 INFO L93 Difference]: Finished difference Result 222 states and 286 transitions. [2023-11-19 04:50:44,549 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-19 04:50:44,549 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.3333333333333335) internal successors, (20), 6 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23 [2023-11-19 04:50:44,549 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:44,552 INFO L225 Difference]: With dead ends: 222 [2023-11-19 04:50:44,552 INFO L226 Difference]: Without dead ends: 181 [2023-11-19 04:50:44,554 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2023-11-19 04:50:44,555 INFO L413 NwaCegarLoop]: 79 mSDtfsCounter, 155 mSDsluCounter, 150 mSDsCounter, 0 mSdLazyCounter, 176 mSolverCounterSat, 35 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 155 SdHoareTripleChecker+Valid, 229 SdHoareTripleChecker+Invalid, 211 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 35 IncrementalHoareTripleChecker+Valid, 176 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:44,556 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [155 Valid, 229 Invalid, 211 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [35 Valid, 176 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-19 04:50:44,557 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 181 states. [2023-11-19 04:50:44,588 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 181 to 157. [2023-11-19 04:50:44,589 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 157 states, 106 states have (on average 1.3018867924528301) internal successors, (138), 120 states have internal predecessors, (138), 25 states have call successors, (25), 23 states have call predecessors, (25), 25 states have return successors, (34), 24 states have call predecessors, (34), 25 states have call successors, (34) [2023-11-19 04:50:44,592 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 157 states to 157 states and 197 transitions. [2023-11-19 04:50:44,592 INFO L78 Accepts]: Start accepts. Automaton has 157 states and 197 transitions. Word has length 23 [2023-11-19 04:50:44,592 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:44,592 INFO L495 AbstractCegarLoop]: Abstraction has 157 states and 197 transitions. [2023-11-19 04:50:44,593 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.3333333333333335) internal successors, (20), 6 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-19 04:50:44,593 INFO L276 IsEmpty]: Start isEmpty. Operand 157 states and 197 transitions. [2023-11-19 04:50:44,595 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2023-11-19 04:50:44,595 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:44,595 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:44,595 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-19 04:50:44,596 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:44,596 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:44,596 INFO L85 PathProgramCache]: Analyzing trace with hash 1185274484, now seen corresponding path program 1 times [2023-11-19 04:50:44,596 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:44,597 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1919136053] [2023-11-19 04:50:44,597 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:44,597 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:44,612 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:44,809 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:44,810 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:44,810 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1919136053] [2023-11-19 04:50:44,810 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1919136053] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:44,811 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:44,811 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-19 04:50:44,811 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1422996549] [2023-11-19 04:50:44,811 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:44,812 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-19 04:50:44,812 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:44,813 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-19 04:50:44,813 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2023-11-19 04:50:44,813 INFO L87 Difference]: Start difference. First operand 157 states and 197 transitions. Second operand has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 6 states have internal predecessors, (23), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-19 04:50:45,086 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:45,086 INFO L93 Difference]: Finished difference Result 445 states and 594 transitions. [2023-11-19 04:50:45,087 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-19 04:50:45,087 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 6 states have internal predecessors, (23), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 28 [2023-11-19 04:50:45,087 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:45,092 INFO L225 Difference]: With dead ends: 445 [2023-11-19 04:50:45,092 INFO L226 Difference]: Without dead ends: 326 [2023-11-19 04:50:45,094 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=35, Unknown=0, NotChecked=0, Total=56 [2023-11-19 04:50:45,096 INFO L413 NwaCegarLoop]: 79 mSDtfsCounter, 125 mSDsluCounter, 129 mSDsCounter, 0 mSdLazyCounter, 193 mSolverCounterSat, 27 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 127 SdHoareTripleChecker+Valid, 208 SdHoareTripleChecker+Invalid, 220 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 27 IncrementalHoareTripleChecker+Valid, 193 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:45,096 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [127 Valid, 208 Invalid, 220 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [27 Valid, 193 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-19 04:50:45,098 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 326 states. [2023-11-19 04:50:45,145 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 326 to 272. [2023-11-19 04:50:45,146 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 272 states, 185 states have (on average 1.2702702702702702) internal successors, (235), 199 states have internal predecessors, (235), 41 states have call successors, (41), 40 states have call predecessors, (41), 45 states have return successors, (68), 44 states have call predecessors, (68), 41 states have call successors, (68) [2023-11-19 04:50:45,150 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 272 states to 272 states and 344 transitions. [2023-11-19 04:50:45,150 INFO L78 Accepts]: Start accepts. Automaton has 272 states and 344 transitions. Word has length 28 [2023-11-19 04:50:45,151 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:45,151 INFO L495 AbstractCegarLoop]: Abstraction has 272 states and 344 transitions. [2023-11-19 04:50:45,151 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 6 states have internal predecessors, (23), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-19 04:50:45,152 INFO L276 IsEmpty]: Start isEmpty. Operand 272 states and 344 transitions. [2023-11-19 04:50:45,153 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2023-11-19 04:50:45,154 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:45,154 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:45,154 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-19 04:50:45,154 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:45,155 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:45,155 INFO L85 PathProgramCache]: Analyzing trace with hash 1671355818, now seen corresponding path program 1 times [2023-11-19 04:50:45,156 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:45,156 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [121753096] [2023-11-19 04:50:45,156 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:45,156 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:45,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:45,222 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:45,222 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:45,223 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [121753096] [2023-11-19 04:50:45,223 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [121753096] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:45,223 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:45,230 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-19 04:50:45,230 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1510404263] [2023-11-19 04:50:45,231 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:45,231 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-19 04:50:45,232 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:45,233 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-19 04:50:45,233 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-19 04:50:45,234 INFO L87 Difference]: Start difference. First operand 272 states and 344 transitions. Second operand has 4 states, 4 states have (on average 6.0) internal successors, (24), 4 states have internal predecessors, (24), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-19 04:50:45,356 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:45,356 INFO L93 Difference]: Finished difference Result 586 states and 754 transitions. [2023-11-19 04:50:45,357 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-19 04:50:45,357 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 6.0) internal successors, (24), 4 states have internal predecessors, (24), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 31 [2023-11-19 04:50:45,358 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:45,365 INFO L225 Difference]: With dead ends: 586 [2023-11-19 04:50:45,366 INFO L226 Difference]: Without dead ends: 352 [2023-11-19 04:50:45,367 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-19 04:50:45,372 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 35 mSDsluCounter, 99 mSDsCounter, 0 mSdLazyCounter, 76 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 164 SdHoareTripleChecker+Invalid, 78 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 76 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:45,376 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 164 Invalid, 78 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 76 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-19 04:50:45,378 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 352 states. [2023-11-19 04:50:45,445 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 352 to 331. [2023-11-19 04:50:45,446 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 331 states, 224 states have (on average 1.25) internal successors, (280), 242 states have internal predecessors, (280), 51 states have call successors, (51), 50 states have call predecessors, (51), 55 states have return successors, (80), 52 states have call predecessors, (80), 51 states have call successors, (80) [2023-11-19 04:50:45,450 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 331 states to 331 states and 411 transitions. [2023-11-19 04:50:45,451 INFO L78 Accepts]: Start accepts. Automaton has 331 states and 411 transitions. Word has length 31 [2023-11-19 04:50:45,451 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:45,452 INFO L495 AbstractCegarLoop]: Abstraction has 331 states and 411 transitions. [2023-11-19 04:50:45,452 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 6.0) internal successors, (24), 4 states have internal predecessors, (24), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-19 04:50:45,452 INFO L276 IsEmpty]: Start isEmpty. Operand 331 states and 411 transitions. [2023-11-19 04:50:45,457 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2023-11-19 04:50:45,457 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:45,458 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:45,458 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-19 04:50:45,458 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:45,460 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:45,460 INFO L85 PathProgramCache]: Analyzing trace with hash 788870860, now seen corresponding path program 1 times [2023-11-19 04:50:45,460 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:45,461 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1763459450] [2023-11-19 04:50:45,461 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:45,461 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:45,491 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:45,629 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:45,629 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:45,629 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1763459450] [2023-11-19 04:50:45,629 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1763459450] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:45,630 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:45,630 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-19 04:50:45,630 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1291088402] [2023-11-19 04:50:45,630 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:45,631 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-19 04:50:45,631 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:45,631 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-19 04:50:45,631 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2023-11-19 04:50:45,632 INFO L87 Difference]: Start difference. First operand 331 states and 411 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-19 04:50:45,769 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:45,769 INFO L93 Difference]: Finished difference Result 688 states and 859 transitions. [2023-11-19 04:50:45,770 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-19 04:50:45,770 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 31 [2023-11-19 04:50:45,770 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:45,773 INFO L225 Difference]: With dead ends: 688 [2023-11-19 04:50:45,773 INFO L226 Difference]: Without dead ends: 359 [2023-11-19 04:50:45,774 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=13, Invalid=17, Unknown=0, NotChecked=0, Total=30 [2023-11-19 04:50:45,775 INFO L413 NwaCegarLoop]: 60 mSDtfsCounter, 64 mSDsluCounter, 136 mSDsCounter, 0 mSdLazyCounter, 102 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 196 SdHoareTripleChecker+Invalid, 107 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 102 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:45,776 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 196 Invalid, 107 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 102 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-19 04:50:45,777 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 359 states. [2023-11-19 04:50:45,812 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 359 to 329. [2023-11-19 04:50:45,813 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 329 states, 222 states have (on average 1.2342342342342343) internal successors, (274), 240 states have internal predecessors, (274), 51 states have call successors, (51), 50 states have call predecessors, (51), 55 states have return successors, (80), 52 states have call predecessors, (80), 51 states have call successors, (80) [2023-11-19 04:50:45,816 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 329 states to 329 states and 405 transitions. [2023-11-19 04:50:45,816 INFO L78 Accepts]: Start accepts. Automaton has 329 states and 405 transitions. Word has length 31 [2023-11-19 04:50:45,817 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:45,817 INFO L495 AbstractCegarLoop]: Abstraction has 329 states and 405 transitions. [2023-11-19 04:50:45,817 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-19 04:50:45,817 INFO L276 IsEmpty]: Start isEmpty. Operand 329 states and 405 transitions. [2023-11-19 04:50:45,819 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2023-11-19 04:50:45,819 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:45,819 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:45,819 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-19 04:50:45,819 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:45,820 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:45,820 INFO L85 PathProgramCache]: Analyzing trace with hash -991830058, now seen corresponding path program 1 times [2023-11-19 04:50:45,820 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:45,820 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [491537748] [2023-11-19 04:50:45,821 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:45,821 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:45,834 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:46,074 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-19 04:50:46,075 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:46,075 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [491537748] [2023-11-19 04:50:46,075 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [491537748] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:46,075 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:50:46,076 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2023-11-19 04:50:46,076 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1529080973] [2023-11-19 04:50:46,076 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:46,076 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2023-11-19 04:50:46,077 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:46,078 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2023-11-19 04:50:46,078 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-11-19 04:50:46,079 INFO L87 Difference]: Start difference. First operand 329 states and 405 transitions. Second operand has 9 states, 8 states have (on average 3.125) internal successors, (25), 8 states have internal predecessors, (25), 4 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2023-11-19 04:50:46,719 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:46,719 INFO L93 Difference]: Finished difference Result 941 states and 1192 transitions. [2023-11-19 04:50:46,720 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2023-11-19 04:50:46,720 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 8 states have (on average 3.125) internal successors, (25), 8 states have internal predecessors, (25), 4 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) Word has length 34 [2023-11-19 04:50:46,720 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:46,724 INFO L225 Difference]: With dead ends: 941 [2023-11-19 04:50:46,725 INFO L226 Difference]: Without dead ends: 647 [2023-11-19 04:50:46,726 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 46 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=85, Invalid=221, Unknown=0, NotChecked=0, Total=306 [2023-11-19 04:50:46,728 INFO L413 NwaCegarLoop]: 80 mSDtfsCounter, 180 mSDsluCounter, 275 mSDsCounter, 0 mSdLazyCounter, 456 mSolverCounterSat, 68 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 190 SdHoareTripleChecker+Valid, 355 SdHoareTripleChecker+Invalid, 524 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 68 IncrementalHoareTripleChecker+Valid, 456 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:46,728 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [190 Valid, 355 Invalid, 524 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [68 Valid, 456 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-19 04:50:46,730 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 647 states. [2023-11-19 04:50:46,818 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 647 to 622. [2023-11-19 04:50:46,820 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 622 states, 428 states have (on average 1.2406542056074767) internal successors, (531), 461 states have internal predecessors, (531), 96 states have call successors, (96), 88 states have call predecessors, (96), 97 states have return successors, (141), 95 states have call predecessors, (141), 96 states have call successors, (141) [2023-11-19 04:50:46,826 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 622 states to 622 states and 768 transitions. [2023-11-19 04:50:46,827 INFO L78 Accepts]: Start accepts. Automaton has 622 states and 768 transitions. Word has length 34 [2023-11-19 04:50:46,827 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:46,828 INFO L495 AbstractCegarLoop]: Abstraction has 622 states and 768 transitions. [2023-11-19 04:50:46,828 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 8 states have (on average 3.125) internal successors, (25), 8 states have internal predecessors, (25), 4 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2023-11-19 04:50:46,828 INFO L276 IsEmpty]: Start isEmpty. Operand 622 states and 768 transitions. [2023-11-19 04:50:46,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2023-11-19 04:50:46,831 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:46,832 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:46,832 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-19 04:50:46,835 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:46,836 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:46,837 INFO L85 PathProgramCache]: Analyzing trace with hash 1990054458, now seen corresponding path program 1 times [2023-11-19 04:50:46,837 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:46,838 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1374788244] [2023-11-19 04:50:46,838 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:46,839 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:46,862 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:46,953 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 17 proven. 1 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-19 04:50:46,953 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:46,953 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1374788244] [2023-11-19 04:50:46,954 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1374788244] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-19 04:50:46,954 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [11422731] [2023-11-19 04:50:46,954 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:46,954 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-19 04:50:46,954 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 [2023-11-19 04:50:46,960 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-19 04:50:46,976 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-19 04:50:47,071 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:47,075 INFO L262 TraceCheckSpWp]: Trace formula consists of 234 conjuncts, 27 conjunts are in the unsatisfiable core [2023-11-19 04:50:47,082 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-19 04:50:47,595 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 2 proven. 9 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-19 04:50:47,595 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-19 04:50:48,228 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 17 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-19 04:50:48,229 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [11422731] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-19 04:50:48,229 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1872235427] [2023-11-19 04:50:48,250 INFO L159 IcfgInterpreter]: Started Sifa with 29 locations of interest [2023-11-19 04:50:48,250 INFO L166 IcfgInterpreter]: Building call graph [2023-11-19 04:50:48,254 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-19 04:50:48,259 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-19 04:50:48,260 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-19 04:50:49,928 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 120 for LOIs [2023-11-19 04:50:49,979 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 135 for LOIs [2023-11-19 04:50:50,124 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-19 04:50:54,157 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSifa [1872235427] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:50:54,157 INFO L185 FreeRefinementEngine]: Found 1 perfect and 3 imperfect interpolant sequences. [2023-11-19 04:50:54,158 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [12] imperfect sequences [7, 10, 11] total 34 [2023-11-19 04:50:54,159 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [409007274] [2023-11-19 04:50:54,159 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:50:54,160 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2023-11-19 04:50:54,160 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:50:54,161 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2023-11-19 04:50:54,161 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=209, Invalid=913, Unknown=0, NotChecked=0, Total=1122 [2023-11-19 04:50:54,162 INFO L87 Difference]: Start difference. First operand 622 states and 768 transitions. Second operand has 13 states, 10 states have (on average 2.3) internal successors, (23), 10 states have internal predecessors, (23), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-19 04:50:55,620 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:50:55,621 INFO L93 Difference]: Finished difference Result 1267 states and 1573 transitions. [2023-11-19 04:50:55,621 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2023-11-19 04:50:55,622 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 10 states have (on average 2.3) internal successors, (23), 10 states have internal predecessors, (23), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 49 [2023-11-19 04:50:55,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:50:55,627 INFO L225 Difference]: With dead ends: 1267 [2023-11-19 04:50:55,627 INFO L226 Difference]: Without dead ends: 698 [2023-11-19 04:50:55,630 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 153 GetRequests, 119 SyntacticMatches, 1 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 207 ImplicationChecksByTransitivity, 4.8s TimeCoverageRelationStatistics Valid=225, Invalid=965, Unknown=0, NotChecked=0, Total=1190 [2023-11-19 04:50:55,631 INFO L413 NwaCegarLoop]: 44 mSDtfsCounter, 58 mSDsluCounter, 162 mSDsCounter, 0 mSdLazyCounter, 345 mSolverCounterSat, 28 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 60 SdHoareTripleChecker+Valid, 206 SdHoareTripleChecker+Invalid, 373 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 28 IncrementalHoareTripleChecker+Valid, 345 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2023-11-19 04:50:55,631 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [60 Valid, 206 Invalid, 373 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [28 Valid, 345 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2023-11-19 04:50:55,632 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 698 states. [2023-11-19 04:50:55,749 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 698 to 689. [2023-11-19 04:50:55,751 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 689 states, 475 states have (on average 1.2336842105263157) internal successors, (586), 508 states have internal predecessors, (586), 107 states have call successors, (107), 99 states have call predecessors, (107), 106 states have return successors, (154), 103 states have call predecessors, (154), 107 states have call successors, (154) [2023-11-19 04:50:55,755 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 689 states to 689 states and 847 transitions. [2023-11-19 04:50:55,756 INFO L78 Accepts]: Start accepts. Automaton has 689 states and 847 transitions. Word has length 49 [2023-11-19 04:50:55,756 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:50:55,756 INFO L495 AbstractCegarLoop]: Abstraction has 689 states and 847 transitions. [2023-11-19 04:50:55,757 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 10 states have (on average 2.3) internal successors, (23), 10 states have internal predecessors, (23), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-19 04:50:55,757 INFO L276 IsEmpty]: Start isEmpty. Operand 689 states and 847 transitions. [2023-11-19 04:50:55,759 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2023-11-19 04:50:55,759 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:50:55,759 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:50:55,786 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-19 04:50:55,972 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-19 04:50:55,973 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:50:55,973 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:50:55,973 INFO L85 PathProgramCache]: Analyzing trace with hash 801369452, now seen corresponding path program 1 times [2023-11-19 04:50:55,973 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:50:55,974 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [707193429] [2023-11-19 04:50:55,974 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:55,974 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:50:55,990 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:56,064 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 15 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-19 04:50:56,065 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:50:56,065 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [707193429] [2023-11-19 04:50:56,065 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [707193429] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-19 04:50:56,065 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [465389630] [2023-11-19 04:50:56,066 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:50:56,066 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-19 04:50:56,066 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 [2023-11-19 04:50:56,067 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-19 04:50:56,098 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-19 04:50:56,163 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:50:56,164 INFO L262 TraceCheckSpWp]: Trace formula consists of 238 conjuncts, 23 conjunts are in the unsatisfiable core [2023-11-19 04:50:56,170 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-19 04:50:56,392 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 2 proven. 11 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-11-19 04:50:56,392 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-19 04:50:56,696 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2023-11-19 04:50:56,697 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [465389630] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-19 04:50:56,697 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1353083578] [2023-11-19 04:50:56,700 INFO L159 IcfgInterpreter]: Started Sifa with 35 locations of interest [2023-11-19 04:50:56,700 INFO L166 IcfgInterpreter]: Building call graph [2023-11-19 04:50:56,700 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2023-11-19 04:50:56,701 INFO L176 IcfgInterpreter]: Starting interpretation [2023-11-19 04:50:56,701 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2023-11-19 04:50:59,771 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 140 for LOIs [2023-11-19 04:50:59,837 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 27 for LOIs [2023-11-19 04:50:59,963 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 25 for LOIs [2023-11-19 04:51:00,006 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 6 for LOIs [2023-11-19 04:51:00,007 INFO L180 IcfgInterpreter]: Interpretation finished [2023-11-19 04:51:03,664 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '10035#(and (= ~pumpRunning~0 0) (<= 0 |old(~pumpRunning~0)|) (= 2 ~waterLevel~0) (= 0 |timeShift___utac_acc__Specification3_spec__1_~tmp___1~1#1|) (= ~methaneLevelCritical~0 0) (<= |old(~pumpRunning~0)| 1) (= |timeShift_isPumpRunning_#res#1| 0) (= 2 |timeShift_getWaterLevel_#res#1|) (= 2 |timeShift___utac_acc__Specification3_spec__1_~tmp___0~3#1|) (= |timeShift___utac_acc__Specification3_spec__1_~tmp~5#1| 0))' at error location [2023-11-19 04:51:03,664 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2023-11-19 04:51:03,665 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-19 04:51:03,665 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 9, 8] total 19 [2023-11-19 04:51:03,665 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [365427967] [2023-11-19 04:51:03,665 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-19 04:51:03,666 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2023-11-19 04:51:03,666 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:51:03,667 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2023-11-19 04:51:03,668 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=244, Invalid=1918, Unknown=0, NotChecked=0, Total=2162 [2023-11-19 04:51:03,668 INFO L87 Difference]: Start difference. First operand 689 states and 847 transitions. Second operand has 19 states, 17 states have (on average 5.647058823529412) internal successors, (96), 18 states have internal predecessors, (96), 9 states have call successors, (18), 7 states have call predecessors, (18), 7 states have return successors, (15), 10 states have call predecessors, (15), 9 states have call successors, (15) [2023-11-19 04:51:08,516 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:51:08,516 INFO L93 Difference]: Finished difference Result 3171 states and 4225 transitions. [2023-11-19 04:51:08,517 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 103 states. [2023-11-19 04:51:08,517 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 17 states have (on average 5.647058823529412) internal successors, (96), 18 states have internal predecessors, (96), 9 states have call successors, (18), 7 states have call predecessors, (18), 7 states have return successors, (15), 10 states have call predecessors, (15), 9 states have call successors, (15) Word has length 51 [2023-11-19 04:51:08,518 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:51:08,534 INFO L225 Difference]: With dead ends: 3171 [2023-11-19 04:51:08,534 INFO L226 Difference]: Without dead ends: 2508 [2023-11-19 04:51:08,549 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 284 GetRequests, 137 SyntacticMatches, 1 SemanticMatches, 146 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7788 ImplicationChecksByTransitivity, 6.5s TimeCoverageRelationStatistics Valid=1941, Invalid=19815, Unknown=0, NotChecked=0, Total=21756 [2023-11-19 04:51:08,550 INFO L413 NwaCegarLoop]: 122 mSDtfsCounter, 1111 mSDsluCounter, 741 mSDsCounter, 0 mSdLazyCounter, 2160 mSolverCounterSat, 714 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1111 SdHoareTripleChecker+Valid, 863 SdHoareTripleChecker+Invalid, 2874 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 714 IncrementalHoareTripleChecker+Valid, 2160 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.7s IncrementalHoareTripleChecker+Time [2023-11-19 04:51:08,551 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1111 Valid, 863 Invalid, 2874 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [714 Valid, 2160 Invalid, 0 Unknown, 0 Unchecked, 1.7s Time] [2023-11-19 04:51:08,555 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2508 states. [2023-11-19 04:51:08,823 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2508 to 2269. [2023-11-19 04:51:08,828 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2269 states, 1537 states have (on average 1.1574495770982434) internal successors, (1779), 1658 states have internal predecessors, (1779), 362 states have call successors, (362), 319 states have call predecessors, (362), 369 states have return successors, (554), 367 states have call predecessors, (554), 362 states have call successors, (554) [2023-11-19 04:51:08,856 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2269 states to 2269 states and 2695 transitions. [2023-11-19 04:51:08,858 INFO L78 Accepts]: Start accepts. Automaton has 2269 states and 2695 transitions. Word has length 51 [2023-11-19 04:51:08,858 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:51:08,858 INFO L495 AbstractCegarLoop]: Abstraction has 2269 states and 2695 transitions. [2023-11-19 04:51:08,859 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 17 states have (on average 5.647058823529412) internal successors, (96), 18 states have internal predecessors, (96), 9 states have call successors, (18), 7 states have call predecessors, (18), 7 states have return successors, (15), 10 states have call predecessors, (15), 9 states have call successors, (15) [2023-11-19 04:51:08,859 INFO L276 IsEmpty]: Start isEmpty. Operand 2269 states and 2695 transitions. [2023-11-19 04:51:08,862 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2023-11-19 04:51:08,863 INFO L187 NwaCegarLoop]: Found error trace [2023-11-19 04:51:08,863 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:51:08,889 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-19 04:51:09,084 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-19 04:51:09,085 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-19 04:51:09,085 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-19 04:51:09,085 INFO L85 PathProgramCache]: Analyzing trace with hash -514617734, now seen corresponding path program 1 times [2023-11-19 04:51:09,085 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2023-11-19 04:51:09,086 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1395346928] [2023-11-19 04:51:09,086 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-19 04:51:09,086 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-19 04:51:09,110 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-19 04:51:09,272 INFO L134 CoverageAnalysis]: Checked inductivity of 23 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2023-11-19 04:51:09,272 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2023-11-19 04:51:09,272 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1395346928] [2023-11-19 04:51:09,273 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1395346928] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-19 04:51:09,273 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-19 04:51:09,273 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-19 04:51:09,273 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1129270377] [2023-11-19 04:51:09,273 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-19 04:51:09,274 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-19 04:51:09,274 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2023-11-19 04:51:09,275 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-19 04:51:09,275 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2023-11-19 04:51:09,276 INFO L87 Difference]: Start difference. First operand 2269 states and 2695 transitions. Second operand has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 2 states have call successors, (7), 1 states have call predecessors, (7), 2 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-19 04:51:09,633 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-19 04:51:09,634 INFO L93 Difference]: Finished difference Result 4263 states and 5071 transitions. [2023-11-19 04:51:09,634 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-19 04:51:09,634 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 2 states have call successors, (7), 1 states have call predecessors, (7), 2 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) Word has length 63 [2023-11-19 04:51:09,635 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-19 04:51:09,636 INFO L225 Difference]: With dead ends: 4263 [2023-11-19 04:51:09,636 INFO L226 Difference]: Without dead ends: 0 [2023-11-19 04:51:09,646 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=13, Invalid=17, Unknown=0, NotChecked=0, Total=30 [2023-11-19 04:51:09,647 INFO L413 NwaCegarLoop]: 51 mSDtfsCounter, 66 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 60 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 66 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 77 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 60 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-19 04:51:09,648 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [66 Valid, 131 Invalid, 77 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 60 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-19 04:51:09,648 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-19 04:51:09,648 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-19 04:51:09,648 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-19 04:51:09,649 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-19 04:51:09,649 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 63 [2023-11-19 04:51:09,650 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-19 04:51:09,650 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-19 04:51:09,650 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 2 states have call successors, (7), 1 states have call predecessors, (7), 2 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-19 04:51:09,650 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-19 04:51:09,650 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-19 04:51:09,653 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-19 04:51:09,653 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2023-11-19 04:51:09,655 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-19 04:51:26,487 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 88 94) no Hoare annotation was computed. [2023-11-19 04:51:26,487 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 88 94) the Hoare annotation is: true [2023-11-19 04:51:26,488 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 388 399) the Hoare annotation is: (let ((.cse0 (< 2 ~waterLevel~0)) (.cse1 (= |old(~methaneLevelCritical~0)| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 (not .cse1) .cse2 .cse3) (or .cse0 .cse1 (not .cse2) .cse3))) [2023-11-19 04:51:26,488 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 388 399) no Hoare annotation was computed. [2023-11-19 04:51:26,488 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 870 899) no Hoare annotation was computed. [2023-11-19 04:51:26,488 INFO L899 garLoopResultBuilder]: For program point L895(lines 870 899) no Hoare annotation was computed. [2023-11-19 04:51:26,488 INFO L899 garLoopResultBuilder]: For program point L891(line 891) no Hoare annotation was computed. [2023-11-19 04:51:26,488 INFO L899 garLoopResultBuilder]: For program point L884(lines 884 888) no Hoare annotation was computed. [2023-11-19 04:51:26,488 INFO L902 garLoopResultBuilder]: At program point L884-1(lines 884 888) the Hoare annotation is: true [2023-11-19 04:51:26,489 INFO L902 garLoopResultBuilder]: At program point L880-2(lines 880 894) the Hoare annotation is: true [2023-11-19 04:51:26,489 INFO L902 garLoopResultBuilder]: At program point L876(line 876) the Hoare annotation is: true [2023-11-19 04:51:26,489 INFO L899 garLoopResultBuilder]: For program point L876-1(line 876) no Hoare annotation was computed. [2023-11-19 04:51:26,489 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 870 899) the Hoare annotation is: true [2023-11-19 04:51:26,489 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 400 408) the Hoare annotation is: true [2023-11-19 04:51:26,489 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 400 408) no Hoare annotation was computed. [2023-11-19 04:51:26,489 INFO L899 garLoopResultBuilder]: For program point L126(lines 126 143) no Hoare annotation was computed. [2023-11-19 04:51:26,490 INFO L899 garLoopResultBuilder]: For program point L337(lines 337 357) no Hoare annotation was computed. [2023-11-19 04:51:26,490 INFO L899 garLoopResultBuilder]: For program point L969(line 969) no Hoare annotation was computed. [2023-11-19 04:51:26,490 INFO L895 garLoopResultBuilder]: At program point L136(line 136) the Hoare annotation is: (let ((.cse7 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (<= 1 |old(~waterLevel~0)|)) (.cse8 (not (= |old(~waterLevel~0)| 1))) (.cse2 (= 0 ~systemActive~0))) (let ((.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (not (= |old(~waterLevel~0)| 2))) (.cse3 (= ~pumpRunning~0 1)) (.cse0 (< 1 |old(~waterLevel~0)|)) (.cse6 (not (= ~pumpRunning~0 0))) (.cse5 (and (or (and .cse7 .cse9) .cse2) (or .cse8 .cse2)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5) (or (and .cse6 (= ~waterLevel~0 1)) .cse4 .cse2) (or .cse1 .cse4 .cse2 .cse3) (or .cse7 .cse8 .cse2) (or .cse0 (and .cse6 (or (and (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) .cse9) (and (<= |old(~waterLevel~0)| 0) (= |old(~waterLevel~0)| ~waterLevel~0)))) .cse5)))) [2023-11-19 04:51:26,490 INFO L899 garLoopResultBuilder]: For program point L347(lines 347 353) no Hoare annotation was computed. [2023-11-19 04:51:26,490 INFO L899 garLoopResultBuilder]: For program point L343(lines 343 356) no Hoare annotation was computed. [2023-11-19 04:51:26,490 INFO L899 garLoopResultBuilder]: For program point L343-1(lines 328 360) no Hoare annotation was computed. [2023-11-19 04:51:26,491 INFO L895 garLoopResultBuilder]: At program point L335(line 335) the Hoare annotation is: (let ((.cse7 (= ~pumpRunning~0 1)) (.cse8 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (not (= |old(~waterLevel~0)| 1))) (.cse4 (= 0 ~systemActive~0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse2 (< ~waterLevel~0 1)) (.cse3 (not (= |old(~waterLevel~0)| 2))) (.cse0 (and (or (and .cse8 (<= 1 |old(~waterLevel~0)|)) .cse4) (or .cse9 .cse4))) (.cse6 (and (= 2 ~waterLevel~0) (not .cse4) .cse7)) (.cse5 (= ~waterLevel~0 1))) (and (or (< 1 |old(~waterLevel~0)|) (<= ~waterLevel~0 0) .cse0 (and (or .cse1 .cse2) (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse3 .cse4 .cse5 .cse6) (or .cse1 .cse2 (not (= |old(~pumpRunning~0)| 1)) (and (<= ~waterLevel~0 1) .cse7) .cse4 (< 2 |old(~waterLevel~0)|)) (or .cse3 .cse0 .cse6) (or .cse8 .cse9 .cse4 .cse5)))) [2023-11-19 04:51:26,491 INFO L899 garLoopResultBuilder]: For program point L335-1(line 335) no Hoare annotation was computed. [2023-11-19 04:51:26,491 INFO L895 garLoopResultBuilder]: At program point L141(line 141) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= |old(~waterLevel~0)| 1))) (.cse3 (= |old(~pumpRunning~0)| 0)) (.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (< 2 |old(~waterLevel~0)|)) (or (< 1 |old(~waterLevel~0)|) (= |old(~waterLevel~0)| ~waterLevel~0) .cse0) (or (and .cse1 (= 2 ~waterLevel~0)) (not (= |old(~waterLevel~0)| 2)) .cse0) (or .cse2 .cse3 .cse0) (or .cse1 .cse2 .cse0) (or (< 0 |old(~waterLevel~0)|) .cse3 .cse0))) [2023-11-19 04:51:26,492 INFO L899 garLoopResultBuilder]: For program point L141-1(lines 122 146) no Hoare annotation was computed. [2023-11-19 04:51:26,492 INFO L899 garLoopResultBuilder]: For program point L75-1(lines 75 81) no Hoare annotation was computed. [2023-11-19 04:51:26,492 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 64 87) the Hoare annotation is: (let ((.cse4 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse4)) (.cse1 (= ~pumpRunning~0 0)) (.cse6 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (not (= |old(~waterLevel~0)| 2))) (.cse7 (= ~pumpRunning~0 1)) (.cse3 (= 0 ~systemActive~0)) (.cse5 (< 2 |old(~waterLevel~0)|))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 1)) .cse3) (or (not .cse1) (= 2 ~waterLevel~0) .cse4 .cse3 .cse5) (or (< 1 |old(~waterLevel~0)|) .cse6 .cse3 .cse7) (or .cse6 .cse2 .cse3 .cse7) (or (= |old(~waterLevel~0)| ~waterLevel~0) .cse3 .cse5)))) [2023-11-19 04:51:26,492 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 64 87) no Hoare annotation was computed. [2023-11-19 04:51:26,492 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 969) no Hoare annotation was computed. [2023-11-19 04:51:26,493 INFO L899 garLoopResultBuilder]: For program point L68-1(lines 67 86) no Hoare annotation was computed. [2023-11-19 04:51:26,493 INFO L899 garLoopResultBuilder]: For program point L130(lines 130 138) no Hoare annotation was computed. [2023-11-19 04:51:26,493 INFO L899 garLoopResultBuilder]: For program point L320(lines 261 324) no Hoare annotation was computed. [2023-11-19 04:51:26,493 INFO L895 garLoopResultBuilder]: At program point L283(line 283) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2)) (.cse1 (= |ULTIMATE.start_main_~tmp~9#1| ~systemActive~0)) (.cse2 (not (= 0 ~systemActive~0)))) (or (and (<= ~waterLevel~0 1) .cse0 .cse1 .cse2) (and .cse0 .cse3 .cse1 .cse2 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse3 .cse1 .cse2))) [2023-11-19 04:51:26,493 INFO L895 garLoopResultBuilder]: At program point L317(lines 270 318) the Hoare annotation is: false [2023-11-19 04:51:26,494 INFO L899 garLoopResultBuilder]: For program point L272(lines 271 316) no Hoare annotation was computed. [2023-11-19 04:51:26,494 INFO L895 garLoopResultBuilder]: At program point L293(line 293) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (<= ~waterLevel~0 2) (= |ULTIMATE.start_main_~tmp~9#1| ~systemActive~0) (not (= 0 ~systemActive~0))) [2023-11-19 04:51:26,494 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-19 04:51:26,494 INFO L895 garLoopResultBuilder]: At program point L314(lines 271 316) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~9#1| ~systemActive~0)) (.cse2 (not (= 0 ~systemActive~0)))) (or (and .cse0 (<= ~waterLevel~0 0) .cse1 .cse2) (and .cse0 (<= ~waterLevel~0 2) .cse1 .cse2 (= ~pumpRunning~0 1)) (and .cse0 (= ~waterLevel~0 1) .cse1 .cse2))) [2023-11-19 04:51:26,494 INFO L899 garLoopResultBuilder]: For program point L281(lines 281 287) no Hoare annotation was computed. [2023-11-19 04:51:26,495 INFO L899 garLoopResultBuilder]: For program point L281-1(lines 281 287) no Hoare annotation was computed. [2023-11-19 04:51:26,495 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-19 04:51:26,495 INFO L899 garLoopResultBuilder]: For program point L951(lines 951 958) no Hoare annotation was computed. [2023-11-19 04:51:26,495 INFO L899 garLoopResultBuilder]: For program point L951-2(lines 951 958) no Hoare annotation was computed. [2023-11-19 04:51:26,495 INFO L895 garLoopResultBuilder]: At program point L307-2(lines 301 312) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (<= ~waterLevel~0 2) (= |ULTIMATE.start_main_~tmp~9#1| ~systemActive~0) (not (= 0 ~systemActive~0))) [2023-11-19 04:51:26,495 INFO L899 garLoopResultBuilder]: For program point L291(lines 291 297) no Hoare annotation was computed. [2023-11-19 04:51:26,496 INFO L899 garLoopResultBuilder]: For program point L291-1(lines 291 297) no Hoare annotation was computed. [2023-11-19 04:51:26,496 INFO L895 garLoopResultBuilder]: At program point L110(line 110) the Hoare annotation is: (let ((.cse2 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (and (not .cse2) (<= 1 ~waterLevel~0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= 2 ~waterLevel~0)) .cse0 .cse1) (or (< 1 ~waterLevel~0) .cse2 .cse1) (or (< 2 ~waterLevel~0) (and (or (= ~pumpRunning~0 0) (< ~waterLevel~0 1)) (or (not (= ~waterLevel~0 1)) (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0))) .cse0 .cse1)))) [2023-11-19 04:51:26,496 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 96 120) the Hoare annotation is: (let ((.cse3 (= ~pumpRunning~0 0)) (.cse0 (< 1 ~waterLevel~0)) (.cse2 (= |old(~pumpRunning~0)| 0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1 (= ~pumpRunning~0 1)) (or (< 2 ~waterLevel~0) (not .cse2) .cse3 (< ~waterLevel~0 1) .cse1) (or (not .cse3) .cse0 .cse2 .cse1))) [2023-11-19 04:51:26,496 INFO L899 garLoopResultBuilder]: For program point L104(lines 104 112) no Hoare annotation was computed. [2023-11-19 04:51:26,496 INFO L899 garLoopResultBuilder]: For program point L100(lines 100 117) no Hoare annotation was computed. [2023-11-19 04:51:26,496 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 96 120) no Hoare annotation was computed. [2023-11-19 04:51:26,496 INFO L895 garLoopResultBuilder]: At program point L115(line 115) the Hoare annotation is: (let ((.cse1 (not (= ~pumpRunning~0 0))) (.cse0 (= 0 ~systemActive~0))) (and (or (< 1 ~waterLevel~0) (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= ~waterLevel~0 1)) .cse1 .cse0) (or (and .cse1 (<= ~waterLevel~0 0)) (< 2 ~waterLevel~0) (and (not (= |old(~pumpRunning~0)| 0)) (<= 1 ~waterLevel~0)) .cse0))) [2023-11-19 04:51:26,497 INFO L899 garLoopResultBuilder]: For program point L115-1(lines 96 120) no Hoare annotation was computed. [2023-11-19 04:51:26,497 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 376 387) no Hoare annotation was computed. [2023-11-19 04:51:26,497 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 376 387) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (= 2 ~waterLevel~0) (not (= ~pumpRunning~0 1)) (not (= |old(~waterLevel~0)| 2)) .cse0) (or (and (not (= ~pumpRunning~0 0)) (<= 2 |old(~waterLevel~0)|)) (= |old(~waterLevel~0)| ~waterLevel~0) .cse0 (< 2 |old(~waterLevel~0)|)))) [2023-11-19 04:51:26,499 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-19 04:51:26,501 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-19 04:51:26,520 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 19.11 04:51:26 BoogieIcfgContainer [2023-11-19 04:51:26,520 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-19 04:51:26,521 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-19 04:51:26,521 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-19 04:51:26,522 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-19 04:51:26,522 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 19.11 04:50:42" (3/4) ... [2023-11-19 04:51:26,524 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-19 04:51:26,527 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-19 04:51:26,528 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-19 04:51:26,528 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-19 04:51:26,528 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-19 04:51:26,528 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-19 04:51:26,529 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-19 04:51:26,529 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-19 04:51:26,541 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 44 nodes and edges [2023-11-19 04:51:26,541 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2023-11-19 04:51:26,542 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-19 04:51:26,543 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-19 04:51:26,545 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-19 04:51:26,582 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((\old(waterLevel) == 2))) || (0 == systemActive)) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((\old(waterLevel) == 1))) || (0 == systemActive))) && ((((!((pumpRunning == 0)) || (2 == waterLevel)) || (\old(pumpRunning) == 0)) || (0 == systemActive)) || (2 < \old(waterLevel)))) && ((((1 < \old(waterLevel)) || !((\old(pumpRunning) == 1))) || (0 == systemActive)) || (pumpRunning == 1))) && (((!((\old(pumpRunning) == 1)) || !((\old(waterLevel) == 2))) || (0 == systemActive)) || (pumpRunning == 1))) && (((\old(waterLevel) == waterLevel) || (0 == systemActive)) || (2 < \old(waterLevel)))) [2023-11-19 04:51:26,658 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((\old(waterLevel) == 2))) || (0 == systemActive)) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((\old(waterLevel) == 1))) || (0 == systemActive))) && ((((!((pumpRunning == 0)) || (2 == waterLevel)) || (\old(pumpRunning) == 0)) || (0 == systemActive)) || (2 < \old(waterLevel)))) && ((((1 < \old(waterLevel)) || !((\old(pumpRunning) == 1))) || (0 == systemActive)) || (pumpRunning == 1))) && (((!((\old(pumpRunning) == 1)) || !((\old(waterLevel) == 2))) || (0 == systemActive)) || (pumpRunning == 1))) && (((\old(waterLevel) == waterLevel) || (0 == systemActive)) || (2 < \old(waterLevel)))) [2023-11-19 04:51:26,715 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/witness.graphml [2023-11-19 04:51:26,715 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/witness.yml [2023-11-19 04:51:26,715 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-19 04:51:26,719 INFO L158 Benchmark]: Toolchain (without parser) took 45251.77ms. Allocated memory was 123.7MB in the beginning and 914.4MB in the end (delta: 790.6MB). Free memory was 91.8MB in the beginning and 724.8MB in the end (delta: -633.0MB). Peak memory consumption was 160.7MB. Max. memory is 16.1GB. [2023-11-19 04:51:26,719 INFO L158 Benchmark]: CDTParser took 0.34ms. Allocated memory is still 98.6MB. Free memory was 49.1MB in the beginning and 49.0MB in the end (delta: 117.5kB). There was no memory consumed. Max. memory is 16.1GB. [2023-11-19 04:51:26,720 INFO L158 Benchmark]: CACSL2BoogieTranslator took 542.60ms. Allocated memory is still 123.7MB. Free memory was 91.8MB in the beginning and 72.3MB in the end (delta: 19.5MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2023-11-19 04:51:26,721 INFO L158 Benchmark]: Boogie Procedure Inliner took 73.67ms. Allocated memory is still 123.7MB. Free memory was 72.3MB in the beginning and 69.8MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-19 04:51:26,721 INFO L158 Benchmark]: Boogie Preprocessor took 43.43ms. Allocated memory is still 123.7MB. Free memory was 69.8MB in the beginning and 68.2MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-19 04:51:26,722 INFO L158 Benchmark]: RCFGBuilder took 744.07ms. Allocated memory is still 123.7MB. Free memory was 68.2MB in the beginning and 91.5MB in the end (delta: -23.3MB). Peak memory consumption was 29.6MB. Max. memory is 16.1GB. [2023-11-19 04:51:26,723 INFO L158 Benchmark]: TraceAbstraction took 43646.30ms. Allocated memory was 123.7MB in the beginning and 914.4MB in the end (delta: 790.6MB). Free memory was 90.7MB in the beginning and 732.2MB in the end (delta: -641.5MB). Peak memory consumption was 460.3MB. Max. memory is 16.1GB. [2023-11-19 04:51:26,724 INFO L158 Benchmark]: Witness Printer took 194.24ms. Allocated memory is still 914.4MB. Free memory was 732.2MB in the beginning and 724.8MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-19 04:51:26,727 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.34ms. Allocated memory is still 98.6MB. Free memory was 49.1MB in the beginning and 49.0MB in the end (delta: 117.5kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 542.60ms. Allocated memory is still 123.7MB. Free memory was 91.8MB in the beginning and 72.3MB in the end (delta: 19.5MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 73.67ms. Allocated memory is still 123.7MB. Free memory was 72.3MB in the beginning and 69.8MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 43.43ms. Allocated memory is still 123.7MB. Free memory was 69.8MB in the beginning and 68.2MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 744.07ms. Allocated memory is still 123.7MB. Free memory was 68.2MB in the beginning and 91.5MB in the end (delta: -23.3MB). Peak memory consumption was 29.6MB. Max. memory is 16.1GB. * TraceAbstraction took 43646.30ms. Allocated memory was 123.7MB in the beginning and 914.4MB in the end (delta: 790.6MB). Free memory was 90.7MB in the beginning and 732.2MB in the end (delta: -641.5MB). Peak memory consumption was 460.3MB. Max. memory is 16.1GB. * Witness Printer took 194.24ms. Allocated memory is still 914.4MB. Free memory was 732.2MB in the beginning and 724.8MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] - GenericResultAtLocation [Line: 257]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [257] - GenericResultAtLocation [Line: 325]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification3_spec.i","") [325] - GenericResultAtLocation [Line: 361]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [361] - GenericResultAtLocation [Line: 464]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [464] - GenericResultAtLocation [Line: 502]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [502] - GenericResultAtLocation [Line: 868]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [868] - GenericResultAtLocation [Line: 964]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [964] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 969]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 56 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 43.6s, OverallIterations: 11, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 8.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 16.8s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1868 SdHoareTripleChecker+Valid, 3.8s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1851 mSDsluCounter, 2523 SdHoareTripleChecker+Invalid, 3.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1817 mSDsCounter, 903 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 3657 IncrementalHoareTripleChecker+Invalid, 4560 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 903 mSolverCounterUnsat, 706 mSDtfsCounter, 3657 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 513 GetRequests, 289 SyntacticMatches, 2 SemanticMatches, 222 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8048 ImplicationChecksByTransitivity, 11.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=2269occurred in iteration=10, InterpolantAutomatonStates: 171, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.8s AutomataMinimizationTime, 11 MinimizatonAttempts, 402 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 20 LocationsWithAnnotation, 2035 PreInvPairs, 2500 NumberOfFragments, 772 HoareAnnotationTreeSize, 2035 FomulaSimplifications, 120005 FormulaSimplificationTreeSizeReduction, 4.1s HoareSimplificationTime, 20 FomulaSimplificationsInter, 95934 FormulaSimplificationTreeSizeReductionInter, 12.6s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 3.2s InterpolantComputationTime, 465 NumberOfCodeBlocks, 465 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 550 ConstructedInterpolants, 0 QuantifiedInterpolants, 1671 SizeOfPredicates, 14 NumberOfNonLiveVariables, 472 ConjunctsInSsa, 50 ConjunctsInUnsatCore, 15 InterpolantComputations, 9 PerfectInterpolantSequences, 111/137 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: OVERALL_TIME: 1.9s, ICFG_INTERPRETER_ENTERED_PROCEDURES: 3, DAG_INTERPRETER_EARLY_EXIT_QUERIES_NONTRIVIAL: 19, DAG_INTERPRETER_EARLY_EXITS: 1, TOOLS_POST_APPLICATIONS: 29, TOOLS_POST_TIME: 0.9s, TOOLS_POST_CALL_APPLICATIONS: 10, TOOLS_POST_CALL_TIME: 0.5s, TOOLS_POST_RETURN_APPLICATIONS: 8, TOOLS_POST_RETURN_TIME: 0.2s, TOOLS_QUANTIFIERELIM_APPLICATIONS: 47, TOOLS_QUANTIFIERELIM_TIME: 1.6s, TOOLS_QUANTIFIERELIM_MAX_TIME: 0.1s, FLUID_QUERY_TIME: 0.0s, FLUID_QUERIES: 66, FLUID_YES_ANSWERS: 0, DOMAIN_JOIN_APPLICATIONS: 5, DOMAIN_JOIN_TIME: 0.1s, DOMAIN_ALPHA_APPLICATIONS: 0, DOMAIN_ALPHA_TIME: 0.0s, DOMAIN_WIDEN_APPLICATIONS: 0, DOMAIN_WIDEN_TIME: 0.0s, DOMAIN_ISSUBSETEQ_APPLICATIONS: 1, DOMAIN_ISSUBSETEQ_TIME: 0.0s, DOMAIN_ISBOTTOM_APPLICATIONS: 19, DOMAIN_ISBOTTOM_TIME: 0.1s, LOOP_SUMMARIZER_APPLICATIONS: 1, LOOP_SUMMARIZER_CACHE_MISSES: 1, LOOP_SUMMARIZER_OVERALL_TIME: 0.9s, LOOP_SUMMARIZER_NEW_COMPUTATION_TIME: 0.9s, LOOP_SUMMARIZER_FIXPOINT_ITERATIONS: 1, CALL_SUMMARIZER_APPLICATIONS: 8, CALL_SUMMARIZER_CACHE_MISSES: 3, CALL_SUMMARIZER_OVERALL_TIME: 0.1s, CALL_SUMMARIZER_NEW_COMPUTATION_TIME: 0.1s, PROCEDURE_GRAPH_BUILDER_TIME: 0.0s, PATH_EXPR_TIME: 0.0s, REGEX_TO_DAG_TIME: 0.0s, DAG_COMPRESSION_TIME: 0.0s, DAG_COMPRESSION_PROCESSED_NODES: 277, DAG_COMPRESSION_RETAINED_NODES: 87, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 270]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 271]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0) && (waterLevel <= 0)) && (tmp == systemActive)) && !((0 == systemActive))) || (((((splverifierCounter == 0) && (waterLevel <= 2)) && (tmp == systemActive)) && !((0 == systemActive))) && (pumpRunning == 1))) || ((((splverifierCounter == 0) && (waterLevel == 1)) && (tmp == systemActive)) && !((0 == systemActive)))) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: ((((((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((\old(waterLevel) == 2))) || (0 == systemActive)) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((\old(waterLevel) == 1))) || (0 == systemActive))) && ((((!((pumpRunning == 0)) || (2 == waterLevel)) || (\old(pumpRunning) == 0)) || (0 == systemActive)) || (2 < \old(waterLevel)))) && ((((1 < \old(waterLevel)) || !((\old(pumpRunning) == 1))) || (0 == systemActive)) || (pumpRunning == 1))) && (((!((\old(pumpRunning) == 1)) || !((\old(waterLevel) == 2))) || (0 == systemActive)) || (pumpRunning == 1))) && (((\old(waterLevel) == waterLevel) || (0 == systemActive)) || (2 < \old(waterLevel)))) RESULT: Ultimate proved your program to be correct! [2023-11-19 04:51:26,764 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bbea9d2a-6f83-421e-b3d0-af7dd8fe82de/bin/utaipan-verify-t7M7D8N6sZ/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE