./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product51.cil.c --full-output --architecture 32bit


--------------------------------------------------------------------------------


Checking for ERROR reachability
Using default analysis
Version d790fecc
Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/plugins/org.eclipse.equinox.launcher_1.6.800.v20240513-1750.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product51.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1 --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) )

 --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 311cf727219391e066955da60e9a83cfca77eaf7b53c342c6934d47c5123e76f
--- Real Ultimate output ---
This is Ultimate 0.3.0-dev-d790fec
[2024-12-02 10:14:04,948 INFO  L188        SettingsManager]: Resetting all preferences to default values...
[2024-12-02 10:14:05,004 INFO  L114        SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf
[2024-12-02 10:14:05,009 WARN  L101        SettingsManager]: Preference file contains the following unknown settings:
[2024-12-02 10:14:05,009 WARN  L103        SettingsManager]:   * de.uni_freiburg.informatik.ultimate.core.Log level for class
[2024-12-02 10:14:05,031 INFO  L130        SettingsManager]: Preferences different from defaults after loading the file:
[2024-12-02 10:14:05,032 INFO  L151        SettingsManager]: Preferences of UltimateCore differ from their defaults:
[2024-12-02 10:14:05,032 INFO  L153        SettingsManager]:  * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR;
[2024-12-02 10:14:05,032 INFO  L151        SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults:
[2024-12-02 10:14:05,032 INFO  L153        SettingsManager]:  * Use memory slicer=true
[2024-12-02 10:14:05,032 INFO  L151        SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults:
[2024-12-02 10:14:05,032 INFO  L153        SettingsManager]:  * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS
[2024-12-02 10:14:05,033 INFO  L151        SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults:
[2024-12-02 10:14:05,033 INFO  L153        SettingsManager]:  * Create parallel compositions if possible=false
[2024-12-02 10:14:05,033 INFO  L153        SettingsManager]:  * Use SBE=true
[2024-12-02 10:14:05,033 INFO  L151        SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults:
[2024-12-02 10:14:05,033 INFO  L153        SettingsManager]:  * Pointer base address is valid at dereference=IGNORE
[2024-12-02 10:14:05,033 INFO  L153        SettingsManager]:  * sizeof long=4
[2024-12-02 10:14:05,033 INFO  L153        SettingsManager]:  * Overapproximate operations on floating types=true
[2024-12-02 10:14:05,033 INFO  L153        SettingsManager]:  * sizeof POINTER=4
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Check division by zero=IGNORE
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Pointer to allocated memory at dereference=IGNORE
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * If two pointers are subtracted or compared they have the same base address=IGNORE
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Check array bounds for arrays that are off heap=IGNORE
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * sizeof long double=12
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Check if freed pointer was valid=false
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Behaviour of calls to undefined functions=OVERAPPROXIMATE_BEHAVIOUR
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Use constant arrays=true
[2024-12-02 10:14:05,034 INFO  L151        SettingsManager]: Preferences of IcfgBuilder differ from their defaults:
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Size of a code block=SequenceOfStatements
[2024-12-02 10:14:05,034 INFO  L153        SettingsManager]:  * Only consider context switches at boundaries of atomic blocks=true
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * SMT solver=External_DefaultMode
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000
[2024-12-02 10:14:05,035 INFO  L151        SettingsManager]: Preferences of RCFGBuilder differ from their defaults:
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * Size of a code block=SequenceOfStatements
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * Only consider context switches at boundaries of atomic blocks=true
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * SMT solver=External_DefaultMode
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000
[2024-12-02 10:14:05,035 INFO  L151        SettingsManager]: Preferences of TraceAbstraction differ from their defaults:
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * Compute Interpolants along a Counterexample=FPandBP
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * Compute procedure contracts=false
[2024-12-02 10:14:05,035 INFO  L153        SettingsManager]:  * Positions where we compute the Hoare Annotation=LoopHeads
[2024-12-02 10:14:05,036 INFO  L153        SettingsManager]:  * Trace refinement strategy=CAMEL
[2024-12-02 10:14:05,036 INFO  L153        SettingsManager]:  * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in
[2024-12-02 10:14:05,036 INFO  L153        SettingsManager]:  * Apply one-shot large block encoding in concurrent analysis=false
[2024-12-02 10:14:05,036 INFO  L153        SettingsManager]:  * Automaton type used in concurrency analysis=PETRI_NET
[2024-12-02 10:14:05,036 INFO  L153        SettingsManager]:  * Order on configurations for Petri net unfoldings=DBO
[2024-12-02 10:14:05,036 INFO  L153        SettingsManager]:  * SMT solver=External_ModelsAndUnsatCoreMode
[2024-12-02 10:14:05,036 INFO  L153        SettingsManager]:  * Looper check in Petri net analysis=SEMANTIC
Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main
Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1
Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness
Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false
Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) )


Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer
Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit
Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 311cf727219391e066955da60e9a83cfca77eaf7b53c342c6934d47c5123e76f
[2024-12-02 10:14:05,293 INFO  L75    nceAwareModelManager]: Repository-Root is: /tmp
[2024-12-02 10:14:05,301 INFO  L261   ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized
[2024-12-02 10:14:05,303 INFO  L217   ainManager$Toolchain]: [Toolchain 1]: Toolchain selected.
[2024-12-02 10:14:05,304 INFO  L270        PluginConnector]: Initializing CDTParser...
[2024-12-02 10:14:05,304 INFO  L274        PluginConnector]: CDTParser initialized
[2024-12-02 10:14:05,306 INFO  L431   ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/../../sv-benchmarks/c/product-lines/minepump_spec1_product51.cil.c
[2024-12-02 10:14:08,100 INFO  L533              CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/data/16a40d96b/84ee0b91e0d746c797329d0c0a27f33f/FLAG15a0f589b
[2024-12-02 10:14:08,336 INFO  L384              CDTParser]: Found 1 translation units.
[2024-12-02 10:14:08,336 INFO  L180              CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/sv-benchmarks/c/product-lines/minepump_spec1_product51.cil.c
[2024-12-02 10:14:08,347 INFO  L427              CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/data/16a40d96b/84ee0b91e0d746c797329d0c0a27f33f/FLAG15a0f589b
[2024-12-02 10:14:08,359 INFO  L435              CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/data/16a40d96b/84ee0b91e0d746c797329d0c0a27f33f
[2024-12-02 10:14:08,360 INFO  L299   ainManager$Toolchain]: ####################### [Toolchain 1] #######################
[2024-12-02 10:14:08,361 INFO  L133        ToolchainWalker]: Walking toolchain with 6 elements.
[2024-12-02 10:14:08,362 INFO  L112        PluginConnector]: ------------------------CACSL2BoogieTranslator----------------------------
[2024-12-02 10:14:08,362 INFO  L270        PluginConnector]: Initializing CACSL2BoogieTranslator...
[2024-12-02 10:14:08,365 INFO  L274        PluginConnector]: CACSL2BoogieTranslator initialized
[2024-12-02 10:14:08,366 INFO  L184        PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,367 INFO  L204        PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4c19ab2a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08, skipping insertion in model container
[2024-12-02 10:14:08,367 INFO  L184        PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,392 INFO  L175         MainTranslator]: Built tables and reachable declarations
[2024-12-02 10:14:08,630 WARN  L250   ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/sv-benchmarks/c/product-lines/minepump_spec1_product51.cil.c[15256,15269]
[2024-12-02 10:14:08,653 INFO  L210          PostProcessor]: Analyzing one entry point: main
[2024-12-02 10:14:08,664 INFO  L200         MainTranslator]: Completed pre-run
[2024-12-02 10:14:08,674 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49]
[2024-12-02 10:14:08,676 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [121]
[2024-12-02 10:14:08,676 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [343]
[2024-12-02 10:14:08,676 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [709]
[2024-12-02 10:14:08,676 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [718]
[2024-12-02 10:14:08,676 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [756]
[2024-12-02 10:14:08,676 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [782]
[2024-12-02 10:14:08,677 WARN  L75    lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [878]
[2024-12-02 10:14:08,724 WARN  L250   ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/sv-benchmarks/c/product-lines/minepump_spec1_product51.cil.c[15256,15269]
[2024-12-02 10:14:08,734 INFO  L210          PostProcessor]: Analyzing one entry point: main
[2024-12-02 10:14:08,756 INFO  L204         MainTranslator]: Completed translation
[2024-12-02 10:14:08,756 INFO  L201        PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08 WrapperNode
[2024-12-02 10:14:08,757 INFO  L131        PluginConnector]: ------------------------ END CACSL2BoogieTranslator----------------------------
[2024-12-02 10:14:08,758 INFO  L112        PluginConnector]: ------------------------Boogie Procedure Inliner----------------------------
[2024-12-02 10:14:08,758 INFO  L270        PluginConnector]: Initializing Boogie Procedure Inliner...
[2024-12-02 10:14:08,758 INFO  L274        PluginConnector]: Boogie Procedure Inliner initialized
[2024-12-02 10:14:08,764 INFO  L184        PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,773 INFO  L184        PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,789 INFO  L138                Inliner]: procedures = 56, calls = 100, calls flagged for inlining = 22, calls inlined = 19, statements flattened = 200
[2024-12-02 10:14:08,790 INFO  L131        PluginConnector]: ------------------------ END Boogie Procedure Inliner----------------------------
[2024-12-02 10:14:08,790 INFO  L112        PluginConnector]: ------------------------Boogie Preprocessor----------------------------
[2024-12-02 10:14:08,790 INFO  L270        PluginConnector]: Initializing Boogie Preprocessor...
[2024-12-02 10:14:08,790 INFO  L274        PluginConnector]: Boogie Preprocessor initialized
[2024-12-02 10:14:08,799 INFO  L184        PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,799 INFO  L184        PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,801 INFO  L184        PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,812 INFO  L175           MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0].
[2024-12-02 10:14:08,812 INFO  L184        PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,812 INFO  L184        PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,815 INFO  L184        PluginConnector]: Executing the observer ReplaceArrayAssignments from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,816 INFO  L184        PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,818 INFO  L184        PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,819 INFO  L184        PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,820 INFO  L184        PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,821 INFO  L131        PluginConnector]: ------------------------ END Boogie Preprocessor----------------------------
[2024-12-02 10:14:08,821 INFO  L112        PluginConnector]: ------------------------RCFGBuilder----------------------------
[2024-12-02 10:14:08,821 INFO  L270        PluginConnector]: Initializing RCFGBuilder...
[2024-12-02 10:14:08,821 INFO  L274        PluginConnector]: RCFGBuilder initialized
[2024-12-02 10:14:08,822 INFO  L184        PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (1/1) ...
[2024-12-02 10:14:08,826 INFO  L173          SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000
[2024-12-02 10:14:08,836 INFO  L189       MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/z3
[2024-12-02 10:14:08,845 INFO  L229       MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null)
[2024-12-02 10:14:08,848 INFO  L327       MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process
[2024-12-02 10:14:08,866 INFO  L130     BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit
[2024-12-02 10:14:08,866 INFO  L130     BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base
[2024-12-02 10:14:08,866 INFO  L138     BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base
[2024-12-02 10:14:08,866 INFO  L130     BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical
[2024-12-02 10:14:08,867 INFO  L138     BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical
[2024-12-02 10:14:08,867 INFO  L130     BoogieDeclarations]: Found specification of procedure cleanup
[2024-12-02 10:14:08,867 INFO  L138     BoogieDeclarations]: Found implementation of procedure cleanup
[2024-12-02 10:14:08,867 INFO  L130     BoogieDeclarations]: Found specification of procedure timeShift
[2024-12-02 10:14:08,867 INFO  L138     BoogieDeclarations]: Found implementation of procedure timeShift
[2024-12-02 10:14:08,867 INFO  L130     BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor
[2024-12-02 10:14:08,867 INFO  L138     BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor
[2024-12-02 10:14:08,867 INFO  L130     BoogieDeclarations]: Found specification of procedure waterRise
[2024-12-02 10:14:08,867 INFO  L138     BoogieDeclarations]: Found implementation of procedure waterRise
[2024-12-02 10:14:08,867 INFO  L130     BoogieDeclarations]: Found specification of procedure deactivatePump
[2024-12-02 10:14:08,867 INFO  L138     BoogieDeclarations]: Found implementation of procedure deactivatePump
[2024-12-02 10:14:08,868 INFO  L130     BoogieDeclarations]: Found specification of procedure write~init~int#0
[2024-12-02 10:14:08,868 INFO  L130     BoogieDeclarations]: Found specification of procedure changeMethaneLevel
[2024-12-02 10:14:08,868 INFO  L138     BoogieDeclarations]: Found implementation of procedure changeMethaneLevel
[2024-12-02 10:14:08,868 INFO  L130     BoogieDeclarations]: Found specification of procedure ULTIMATE.start
[2024-12-02 10:14:08,868 INFO  L138     BoogieDeclarations]: Found implementation of procedure ULTIMATE.start
[2024-12-02 10:14:08,921 INFO  L234             CfgBuilder]: Building ICFG
[2024-12-02 10:14:08,922 INFO  L260             CfgBuilder]: Building CFG for each procedure with an implementation
[2024-12-02 10:14:09,147 INFO  L?                        ?]: Removed 45 outVars from TransFormulas that were not future-live.
[2024-12-02 10:14:09,147 INFO  L283             CfgBuilder]: Performing block encoding
[2024-12-02 10:14:09,158 INFO  L307             CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start)
[2024-12-02 10:14:09,159 INFO  L312             CfgBuilder]: Removed 4 assume(true) statements.
[2024-12-02 10:14:09,159 INFO  L201        PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 10:14:09 BoogieIcfgContainer
[2024-12-02 10:14:09,159 INFO  L131        PluginConnector]: ------------------------ END RCFGBuilder----------------------------
[2024-12-02 10:14:09,161 INFO  L112        PluginConnector]: ------------------------TraceAbstraction----------------------------
[2024-12-02 10:14:09,161 INFO  L270        PluginConnector]: Initializing TraceAbstraction...
[2024-12-02 10:14:09,166 INFO  L274        PluginConnector]: TraceAbstraction initialized
[2024-12-02 10:14:09,166 INFO  L184        PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 02.12 10:14:08" (1/3) ...
[2024-12-02 10:14:09,167 INFO  L204        PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@18c807c2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 10:14:09, skipping insertion in model container
[2024-12-02 10:14:09,167 INFO  L184        PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:14:08" (2/3) ...
[2024-12-02 10:14:09,167 INFO  L204        PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@18c807c2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 10:14:09, skipping insertion in model container
[2024-12-02 10:14:09,168 INFO  L184        PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 10:14:09" (3/3) ...
[2024-12-02 10:14:09,169 INFO  L128   eAbstractionObserver]: Analyzing ICFG minepump_spec1_product51.cil.c
[2024-12-02 10:14:09,186 INFO  L216   ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION
[2024-12-02 10:14:09,188 INFO  L151   ceAbstractionStarter]: Applying trace abstraction to ICFG minepump_spec1_product51.cil.c that has 9 procedures, 91 locations, 1 initial locations, 2 loop locations, and 1 error locations.
[2024-12-02 10:14:09,238 INFO  L332      AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ========
[2024-12-02 10:14:09,249 INFO  L333      AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@248dfdec, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms]
[2024-12-02 10:14:09,250 INFO  L334      AbstractCegarLoop]: Starting to check reachability of 1 error locations.
[2024-12-02 10:14:09,253 INFO  L276                IsEmpty]: Start isEmpty. Operand  has 91 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 77 states have internal predecessors, (95), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13)
[2024-12-02 10:14:09,261 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 24
[2024-12-02 10:14:09,261 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:09,261 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:09,262 INFO  L396      AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:09,266 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:09,266 INFO  L85        PathProgramCache]: Analyzing trace with hash 1606587121, now seen corresponding path program 1 times
[2024-12-02 10:14:09,273 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:09,273 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1240841573]
[2024-12-02 10:14:09,274 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:09,274 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:09,351 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:09,399 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:09,400 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:09,400 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1240841573]
[2024-12-02 10:14:09,400 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1240841573] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:09,401 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:09,401 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2
[2024-12-02 10:14:09,402 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [657954466]
[2024-12-02 10:14:09,402 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:09,407 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 2 states
[2024-12-02 10:14:09,407 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:09,420 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants.
[2024-12-02 10:14:09,420 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2
[2024-12-02 10:14:09,421 INFO  L87              Difference]: Start difference. First operand  has 91 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 77 states have internal predecessors, (95), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) Second operand  has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:09,441 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:09,442 INFO  L93              Difference]: Finished difference Result 174 states and 237 transitions.
[2024-12-02 10:14:09,442 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. 
[2024-12-02 10:14:09,444 INFO  L78                 Accepts]: Start accepts. Automaton has  has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23
[2024-12-02 10:14:09,444 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:09,450 INFO  L225             Difference]: With dead ends: 174
[2024-12-02 10:14:09,450 INFO  L226             Difference]: Without dead ends: 82
[2024-12-02 10:14:09,453 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2
[2024-12-02 10:14:09,456 INFO  L435           NwaCegarLoop]: 115 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:09,457 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 115 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time]
[2024-12-02 10:14:09,467 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 82 states.
[2024-12-02 10:14:09,486 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 82 to 82.
[2024-12-02 10:14:09,487 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 82 states, 61 states have (on average 1.3278688524590163) internal successors, (81), 69 states have internal predecessors, (81), 13 states have call successors, (13), 8 states have call predecessors, (13), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12)
[2024-12-02 10:14:09,492 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 82 states to 82 states and 106 transitions.
[2024-12-02 10:14:09,494 INFO  L78                 Accepts]: Start accepts. Automaton has 82 states and 106 transitions. Word has length 23
[2024-12-02 10:14:09,494 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:09,494 INFO  L471      AbstractCegarLoop]: Abstraction has 82 states and 106 transitions.
[2024-12-02 10:14:09,495 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:09,495 INFO  L276                IsEmpty]: Start isEmpty. Operand 82 states and 106 transitions.
[2024-12-02 10:14:09,497 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 24
[2024-12-02 10:14:09,497 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:09,497 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:09,497 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0
[2024-12-02 10:14:09,498 INFO  L396      AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:09,498 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:09,498 INFO  L85        PathProgramCache]: Analyzing trace with hash -1456617941, now seen corresponding path program 1 times
[2024-12-02 10:14:09,499 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:09,499 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [462485392]
[2024-12-02 10:14:09,499 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:09,499 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:09,534 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:09,618 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:09,618 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:09,618 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [462485392]
[2024-12-02 10:14:09,618 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [462485392] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:09,618 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:09,618 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3
[2024-12-02 10:14:09,618 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1888729865]
[2024-12-02 10:14:09,618 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:09,620 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 3 states
[2024-12-02 10:14:09,620 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:09,621 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants.
[2024-12-02 10:14:09,621 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6
[2024-12-02 10:14:09,621 INFO  L87              Difference]: Start difference. First operand 82 states and 106 transitions. Second operand  has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:09,640 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:09,640 INFO  L93              Difference]: Finished difference Result 128 states and 164 transitions.
[2024-12-02 10:14:09,641 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. 
[2024-12-02 10:14:09,641 INFO  L78                 Accepts]: Start accepts. Automaton has  has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23
[2024-12-02 10:14:09,641 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:09,642 INFO  L225             Difference]: With dead ends: 128
[2024-12-02 10:14:09,643 INFO  L226             Difference]: Without dead ends: 74
[2024-12-02 10:14:09,644 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6
[2024-12-02 10:14:09,645 INFO  L435           NwaCegarLoop]: 94 mSDtfsCounter, 16 mSDsluCounter, 74 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 168 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:09,645 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 168 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time]
[2024-12-02 10:14:09,646 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 74 states.
[2024-12-02 10:14:09,653 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 74 to 74.
[2024-12-02 10:14:09,654 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 74 states, 56 states have (on average 1.3392857142857142) internal successors, (75), 64 states have internal predecessors, (75), 10 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (10), 7 states have call predecessors, (10), 10 states have call successors, (10)
[2024-12-02 10:14:09,655 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 95 transitions.
[2024-12-02 10:14:09,656 INFO  L78                 Accepts]: Start accepts. Automaton has 74 states and 95 transitions. Word has length 23
[2024-12-02 10:14:09,656 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:09,656 INFO  L471      AbstractCegarLoop]: Abstraction has 74 states and 95 transitions.
[2024-12-02 10:14:09,656 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:09,656 INFO  L276                IsEmpty]: Start isEmpty. Operand 74 states and 95 transitions.
[2024-12-02 10:14:09,657 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 28
[2024-12-02 10:14:09,657 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:09,657 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:09,657 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1
[2024-12-02 10:14:09,658 INFO  L396      AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:09,659 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:09,659 INFO  L85        PathProgramCache]: Analyzing trace with hash 1286418432, now seen corresponding path program 1 times
[2024-12-02 10:14:09,659 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:09,659 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1495538884]
[2024-12-02 10:14:09,659 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:09,659 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:09,681 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:09,783 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:09,783 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:09,783 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1495538884]
[2024-12-02 10:14:09,783 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1495538884] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:09,783 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:09,783 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6
[2024-12-02 10:14:09,783 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [724797122]
[2024-12-02 10:14:09,783 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:09,784 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 6 states
[2024-12-02 10:14:09,784 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:09,784 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants.
[2024-12-02 10:14:09,784 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30
[2024-12-02 10:14:09,784 INFO  L87              Difference]: Start difference. First operand 74 states and 95 transitions. Second operand  has 6 states, 6 states have (on average 4.0) internal successors, (24), 6 states have internal predecessors, (24), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:09,960 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:09,960 INFO  L93              Difference]: Finished difference Result 248 states and 325 transitions.
[2024-12-02 10:14:09,961 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. 
[2024-12-02 10:14:09,961 INFO  L78                 Accepts]: Start accepts. Automaton has  has 6 states, 6 states have (on average 4.0) internal successors, (24), 6 states have internal predecessors, (24), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 27
[2024-12-02 10:14:09,961 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:09,963 INFO  L225             Difference]: With dead ends: 248
[2024-12-02 10:14:09,963 INFO  L226             Difference]: Without dead ends: 181
[2024-12-02 10:14:09,964 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=36, Unknown=0, NotChecked=0, Total=56
[2024-12-02 10:14:09,964 INFO  L435           NwaCegarLoop]: 108 mSDtfsCounter, 223 mSDsluCounter, 280 mSDsCounter, 0 mSdLazyCounter, 82 mSolverCounterSat, 19 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 223 SdHoareTripleChecker+Valid, 388 SdHoareTripleChecker+Invalid, 101 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 19 IncrementalHoareTripleChecker+Valid, 82 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:09,965 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [223 Valid, 388 Invalid, 101 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [19 Valid, 82 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time]
[2024-12-02 10:14:09,966 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 181 states.
[2024-12-02 10:14:09,989 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 181 to 175.
[2024-12-02 10:14:09,990 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 175 states, 130 states have (on average 1.3692307692307693) internal successors, (178), 148 states have internal predecessors, (178), 25 states have call successors, (25), 19 states have call predecessors, (25), 19 states have return successors, (26), 17 states have call predecessors, (26), 25 states have call successors, (26)
[2024-12-02 10:14:09,992 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 175 states to 175 states and 229 transitions.
[2024-12-02 10:14:09,993 INFO  L78                 Accepts]: Start accepts. Automaton has 175 states and 229 transitions. Word has length 27
[2024-12-02 10:14:09,993 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:09,993 INFO  L471      AbstractCegarLoop]: Abstraction has 175 states and 229 transitions.
[2024-12-02 10:14:09,993 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 6 states, 6 states have (on average 4.0) internal successors, (24), 6 states have internal predecessors, (24), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:09,993 INFO  L276                IsEmpty]: Start isEmpty. Operand 175 states and 229 transitions.
[2024-12-02 10:14:09,994 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 32
[2024-12-02 10:14:09,995 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:09,995 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:09,995 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2
[2024-12-02 10:14:09,995 INFO  L396      AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:09,996 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:09,996 INFO  L85        PathProgramCache]: Analyzing trace with hash 1658053238, now seen corresponding path program 1 times
[2024-12-02 10:14:09,996 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:09,996 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1646937265]
[2024-12-02 10:14:09,996 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:09,997 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:10,014 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:10,123 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:10,123 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:10,123 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1646937265]
[2024-12-02 10:14:10,123 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1646937265] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:10,123 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:10,123 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5
[2024-12-02 10:14:10,123 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [205462701]
[2024-12-02 10:14:10,123 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:10,124 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 5 states
[2024-12-02 10:14:10,124 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:10,124 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants.
[2024-12-02 10:14:10,125 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20
[2024-12-02 10:14:10,125 INFO  L87              Difference]: Start difference. First operand 175 states and 229 transitions. Second operand  has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:10,207 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:10,207 INFO  L93              Difference]: Finished difference Result 417 states and 561 transitions.
[2024-12-02 10:14:10,207 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. 
[2024-12-02 10:14:10,207 INFO  L78                 Accepts]: Start accepts. Automaton has  has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31
[2024-12-02 10:14:10,208 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:10,210 INFO  L225             Difference]: With dead ends: 417
[2024-12-02 10:14:10,210 INFO  L226             Difference]: Without dead ends: 249
[2024-12-02 10:14:10,211 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42
[2024-12-02 10:14:10,212 INFO  L435           NwaCegarLoop]: 92 mSDtfsCounter, 48 mSDsluCounter, 241 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 333 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:10,212 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 333 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time]
[2024-12-02 10:14:10,213 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 249 states.
[2024-12-02 10:14:10,238 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 249 to 247.
[2024-12-02 10:14:10,239 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 247 states, 184 states have (on average 1.315217391304348) internal successors, (242), 201 states have internal predecessors, (242), 32 states have call successors, (32), 30 states have call predecessors, (32), 30 states have return successors, (42), 29 states have call predecessors, (42), 32 states have call successors, (42)
[2024-12-02 10:14:10,240 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 247 states to 247 states and 316 transitions.
[2024-12-02 10:14:10,241 INFO  L78                 Accepts]: Start accepts. Automaton has 247 states and 316 transitions. Word has length 31
[2024-12-02 10:14:10,241 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:10,241 INFO  L471      AbstractCegarLoop]: Abstraction has 247 states and 316 transitions.
[2024-12-02 10:14:10,241 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)
[2024-12-02 10:14:10,241 INFO  L276                IsEmpty]: Start isEmpty. Operand 247 states and 316 transitions.
[2024-12-02 10:14:10,243 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 42
[2024-12-02 10:14:10,243 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:10,243 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:10,243 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3
[2024-12-02 10:14:10,243 INFO  L396      AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:10,243 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:10,243 INFO  L85        PathProgramCache]: Analyzing trace with hash 323862076, now seen corresponding path program 1 times
[2024-12-02 10:14:10,244 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:10,244 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1180510844]
[2024-12-02 10:14:10,244 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:10,244 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:10,257 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:10,329 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:10,329 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:10,329 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1180510844]
[2024-12-02 10:14:10,329 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1180510844] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:10,329 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:10,329 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5
[2024-12-02 10:14:10,330 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [283395764]
[2024-12-02 10:14:10,330 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:10,330 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 5 states
[2024-12-02 10:14:10,330 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:10,330 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants.
[2024-12-02 10:14:10,330 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20
[2024-12-02 10:14:10,331 INFO  L87              Difference]: Start difference. First operand 247 states and 316 transitions. Second operand  has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2)
[2024-12-02 10:14:10,365 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:10,365 INFO  L93              Difference]: Finished difference Result 493 states and 642 transitions.
[2024-12-02 10:14:10,366 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. 
[2024-12-02 10:14:10,366 INFO  L78                 Accepts]: Start accepts. Automaton has  has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 41
[2024-12-02 10:14:10,366 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:10,368 INFO  L225             Difference]: With dead ends: 493
[2024-12-02 10:14:10,368 INFO  L226             Difference]: Without dead ends: 253
[2024-12-02 10:14:10,369 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20
[2024-12-02 10:14:10,370 INFO  L435           NwaCegarLoop]: 92 mSDtfsCounter, 0 mSDsluCounter, 270 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 362 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:10,370 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 362 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time]
[2024-12-02 10:14:10,371 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 253 states.
[2024-12-02 10:14:10,392 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 253 to 253.
[2024-12-02 10:14:10,392 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 253 states, 190 states have (on average 1.305263157894737) internal successors, (248), 207 states have internal predecessors, (248), 32 states have call successors, (32), 30 states have call predecessors, (32), 30 states have return successors, (42), 29 states have call predecessors, (42), 32 states have call successors, (42)
[2024-12-02 10:14:10,394 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 253 states to 253 states and 322 transitions.
[2024-12-02 10:14:10,394 INFO  L78                 Accepts]: Start accepts. Automaton has 253 states and 322 transitions. Word has length 41
[2024-12-02 10:14:10,395 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:10,395 INFO  L471      AbstractCegarLoop]: Abstraction has 253 states and 322 transitions.
[2024-12-02 10:14:10,395 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2)
[2024-12-02 10:14:10,395 INFO  L276                IsEmpty]: Start isEmpty. Operand 253 states and 322 transitions.
[2024-12-02 10:14:10,396 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 42
[2024-12-02 10:14:10,396 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:10,396 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:10,397 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4
[2024-12-02 10:14:10,397 INFO  L396      AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:10,397 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:10,397 INFO  L85        PathProgramCache]: Analyzing trace with hash -1670282630, now seen corresponding path program 1 times
[2024-12-02 10:14:10,397 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:10,397 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1909451313]
[2024-12-02 10:14:10,397 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:10,398 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:10,411 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:10,467 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:10,467 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:10,467 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1909451313]
[2024-12-02 10:14:10,467 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1909451313] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:10,468 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:10,468 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4
[2024-12-02 10:14:10,468 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1538898443]
[2024-12-02 10:14:10,468 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:10,468 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 4 states
[2024-12-02 10:14:10,468 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:10,469 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants.
[2024-12-02 10:14:10,469 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12
[2024-12-02 10:14:10,469 INFO  L87              Difference]: Start difference. First operand 253 states and 322 transitions. Second operand  has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2)
[2024-12-02 10:14:10,507 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:10,507 INFO  L93              Difference]: Finished difference Result 503 states and 661 transitions.
[2024-12-02 10:14:10,508 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. 
[2024-12-02 10:14:10,508 INFO  L78                 Accepts]: Start accepts. Automaton has  has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 41
[2024-12-02 10:14:10,509 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:10,511 INFO  L225             Difference]: With dead ends: 503
[2024-12-02 10:14:10,511 INFO  L226             Difference]: Without dead ends: 257
[2024-12-02 10:14:10,512 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12
[2024-12-02 10:14:10,513 INFO  L435           NwaCegarLoop]: 93 mSDtfsCounter, 0 mSDsluCounter, 180 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 273 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:10,514 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 273 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time]
[2024-12-02 10:14:10,515 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 257 states.
[2024-12-02 10:14:10,543 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 257 to 257.
[2024-12-02 10:14:10,543 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 257 states, 194 states have (on average 1.2989690721649485) internal successors, (252), 211 states have internal predecessors, (252), 32 states have call successors, (32), 30 states have call predecessors, (32), 30 states have return successors, (42), 29 states have call predecessors, (42), 32 states have call successors, (42)
[2024-12-02 10:14:10,546 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 257 states to 257 states and 326 transitions.
[2024-12-02 10:14:10,546 INFO  L78                 Accepts]: Start accepts. Automaton has 257 states and 326 transitions. Word has length 41
[2024-12-02 10:14:10,547 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:10,547 INFO  L471      AbstractCegarLoop]: Abstraction has 257 states and 326 transitions.
[2024-12-02 10:14:10,547 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2)
[2024-12-02 10:14:10,547 INFO  L276                IsEmpty]: Start isEmpty. Operand 257 states and 326 transitions.
[2024-12-02 10:14:10,548 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 42
[2024-12-02 10:14:10,548 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:10,548 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:10,549 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5
[2024-12-02 10:14:10,549 INFO  L396      AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:10,549 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:10,549 INFO  L85        PathProgramCache]: Analyzing trace with hash 1807036216, now seen corresponding path program 1 times
[2024-12-02 10:14:10,549 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:10,549 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [146808133]
[2024-12-02 10:14:10,550 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:10,550 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:10,564 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:10,639 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:10,639 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:10,639 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [146808133]
[2024-12-02 10:14:10,639 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [146808133] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:10,639 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:10,639 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4
[2024-12-02 10:14:10,639 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [557416485]
[2024-12-02 10:14:10,640 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:10,640 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 4 states
[2024-12-02 10:14:10,640 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:10,640 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants.
[2024-12-02 10:14:10,640 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12
[2024-12-02 10:14:10,641 INFO  L87              Difference]: Start difference. First operand 257 states and 326 transitions. Second operand  has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2)
[2024-12-02 10:14:10,766 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:10,766 INFO  L93              Difference]: Finished difference Result 867 states and 1138 transitions.
[2024-12-02 10:14:10,766 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. 
[2024-12-02 10:14:10,767 INFO  L78                 Accepts]: Start accepts. Automaton has  has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 41
[2024-12-02 10:14:10,767 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:10,770 INFO  L225             Difference]: With dead ends: 867
[2024-12-02 10:14:10,770 INFO  L226             Difference]: Without dead ends: 617
[2024-12-02 10:14:10,772 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12
[2024-12-02 10:14:10,772 INFO  L435           NwaCegarLoop]: 159 mSDtfsCounter, 126 mSDsluCounter, 151 mSDsCounter, 0 mSdLazyCounter, 55 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 126 SdHoareTripleChecker+Valid, 310 SdHoareTripleChecker+Invalid, 60 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 55 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:10,772 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [126 Valid, 310 Invalid, 60 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 55 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time]
[2024-12-02 10:14:10,774 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 617 states.
[2024-12-02 10:14:10,848 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 617 to 603.
[2024-12-02 10:14:10,849 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 603 states, 454 states have (on average 1.2731277533039647) internal successors, (578), 488 states have internal predecessors, (578), 75 states have call successors, (75), 71 states have call predecessors, (75), 73 states have return successors, (118), 71 states have call predecessors, (118), 75 states have call successors, (118)
[2024-12-02 10:14:10,854 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 603 states to 603 states and 771 transitions.
[2024-12-02 10:14:10,854 INFO  L78                 Accepts]: Start accepts. Automaton has 603 states and 771 transitions. Word has length 41
[2024-12-02 10:14:10,855 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:10,855 INFO  L471      AbstractCegarLoop]: Abstraction has 603 states and 771 transitions.
[2024-12-02 10:14:10,855 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2)
[2024-12-02 10:14:10,855 INFO  L276                IsEmpty]: Start isEmpty. Operand 603 states and 771 transitions.
[2024-12-02 10:14:10,856 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 46
[2024-12-02 10:14:10,856 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:10,856 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:10,856 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6
[2024-12-02 10:14:10,856 INFO  L396      AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:10,857 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:10,857 INFO  L85        PathProgramCache]: Analyzing trace with hash -428991650, now seen corresponding path program 1 times
[2024-12-02 10:14:10,857 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:10,857 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2098716597]
[2024-12-02 10:14:10,857 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:10,857 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:10,870 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is unsat
[2024-12-02 10:14:10,945 INFO  L134       CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked.
[2024-12-02 10:14:10,946 INFO  L136   FreeRefinementEngine]: Strategy CAMEL found an infeasible trace
[2024-12-02 10:14:10,946 INFO  L334   FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2098716597]
[2024-12-02 10:14:10,946 INFO  L158   FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2098716597] provided 1 perfect and 0 imperfect interpolant sequences
[2024-12-02 10:14:10,946 INFO  L185   FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences.
[2024-12-02 10:14:10,946 INFO  L198   FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6
[2024-12-02 10:14:10,946 INFO  L121   tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1670159844]
[2024-12-02 10:14:10,946 INFO  L85    oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton
[2024-12-02 10:14:10,947 INFO  L548      AbstractCegarLoop]: INTERPOLANT automaton has 6 states
[2024-12-02 10:14:10,947 INFO  L100   FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL
[2024-12-02 10:14:10,947 INFO  L144   InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants.
[2024-12-02 10:14:10,947 INFO  L146   InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30
[2024-12-02 10:14:10,948 INFO  L87              Difference]: Start difference. First operand 603 states and 771 transitions. Second operand  has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3)
[2024-12-02 10:14:11,164 INFO  L144             Difference]: Subtrahend was deterministic. Have not used determinization.
[2024-12-02 10:14:11,165 INFO  L93              Difference]: Finished difference Result 1767 states and 2331 transitions.
[2024-12-02 10:14:11,165 INFO  L141   InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. 
[2024-12-02 10:14:11,165 INFO  L78                 Accepts]: Start accepts. Automaton has  has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 45
[2024-12-02 10:14:11,166 INFO  L84                 Accepts]: Finished accepts. some prefix is accepted.
[2024-12-02 10:14:11,173 INFO  L225             Difference]: With dead ends: 1767
[2024-12-02 10:14:11,173 INFO  L226             Difference]: Without dead ends: 1171
[2024-12-02 10:14:11,176 INFO  L434           NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72
[2024-12-02 10:14:11,176 INFO  L435           NwaCegarLoop]: 93 mSDtfsCounter, 66 mSDsluCounter, 331 mSDsCounter, 0 mSdLazyCounter, 47 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 67 SdHoareTripleChecker+Valid, 424 SdHoareTripleChecker+Invalid, 51 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 47 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time
[2024-12-02 10:14:11,177 INFO  L436           NwaCegarLoop]: SdHoareTripleChecker [67 Valid, 424 Invalid, 51 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 47 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time]
[2024-12-02 10:14:11,178 INFO  L82        GeneralOperation]: Start minimizeSevpa. Operand 1171 states.
[2024-12-02 10:14:11,284 INFO  L88        GeneralOperation]: Finished minimizeSevpa. Reduced states from 1171 to 1171.
[2024-12-02 10:14:11,286 INFO  L82        GeneralOperation]: Start removeUnreachable. Operand  has 1171 states, 874 states have (on average 1.2494279176201373) internal successors, (1092), 941 states have internal predecessors, (1092), 150 states have call successors, (150), 142 states have call predecessors, (150), 146 states have return successors, (249), 142 states have call predecessors, (249), 150 states have call successors, (249)
[2024-12-02 10:14:11,294 INFO  L88        GeneralOperation]: Finished removeUnreachable. Reduced from 1171 states to 1171 states and 1491 transitions.
[2024-12-02 10:14:11,296 INFO  L78                 Accepts]: Start accepts. Automaton has 1171 states and 1491 transitions. Word has length 45
[2024-12-02 10:14:11,296 INFO  L84                 Accepts]: Finished accepts. word is rejected.
[2024-12-02 10:14:11,296 INFO  L471      AbstractCegarLoop]: Abstraction has 1171 states and 1491 transitions.
[2024-12-02 10:14:11,296 INFO  L472      AbstractCegarLoop]: INTERPOLANT automaton has  has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3)
[2024-12-02 10:14:11,296 INFO  L276                IsEmpty]: Start isEmpty. Operand 1171 states and 1491 transitions.
[2024-12-02 10:14:11,298 INFO  L282                IsEmpty]: Finished isEmpty. Found accepting run of length 50
[2024-12-02 10:14:11,298 INFO  L210           NwaCegarLoop]: Found error trace
[2024-12-02 10:14:11,298 INFO  L218           NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:11,298 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7
[2024-12-02 10:14:11,298 INFO  L396      AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] ===
[2024-12-02 10:14:11,299 INFO  L157       PredicateUnifier]: Initialized classic predicate unifier
[2024-12-02 10:14:11,299 INFO  L85        PathProgramCache]: Analyzing trace with hash -421192638, now seen corresponding path program 1 times
[2024-12-02 10:14:11,299 INFO  L118   FreeRefinementEngine]: Executing refinement strategy CAMEL
[2024-12-02 10:14:11,299 INFO  L334   FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1459273698]
[2024-12-02 10:14:11,299 INFO  L97    rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY
[2024-12-02 10:14:11,299 INFO  L127          SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms
[2024-12-02 10:14:11,313 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is sat
[2024-12-02 10:14:11,313 INFO  L357             TraceCheck]: Trace is feasible, we will do another trace check, this time with branch encoders.
[2024-12-02 10:14:11,322 INFO  L136    AnnotateAndAsserter]: Conjunction of SSA is sat
[2024-12-02 10:14:11,344 INFO  L130   FreeRefinementEngine]: Strategy CAMEL found a feasible trace
[2024-12-02 10:14:11,344 INFO  L340         BasicCegarLoop]: Counterexample is feasible
[2024-12-02 10:14:11,345 INFO  L782   garLoopResultBuilder]: Registering result UNSAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining)
[2024-12-02 10:14:11,347 WARN  L453      AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8
[2024-12-02 10:14:11,349 INFO  L422         BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1]
[2024-12-02 10:14:11,382 INFO  L170   ceAbstractionStarter]: Computing trace abstraction results
[2024-12-02 10:14:11,384 INFO  L201        PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 02.12 10:14:11 BoogieIcfgContainer
[2024-12-02 10:14:11,384 INFO  L131        PluginConnector]: ------------------------ END TraceAbstraction----------------------------
[2024-12-02 10:14:11,385 INFO  L112        PluginConnector]: ------------------------Witness Printer----------------------------
[2024-12-02 10:14:11,385 INFO  L270        PluginConnector]: Initializing Witness Printer...
[2024-12-02 10:14:11,385 INFO  L274        PluginConnector]: Witness Printer initialized
[2024-12-02 10:14:11,386 INFO  L184        PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 10:14:09" (3/4) ...
[2024-12-02 10:14:11,386 INFO  L140         WitnessPrinter]: Generating witness for reachability counterexample
[2024-12-02 10:14:11,439 INFO  L129   tionWitnessGenerator]: Generated YAML witness of length 42.
[2024-12-02 10:14:11,516 INFO  L149         WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/witness.graphml
[2024-12-02 10:14:11,516 INFO  L149         WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/witness.yml
[2024-12-02 10:14:11,516 INFO  L131        PluginConnector]: ------------------------ END Witness Printer----------------------------
[2024-12-02 10:14:11,517 INFO  L158              Benchmark]: Toolchain (without parser) took 3155.58ms. Allocated memory is still 142.6MB. Free memory was 115.1MB in the beginning and 73.8MB in the end (delta: 41.3MB). Peak memory consumption was 42.9MB. Max. memory is 16.1GB.
[2024-12-02 10:14:11,517 INFO  L158              Benchmark]: CDTParser took 0.32ms. Allocated memory is still 142.6MB. Free memory is still 83.6MB. There was no memory consumed. Max. memory is 16.1GB.
[2024-12-02 10:14:11,518 INFO  L158              Benchmark]: CACSL2BoogieTranslator took 394.80ms. Allocated memory is still 142.6MB. Free memory was 114.9MB in the beginning and 96.1MB in the end (delta: 18.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB.
[2024-12-02 10:14:11,518 INFO  L158              Benchmark]: Boogie Procedure Inliner took 32.06ms. Allocated memory is still 142.6MB. Free memory was 96.1MB in the beginning and 94.3MB in the end (delta: 1.7MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB.
[2024-12-02 10:14:11,518 INFO  L158              Benchmark]: Boogie Preprocessor took 30.55ms. Allocated memory is still 142.6MB. Free memory was 94.1MB in the beginning and 92.4MB in the end (delta: 1.7MB). There was no memory consumed. Max. memory is 16.1GB.
[2024-12-02 10:14:11,519 INFO  L158              Benchmark]: RCFGBuilder took 338.08ms. Allocated memory is still 142.6MB. Free memory was 92.3MB in the beginning and 75.5MB in the end (delta: 16.7MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB.
[2024-12-02 10:14:11,519 INFO  L158              Benchmark]: TraceAbstraction took 2223.43ms. Allocated memory is still 142.6MB. Free memory was 75.0MB in the beginning and 82.2MB in the end (delta: -7.1MB). Peak memory consumption was 959.6kB. Max. memory is 16.1GB.
[2024-12-02 10:14:11,519 INFO  L158              Benchmark]: Witness Printer took 131.37ms. Allocated memory is still 142.6MB. Free memory was 82.2MB in the beginning and 73.8MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB.
[2024-12-02 10:14:11,521 INFO  L338   ainManager$Toolchain]: #######################  End [Toolchain 1] #######################
 --- Results ---
 * Results from de.uni_freiburg.informatik.ultimate.core:
  - StatisticsResult: Toolchain Benchmarks
    Benchmark results are:
 * CDTParser took 0.32ms. Allocated memory is still 142.6MB. Free memory is still 83.6MB. There was no memory consumed. Max. memory is 16.1GB.
 * CACSL2BoogieTranslator took 394.80ms. Allocated memory is still 142.6MB. Free memory was 114.9MB in the beginning and 96.1MB in the end (delta: 18.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB.
 * Boogie Procedure Inliner took 32.06ms. Allocated memory is still 142.6MB. Free memory was 96.1MB in the beginning and 94.3MB in the end (delta: 1.7MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB.
 * Boogie Preprocessor took 30.55ms. Allocated memory is still 142.6MB. Free memory was 94.1MB in the beginning and 92.4MB in the end (delta: 1.7MB). There was no memory consumed. Max. memory is 16.1GB.
 * RCFGBuilder took 338.08ms. Allocated memory is still 142.6MB. Free memory was 92.3MB in the beginning and 75.5MB in the end (delta: 16.7MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB.
 * TraceAbstraction took 2223.43ms. Allocated memory is still 142.6MB. Free memory was 75.0MB in the beginning and 82.2MB in the end (delta: -7.1MB). Peak memory consumption was 959.6kB. Max. memory is 16.1GB.
 * Witness Printer took 131.37ms. Allocated memory is still 142.6MB. Free memory was 82.2MB in the beginning and 73.8MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB.
 * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator:
  - GenericResultAtLocation [Line: 49]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49]
  - GenericResultAtLocation [Line: 121]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [121]
  - GenericResultAtLocation [Line: 343]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [343]
  - GenericResultAtLocation [Line: 709]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [709]
  - GenericResultAtLocation [Line: 718]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [718]
  - GenericResultAtLocation [Line: 756]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [756]
  - GenericResultAtLocation [Line: 782]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [782]
  - GenericResultAtLocation [Line: 878]: Unsoundness Warning
    Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [878]
 * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction:
  - StatisticsResult: ErrorAutomatonStatistics
    NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0
  - CounterExampleResult [Line: 714]: a call to reach_error is reachable
    a call to reach_error is reachable
We found a FailurePath: 
[L131]              int pumpRunning  =    0;
[L132]              int systemActive  =    1;
[L513]              static struct __ACC__ERR *head  =    (struct __ACC__ERR *)0;
[L783]              int cleanupTimeShifts  =    4;
[L880]              int waterLevel  =    1;
[L881]              int methaneLevelCritical  =    0;
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1]
[L856]              int retValue_acc ;
[L857]              int tmp ;
[L861]  FCALL       select_helpers()
[L862]  FCALL       select_features()
[L863]  CALL, EXPR  valid_product()
[L748]              int retValue_acc ;
[L751]              retValue_acc = 1
[L752]              return (retValue_acc);
        VAL         [\result=1, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1]
[L863]  RET, EXPR   valid_product()
[L863]              tmp = valid_product()
[L865]  COND TRUE   \read(tmp)
[L867]  FCALL       setup()
[L868]  CALL        runTest()
[L850]  CALL        test()
[L56]               int splverifierCounter ;
[L57]               int tmp ;
[L58]               int tmp___0 ;
[L59]               int tmp___1 ;
[L60]               int tmp___2 ;
[L63]               splverifierCounter = 0
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, splverifierCounter=0, systemActive=1, waterLevel=1]
[L67]   COND TRUE   splverifierCounter < 4
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, splverifierCounter=0, systemActive=1, waterLevel=1]
[L73]               tmp = __VERIFIER_nondet_int()
[L75]   COND TRUE   \read(tmp)
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, splverifierCounter=0, systemActive=1, waterLevel=1]
[L77]   CALL        waterRise()
        VAL         [\old(waterLevel)=1, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1]
[L898]  COND TRUE   waterLevel < 2
[L899]              waterLevel = waterLevel + 1
        VAL         [\old(waterLevel)=1, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2]
[L77]   RET         waterRise()
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, splverifierCounter=0, systemActive=1, waterLevel=2]
[L83]               tmp___0 = __VERIFIER_nondet_int()
[L85]   COND TRUE   \read(tmp___0)
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, splverifierCounter=0, systemActive=1, waterLevel=2]
[L87]   CALL        changeMethaneLevel()
        VAL         [\old(methaneLevelCritical)=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2]
[L910]  COND FALSE  !(\read(methaneLevelCritical))
[L913]              methaneLevelCritical = 1
        VAL         [\old(methaneLevelCritical)=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L87]   RET         changeMethaneLevel()
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, splverifierCounter=0, systemActive=1, waterLevel=2]
[L93]               tmp___2 = __VERIFIER_nondet_int()
[L95]   COND TRUE   \read(tmp___2)
        VAL         [cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, splverifierCounter=0, systemActive=1, waterLevel=2]
[L110]  CALL        timeShift()
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L139]  COND FALSE  !(\read(pumpRunning))
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L146]  COND TRUE   \read(systemActive)
[L148]  CALL        processEnvironment()
[L194]              int tmp ;
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L197]  COND FALSE  !(\read(pumpRunning))
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L212]  CALL        processEnvironment__wrappee__highWaterSensor()
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L168]              int tmp ;
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L171]  COND TRUE   ! pumpRunning
[L173]  CALL, EXPR  isHighWaterLevel()
[L291]              int retValue_acc ;
[L292]              int tmp ;
[L293]              int tmp___0 ;
[L297]  CALL, EXPR  isHighWaterSensorDry()
[L960]              int retValue_acc ;
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L963]  COND FALSE  !(waterLevel < 2)
[L967]              retValue_acc = 0
[L968]              return (retValue_acc);
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, \result=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L297]  RET, EXPR   isHighWaterSensorDry()
[L297]              tmp = isHighWaterSensorDry()
[L299]  COND FALSE  !(\read(tmp))
[L302]              tmp___0 = 1
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, tmp___0=1, waterLevel=2]
[L304]              retValue_acc = tmp___0
[L305]              return (retValue_acc);
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, \result=1, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2]
[L173]  RET, EXPR   isHighWaterLevel()
[L173]              tmp = isHighWaterLevel()
[L175]  COND TRUE   \read(tmp)
[L177]  CALL        activatePump()
[L222]              pumpRunning = 1
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]
[L177]  RET         activatePump()
[L212]  RET         processEnvironment__wrappee__highWaterSensor()
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]
[L148]  RET         processEnvironment()
[L154]  CALL        __utac_acc__Specification1_spec__1()
[L758]              int tmp ;
[L759]              int tmp___0 ;
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]
[L763]  CALL, EXPR  isMethaneLevelCritical()
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]
[L919]              int retValue_acc ;
[L922]              retValue_acc = methaneLevelCritical
[L923]              return (retValue_acc);
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, \result=1, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]
[L763]  RET, EXPR   isMethaneLevelCritical()
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]
[L763]              tmp = isMethaneLevelCritical()
[L765]  COND TRUE   \read(tmp)
[L767]  CALL, EXPR  isPumpRunning()
[L246]              int retValue_acc ;
[L249]              retValue_acc = pumpRunning
[L250]              return (retValue_acc);
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, \result=1, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]
[L767]  RET, EXPR   isPumpRunning()
[L767]              tmp___0 = isPumpRunning()
[L769]  COND TRUE   \read(tmp___0)
[L771]  CALL        __automaton_fail()
[L714]              reach_error()
        VAL         [\old(pumpRunning)=0, \old(waterLevel)=2, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2]

  - StatisticsResult: Ultimate Automizer benchmark data
    CFG has 9 procedures, 91 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 2.1s, OverallIterations: 9, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 484 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 479 mSDsluCounter, 2373 SdHoareTripleChecker+Invalid, 0.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1527 mSDsCounter, 37 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 243 IncrementalHoareTripleChecker+Invalid, 280 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 37 mSolverCounterUnsat, 846 mSDtfsCounter, 243 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 44 GetRequests, 18 SyntacticMatches, 0 SemanticMatches, 26 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1171occurred in iteration=8, InterpolantAutomatonStates: 36, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.3s AutomataMinimizationTime, 8 MinimizatonAttempts, 22 StatesRemovedByMinimization, 3 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.6s InterpolantComputationTime, 321 NumberOfCodeBlocks, 321 NumberOfCodeBlocksAsserted, 9 NumberOfCheckSat, 264 ConstructedInterpolants, 0 QuantifiedInterpolants, 493 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 8 InterpolantComputations, 8 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available, ConComCheckerStatistics: No data available
RESULT: Ultimate proved your program to be incorrect!
[2024-12-02 10:14:11,539 INFO  L552       MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_40f22c90-eb9b-46fe-a3bb-7c62ecdd9b6b/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0
Received shutdown request...
--- End real Ultimate output ---

Execution finished normally
Writing output log to file Ultimate.log
Writing human readable error path to file UltimateCounterExample.errorpath
Result:
FALSE