./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product63.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a0165632 Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product63.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash bff509ff7af2b9788fd6216f7196709183d48c973cf9a066c9793f96467b2abf --- Real Ultimate output --- This is Ultimate 0.2.5-dev-a016563 [2024-11-09 05:43:03,639 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-11-09 05:43:03,723 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/config/svcomp-Reach-32bit-Taipan_Default.epf [2024-11-09 05:43:03,732 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-11-09 05:43:03,733 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-11-09 05:43:03,770 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-11-09 05:43:03,770 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-11-09 05:43:03,772 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-11-09 05:43:03,773 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-11-09 05:43:03,774 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-11-09 05:43:03,774 INFO L153 SettingsManager]: * User list type=DISABLED [2024-11-09 05:43:03,774 INFO L151 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2024-11-09 05:43:03,775 INFO L153 SettingsManager]: * Explicit value domain=true [2024-11-09 05:43:03,776 INFO L153 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2024-11-09 05:43:03,777 INFO L153 SettingsManager]: * Octagon Domain=false [2024-11-09 05:43:03,779 INFO L153 SettingsManager]: * Abstract domain=CompoundDomain [2024-11-09 05:43:03,779 INFO L153 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2024-11-09 05:43:03,780 INFO L153 SettingsManager]: * Use the RCFG-of-the-future interface=true [2024-11-09 05:43:03,780 INFO L153 SettingsManager]: * Interval Domain=false [2024-11-09 05:43:03,780 INFO L151 SettingsManager]: Preferences of Sifa differ from their defaults: [2024-11-09 05:43:03,780 INFO L153 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2024-11-09 05:43:03,785 INFO L153 SettingsManager]: * Simplification Technique=POLY_PAC [2024-11-09 05:43:03,785 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-11-09 05:43:03,786 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-11-09 05:43:03,786 INFO L153 SettingsManager]: * sizeof long=4 [2024-11-09 05:43:03,786 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-11-09 05:43:03,786 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-11-09 05:43:03,787 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-11-09 05:43:03,787 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-11-09 05:43:03,787 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-11-09 05:43:03,787 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-11-09 05:43:03,787 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-11-09 05:43:03,789 INFO L153 SettingsManager]: * sizeof long double=12 [2024-11-09 05:43:03,790 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-11-09 05:43:03,790 INFO L153 SettingsManager]: * Use constant arrays=true [2024-11-09 05:43:03,790 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-11-09 05:43:03,791 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-09 05:43:03,791 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-09 05:43:03,791 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2024-11-09 05:43:03,791 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-11-09 05:43:03,792 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-11-09 05:43:03,793 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-11-09 05:43:03,793 INFO L153 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2024-11-09 05:43:03,793 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-11-09 05:43:03,794 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-11-09 05:43:03,794 INFO L153 SettingsManager]: * Trace refinement exception blacklist=NONE [2024-11-09 05:43:03,794 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-11-09 05:43:03,794 INFO L153 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> bff509ff7af2b9788fd6216f7196709183d48c973cf9a066c9793f96467b2abf [2024-11-09 05:43:04,091 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-11-09 05:43:04,124 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-11-09 05:43:04,128 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-11-09 05:43:04,130 INFO L270 PluginConnector]: Initializing CDTParser... [2024-11-09 05:43:04,131 INFO L274 PluginConnector]: CDTParser initialized [2024-11-09 05:43:04,132 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/../../sv-benchmarks/c/product-lines/minepump_spec2_product63.cil.c Unable to find full path for "g++" [2024-11-09 05:43:06,185 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-11-09 05:43:06,406 INFO L384 CDTParser]: Found 1 translation units. [2024-11-09 05:43:06,407 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/sv-benchmarks/c/product-lines/minepump_spec2_product63.cil.c [2024-11-09 05:43:06,420 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/data/f1e1c1a55/2409670cf133441eafd1e61b0e835996/FLAG4a002a988 [2024-11-09 05:43:06,745 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/data/f1e1c1a55/2409670cf133441eafd1e61b0e835996 [2024-11-09 05:43:06,748 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-11-09 05:43:06,749 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-11-09 05:43:06,751 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-11-09 05:43:06,751 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-11-09 05:43:06,757 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-11-09 05:43:06,758 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 09.11 05:43:06" (1/1) ... [2024-11-09 05:43:06,759 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6e9cca16 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:06, skipping insertion in model container [2024-11-09 05:43:06,759 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 09.11 05:43:06" (1/1) ... [2024-11-09 05:43:06,828 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-11-09 05:43:07,066 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/sv-benchmarks/c/product-lines/minepump_spec2_product63.cil.c[2985,2998] [2024-11-09 05:43:07,203 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-09 05:43:07,214 INFO L200 MainTranslator]: Completed pre-run [2024-11-09 05:43:07,225 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [49] [2024-11-09 05:43:07,227 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [155] [2024-11-09 05:43:07,227 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [164] [2024-11-09 05:43:07,227 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [205] [2024-11-09 05:43:07,228 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [313] [2024-11-09 05:43:07,228 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [381] [2024-11-09 05:43:07,228 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [638] [2024-11-09 05:43:07,228 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [673] [2024-11-09 05:43:07,237 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/sv-benchmarks/c/product-lines/minepump_spec2_product63.cil.c[2985,2998] [2024-11-09 05:43:07,316 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-09 05:43:07,346 INFO L204 MainTranslator]: Completed translation [2024-11-09 05:43:07,346 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07 WrapperNode [2024-11-09 05:43:07,347 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-11-09 05:43:07,348 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-11-09 05:43:07,348 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-11-09 05:43:07,348 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-11-09 05:43:07,356 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,375 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,420 INFO L138 Inliner]: procedures = 59, calls = 107, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 227 [2024-11-09 05:43:07,420 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-11-09 05:43:07,421 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-11-09 05:43:07,421 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-11-09 05:43:07,421 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-11-09 05:43:07,435 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,435 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,437 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,438 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,449 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,457 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,465 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,466 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,473 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-11-09 05:43:07,474 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-11-09 05:43:07,474 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-11-09 05:43:07,475 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-11-09 05:43:07,476 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (1/1) ... [2024-11-09 05:43:07,490 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2024-11-09 05:43:07,507 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 05:43:07,523 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2024-11-09 05:43:07,527 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2024-11-09 05:43:07,559 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-11-09 05:43:07,559 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-11-09 05:43:07,559 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-11-09 05:43:07,559 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2024-11-09 05:43:07,560 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2024-11-09 05:43:07,560 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-11-09 05:43:07,560 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-11-09 05:43:07,560 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-11-09 05:43:07,560 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-11-09 05:43:07,561 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2024-11-09 05:43:07,561 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2024-11-09 05:43:07,561 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-11-09 05:43:07,561 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-11-09 05:43:07,561 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2024-11-09 05:43:07,562 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2024-11-09 05:43:07,562 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2024-11-09 05:43:07,562 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2024-11-09 05:43:07,562 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2024-11-09 05:43:07,562 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2024-11-09 05:43:07,563 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2024-11-09 05:43:07,563 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-11-09 05:43:07,563 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-11-09 05:43:07,563 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-11-09 05:43:07,563 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-11-09 05:43:07,673 INFO L238 CfgBuilder]: Building ICFG [2024-11-09 05:43:07,677 INFO L264 CfgBuilder]: Building CFG for each procedure with an implementation [2024-11-09 05:43:08,068 INFO L? ?]: Removed 50 outVars from TransFormulas that were not future-live. [2024-11-09 05:43:08,069 INFO L287 CfgBuilder]: Performing block encoding [2024-11-09 05:43:08,207 INFO L311 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-11-09 05:43:08,207 INFO L316 CfgBuilder]: Removed 2 assume(true) statements. [2024-11-09 05:43:08,208 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 05:43:08 BoogieIcfgContainer [2024-11-09 05:43:08,208 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-11-09 05:43:08,211 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-11-09 05:43:08,211 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-11-09 05:43:08,214 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-11-09 05:43:08,215 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 09.11 05:43:06" (1/3) ... [2024-11-09 05:43:08,216 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4abb1834 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 09.11 05:43:08, skipping insertion in model container [2024-11-09 05:43:08,216 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 05:43:07" (2/3) ... [2024-11-09 05:43:08,216 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4abb1834 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 09.11 05:43:08, skipping insertion in model container [2024-11-09 05:43:08,216 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 05:43:08" (3/3) ... [2024-11-09 05:43:08,218 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product63.cil.c [2024-11-09 05:43:08,237 INFO L214 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-11-09 05:43:08,238 INFO L154 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-11-09 05:43:08,320 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-11-09 05:43:08,327 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@73f744b, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-11-09 05:43:08,327 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-11-09 05:43:08,331 INFO L276 IsEmpty]: Start isEmpty. Operand has 80 states, 49 states have (on average 1.4285714285714286) internal successors, (70), 60 states have internal predecessors, (70), 19 states have call successors, (19), 10 states have call predecessors, (19), 10 states have return successors, (19), 14 states have call predecessors, (19), 19 states have call successors, (19) [2024-11-09 05:43:08,340 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-11-09 05:43:08,340 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:08,341 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:08,342 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:08,347 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:08,347 INFO L85 PathProgramCache]: Analyzing trace with hash -2017066584, now seen corresponding path program 1 times [2024-11-09 05:43:08,358 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:08,359 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2134846024] [2024-11-09 05:43:08,360 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:08,360 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:08,497 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:08,598 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 05:43:08,602 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:08,606 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2134846024] [2024-11-09 05:43:08,607 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2134846024] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 05:43:08,607 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 05:43:08,607 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-09 05:43:08,612 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1549412407] [2024-11-09 05:43:08,612 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:08,618 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-11-09 05:43:08,619 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:08,649 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-11-09 05:43:08,651 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-09 05:43:08,654 INFO L87 Difference]: Start difference. First operand has 80 states, 49 states have (on average 1.4285714285714286) internal successors, (70), 60 states have internal predecessors, (70), 19 states have call successors, (19), 10 states have call predecessors, (19), 10 states have return successors, (19), 14 states have call predecessors, (19), 19 states have call successors, (19) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:08,748 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:08,751 INFO L93 Difference]: Finished difference Result 158 states and 217 transitions. [2024-11-09 05:43:08,753 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-11-09 05:43:08,754 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-11-09 05:43:08,755 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:08,766 INFO L225 Difference]: With dead ends: 158 [2024-11-09 05:43:08,766 INFO L226 Difference]: Without dead ends: 75 [2024-11-09 05:43:08,770 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-09 05:43:08,775 INFO L432 NwaCegarLoop]: 87 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 87 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:08,776 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 87 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 05:43:08,793 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 75 states. [2024-11-09 05:43:08,816 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 75 to 75. [2024-11-09 05:43:08,817 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 75 states, 46 states have (on average 1.3478260869565217) internal successors, (62), 56 states have internal predecessors, (62), 19 states have call successors, (19), 10 states have call predecessors, (19), 9 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2024-11-09 05:43:08,820 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 75 states to 75 states and 99 transitions. [2024-11-09 05:43:08,822 INFO L78 Accepts]: Start accepts. Automaton has 75 states and 99 transitions. Word has length 17 [2024-11-09 05:43:08,822 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:08,822 INFO L471 AbstractCegarLoop]: Abstraction has 75 states and 99 transitions. [2024-11-09 05:43:08,823 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:08,823 INFO L276 IsEmpty]: Start isEmpty. Operand 75 states and 99 transitions. [2024-11-09 05:43:08,825 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-11-09 05:43:08,825 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:08,825 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:08,826 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-11-09 05:43:08,826 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:08,827 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:08,827 INFO L85 PathProgramCache]: Analyzing trace with hash -931900947, now seen corresponding path program 1 times [2024-11-09 05:43:08,827 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:08,827 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1025196405] [2024-11-09 05:43:08,828 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:08,828 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:08,846 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:08,967 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 05:43:08,967 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:08,967 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1025196405] [2024-11-09 05:43:08,968 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1025196405] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 05:43:08,968 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 05:43:08,968 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-09 05:43:08,968 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1776715631] [2024-11-09 05:43:08,968 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:08,969 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-09 05:43:08,971 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:08,971 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-09 05:43:08,972 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 05:43:08,972 INFO L87 Difference]: Start difference. First operand 75 states and 99 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:09,060 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:09,061 INFO L93 Difference]: Finished difference Result 122 states and 160 transitions. [2024-11-09 05:43:09,062 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-09 05:43:09,063 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2024-11-09 05:43:09,063 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:09,065 INFO L225 Difference]: With dead ends: 122 [2024-11-09 05:43:09,067 INFO L226 Difference]: Without dead ends: 67 [2024-11-09 05:43:09,068 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 05:43:09,070 INFO L432 NwaCegarLoop]: 73 mSDtfsCounter, 14 mSDsluCounter, 56 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 129 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:09,072 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 129 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 05:43:09,073 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 67 states. [2024-11-09 05:43:09,085 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 67 to 67. [2024-11-09 05:43:09,085 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 67 states, 41 states have (on average 1.3658536585365855) internal successors, (56), 51 states have internal predecessors, (56), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) [2024-11-09 05:43:09,087 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 67 states to 67 states and 88 transitions. [2024-11-09 05:43:09,087 INFO L78 Accepts]: Start accepts. Automaton has 67 states and 88 transitions. Word has length 18 [2024-11-09 05:43:09,088 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:09,092 INFO L471 AbstractCegarLoop]: Abstraction has 67 states and 88 transitions. [2024-11-09 05:43:09,092 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:09,092 INFO L276 IsEmpty]: Start isEmpty. Operand 67 states and 88 transitions. [2024-11-09 05:43:09,093 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2024-11-09 05:43:09,093 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:09,093 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:09,094 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-11-09 05:43:09,094 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:09,095 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:09,095 INFO L85 PathProgramCache]: Analyzing trace with hash -978668501, now seen corresponding path program 1 times [2024-11-09 05:43:09,095 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:09,095 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [722973482] [2024-11-09 05:43:09,098 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:09,099 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:09,137 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:09,269 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 05:43:09,270 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:09,270 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [722973482] [2024-11-09 05:43:09,274 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [722973482] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 05:43:09,274 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 05:43:09,274 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-09 05:43:09,274 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1289359123] [2024-11-09 05:43:09,275 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:09,275 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-09 05:43:09,275 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:09,276 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-09 05:43:09,276 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 05:43:09,277 INFO L87 Difference]: Start difference. First operand 67 states and 88 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:09,382 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:09,383 INFO L93 Difference]: Finished difference Result 197 states and 261 transitions. [2024-11-09 05:43:09,383 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-09 05:43:09,383 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 21 [2024-11-09 05:43:09,384 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:09,386 INFO L225 Difference]: With dead ends: 197 [2024-11-09 05:43:09,386 INFO L226 Difference]: Without dead ends: 132 [2024-11-09 05:43:09,387 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 05:43:09,388 INFO L432 NwaCegarLoop]: 88 mSDtfsCounter, 75 mSDsluCounter, 71 mSDsCounter, 0 mSdLazyCounter, 34 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 75 SdHoareTripleChecker+Valid, 159 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 34 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:09,389 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [75 Valid, 159 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 34 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 05:43:09,390 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 132 states. [2024-11-09 05:43:09,417 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 132 to 129. [2024-11-09 05:43:09,418 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 129 states, 78 states have (on average 1.3717948717948718) internal successors, (107), 97 states have internal predecessors, (107), 32 states have call successors, (32), 18 states have call predecessors, (32), 18 states have return successors, (32), 21 states have call predecessors, (32), 32 states have call successors, (32) [2024-11-09 05:43:09,420 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 129 states to 129 states and 171 transitions. [2024-11-09 05:43:09,421 INFO L78 Accepts]: Start accepts. Automaton has 129 states and 171 transitions. Word has length 21 [2024-11-09 05:43:09,421 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:09,421 INFO L471 AbstractCegarLoop]: Abstraction has 129 states and 171 transitions. [2024-11-09 05:43:09,422 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:09,422 INFO L276 IsEmpty]: Start isEmpty. Operand 129 states and 171 transitions. [2024-11-09 05:43:09,423 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-11-09 05:43:09,424 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:09,424 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:09,424 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-11-09 05:43:09,424 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:09,425 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:09,425 INFO L85 PathProgramCache]: Analyzing trace with hash -1948714603, now seen corresponding path program 1 times [2024-11-09 05:43:09,426 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:09,426 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [905590977] [2024-11-09 05:43:09,426 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:09,426 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:09,442 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:09,521 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 05:43:09,521 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:09,521 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [905590977] [2024-11-09 05:43:09,522 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [905590977] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 05:43:09,522 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 05:43:09,522 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-09 05:43:09,522 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [883480193] [2024-11-09 05:43:09,522 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:09,523 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-09 05:43:09,523 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:09,524 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-09 05:43:09,524 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-09 05:43:09,524 INFO L87 Difference]: Start difference. First operand 129 states and 171 transitions. Second operand has 4 states, 4 states have (on average 5.25) internal successors, (21), 4 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:09,644 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:09,644 INFO L93 Difference]: Finished difference Result 342 states and 463 transitions. [2024-11-09 05:43:09,644 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-09 05:43:09,645 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.25) internal successors, (21), 4 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2024-11-09 05:43:09,645 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:09,647 INFO L225 Difference]: With dead ends: 342 [2024-11-09 05:43:09,647 INFO L226 Difference]: Without dead ends: 215 [2024-11-09 05:43:09,649 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-11-09 05:43:09,650 INFO L432 NwaCegarLoop]: 71 mSDtfsCounter, 47 mSDsluCounter, 125 mSDsCounter, 0 mSdLazyCounter, 53 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 196 SdHoareTripleChecker+Invalid, 62 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 53 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:09,650 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [47 Valid, 196 Invalid, 62 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 53 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 05:43:09,651 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 215 states. [2024-11-09 05:43:09,709 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 215 to 214. [2024-11-09 05:43:09,711 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 214 states, 137 states have (on average 1.2919708029197081) internal successors, (177), 154 states have internal predecessors, (177), 42 states have call successors, (42), 34 states have call predecessors, (42), 34 states have return successors, (54), 37 states have call predecessors, (54), 42 states have call successors, (54) [2024-11-09 05:43:09,716 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 214 states to 214 states and 273 transitions. [2024-11-09 05:43:09,721 INFO L78 Accepts]: Start accepts. Automaton has 214 states and 273 transitions. Word has length 24 [2024-11-09 05:43:09,721 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:09,721 INFO L471 AbstractCegarLoop]: Abstraction has 214 states and 273 transitions. [2024-11-09 05:43:09,722 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.25) internal successors, (21), 4 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 05:43:09,722 INFO L276 IsEmpty]: Start isEmpty. Operand 214 states and 273 transitions. [2024-11-09 05:43:09,723 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-11-09 05:43:09,723 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:09,724 INFO L215 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:09,724 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-11-09 05:43:09,724 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:09,728 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:09,728 INFO L85 PathProgramCache]: Analyzing trace with hash -1195013702, now seen corresponding path program 1 times [2024-11-09 05:43:09,728 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:09,728 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [346161685] [2024-11-09 05:43:09,729 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:09,729 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:09,749 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:09,818 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-11-09 05:43:09,818 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:09,818 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [346161685] [2024-11-09 05:43:09,819 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [346161685] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 05:43:09,819 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 05:43:09,819 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-09 05:43:09,819 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1096960903] [2024-11-09 05:43:09,819 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:09,820 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-09 05:43:09,820 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:09,820 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-09 05:43:09,820 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 05:43:09,821 INFO L87 Difference]: Start difference. First operand 214 states and 273 transitions. Second operand has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-11-09 05:43:09,938 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:09,939 INFO L93 Difference]: Finished difference Result 389 states and 506 transitions. [2024-11-09 05:43:09,940 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-09 05:43:09,940 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 42 [2024-11-09 05:43:09,941 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:09,949 INFO L225 Difference]: With dead ends: 389 [2024-11-09 05:43:09,949 INFO L226 Difference]: Without dead ends: 387 [2024-11-09 05:43:09,950 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 05:43:09,951 INFO L432 NwaCegarLoop]: 89 mSDtfsCounter, 64 mSDsluCounter, 69 mSDsCounter, 0 mSdLazyCounter, 32 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 158 SdHoareTripleChecker+Invalid, 37 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 32 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:09,952 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 158 Invalid, 37 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 32 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 05:43:09,957 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 387 states. [2024-11-09 05:43:10,057 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 387 to 381. [2024-11-09 05:43:10,058 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 381 states, 239 states have (on average 1.284518828451883) internal successors, (307), 270 states have internal predecessors, (307), 79 states have call successors, (79), 63 states have call predecessors, (79), 62 states have return successors, (109), 66 states have call predecessors, (109), 79 states have call successors, (109) [2024-11-09 05:43:10,062 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 381 states to 381 states and 495 transitions. [2024-11-09 05:43:10,063 INFO L78 Accepts]: Start accepts. Automaton has 381 states and 495 transitions. Word has length 42 [2024-11-09 05:43:10,063 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:10,063 INFO L471 AbstractCegarLoop]: Abstraction has 381 states and 495 transitions. [2024-11-09 05:43:10,064 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-11-09 05:43:10,064 INFO L276 IsEmpty]: Start isEmpty. Operand 381 states and 495 transitions. [2024-11-09 05:43:10,067 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2024-11-09 05:43:10,071 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:10,071 INFO L215 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:10,071 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-11-09 05:43:10,071 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:10,072 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:10,072 INFO L85 PathProgramCache]: Analyzing trace with hash -1312249852, now seen corresponding path program 1 times [2024-11-09 05:43:10,072 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:10,072 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1938624677] [2024-11-09 05:43:10,073 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:10,073 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:10,103 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:10,178 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 16 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-11-09 05:43:10,178 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:10,178 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1938624677] [2024-11-09 05:43:10,180 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1938624677] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 05:43:10,181 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 05:43:10,181 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-09 05:43:10,181 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [327450822] [2024-11-09 05:43:10,181 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:10,182 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-09 05:43:10,182 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:10,183 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-09 05:43:10,183 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-09 05:43:10,183 INFO L87 Difference]: Start difference. First operand 381 states and 495 transitions. Second operand has 4 states, 3 states have (on average 16.0) internal successors, (48), 4 states have internal predecessors, (48), 4 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 4 states have call successors, (7) [2024-11-09 05:43:10,373 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:10,374 INFO L93 Difference]: Finished difference Result 421 states and 548 transitions. [2024-11-09 05:43:10,376 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-09 05:43:10,377 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 3 states have (on average 16.0) internal successors, (48), 4 states have internal predecessors, (48), 4 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 4 states have call successors, (7) Word has length 65 [2024-11-09 05:43:10,377 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:10,379 INFO L225 Difference]: With dead ends: 421 [2024-11-09 05:43:10,379 INFO L226 Difference]: Without dead ends: 185 [2024-11-09 05:43:10,384 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-09 05:43:10,385 INFO L432 NwaCegarLoop]: 95 mSDtfsCounter, 106 mSDsluCounter, 55 mSDsCounter, 0 mSdLazyCounter, 90 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 106 SdHoareTripleChecker+Valid, 150 SdHoareTripleChecker+Invalid, 92 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 90 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:10,386 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [106 Valid, 150 Invalid, 92 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 90 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 05:43:10,390 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 185 states. [2024-11-09 05:43:10,425 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 185 to 185. [2024-11-09 05:43:10,426 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 185 states, 116 states have (on average 1.2327586206896552) internal successors, (143), 130 states have internal predecessors, (143), 37 states have call successors, (37), 31 states have call predecessors, (37), 31 states have return successors, (51), 32 states have call predecessors, (51), 37 states have call successors, (51) [2024-11-09 05:43:10,427 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 185 states to 185 states and 231 transitions. [2024-11-09 05:43:10,428 INFO L78 Accepts]: Start accepts. Automaton has 185 states and 231 transitions. Word has length 65 [2024-11-09 05:43:10,430 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:10,430 INFO L471 AbstractCegarLoop]: Abstraction has 185 states and 231 transitions. [2024-11-09 05:43:10,431 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 3 states have (on average 16.0) internal successors, (48), 4 states have internal predecessors, (48), 4 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 4 states have call successors, (7) [2024-11-09 05:43:10,431 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 231 transitions. [2024-11-09 05:43:10,434 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 84 [2024-11-09 05:43:10,434 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:10,435 INFO L215 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:10,435 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-11-09 05:43:10,435 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:10,436 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:10,436 INFO L85 PathProgramCache]: Analyzing trace with hash -695705705, now seen corresponding path program 1 times [2024-11-09 05:43:10,436 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:10,437 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2015078874] [2024-11-09 05:43:10,437 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:10,437 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:10,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:11,006 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 8 proven. 23 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-11-09 05:43:11,008 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:11,009 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2015078874] [2024-11-09 05:43:11,009 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2015078874] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 05:43:11,009 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [363142561] [2024-11-09 05:43:11,009 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:11,009 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:11,010 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 05:43:11,011 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 05:43:11,017 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-11-09 05:43:11,142 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:11,145 INFO L255 TraceCheckSpWp]: Trace formula consists of 294 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-11-09 05:43:11,155 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 05:43:11,686 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 31 proven. 4 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-11-09 05:43:11,687 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-09 05:43:12,198 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 18 proven. 0 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-11-09 05:43:12,198 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [363142561] provided 1 perfect and 1 imperfect interpolant sequences [2024-11-09 05:43:12,198 INFO L185 FreeRefinementEngine]: Found 1 perfect and 2 imperfect interpolant sequences. [2024-11-09 05:43:12,198 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [10, 7] total 20 [2024-11-09 05:43:12,199 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1893183209] [2024-11-09 05:43:12,199 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:12,199 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-11-09 05:43:12,199 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:12,200 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-11-09 05:43:12,200 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=65, Invalid=315, Unknown=0, NotChecked=0, Total=380 [2024-11-09 05:43:12,204 INFO L87 Difference]: Start difference. First operand 185 states and 231 transitions. Second operand has 8 states, 8 states have (on average 5.625) internal successors, (45), 8 states have internal predecessors, (45), 5 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (10), 5 states have call predecessors, (10), 5 states have call successors, (10) [2024-11-09 05:43:12,736 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:12,737 INFO L93 Difference]: Finished difference Result 520 states and 677 transitions. [2024-11-09 05:43:12,737 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-11-09 05:43:12,737 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 5.625) internal successors, (45), 8 states have internal predecessors, (45), 5 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (10), 5 states have call predecessors, (10), 5 states have call successors, (10) Word has length 83 [2024-11-09 05:43:12,738 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:12,741 INFO L225 Difference]: With dead ends: 520 [2024-11-09 05:43:12,741 INFO L226 Difference]: Without dead ends: 337 [2024-11-09 05:43:12,742 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 184 GetRequests, 155 SyntacticMatches, 8 SemanticMatches, 21 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 151 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=86, Invalid=420, Unknown=0, NotChecked=0, Total=506 [2024-11-09 05:43:12,743 INFO L432 NwaCegarLoop]: 75 mSDtfsCounter, 211 mSDsluCounter, 125 mSDsCounter, 0 mSdLazyCounter, 216 mSolverCounterSat, 101 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 215 SdHoareTripleChecker+Valid, 200 SdHoareTripleChecker+Invalid, 317 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 101 IncrementalHoareTripleChecker+Valid, 216 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:12,744 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [215 Valid, 200 Invalid, 317 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [101 Valid, 216 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-11-09 05:43:12,745 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 337 states. [2024-11-09 05:43:12,790 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 337 to 297. [2024-11-09 05:43:12,791 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 297 states, 194 states have (on average 1.2268041237113403) internal successors, (238), 210 states have internal predecessors, (238), 51 states have call successors, (51), 47 states have call predecessors, (51), 51 states have return successors, (79), 49 states have call predecessors, (79), 51 states have call successors, (79) [2024-11-09 05:43:12,793 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 297 states to 297 states and 368 transitions. [2024-11-09 05:43:12,794 INFO L78 Accepts]: Start accepts. Automaton has 297 states and 368 transitions. Word has length 83 [2024-11-09 05:43:12,794 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:12,795 INFO L471 AbstractCegarLoop]: Abstraction has 297 states and 368 transitions. [2024-11-09 05:43:12,795 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 5.625) internal successors, (45), 8 states have internal predecessors, (45), 5 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (10), 5 states have call predecessors, (10), 5 states have call successors, (10) [2024-11-09 05:43:12,795 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 368 transitions. [2024-11-09 05:43:12,797 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 87 [2024-11-09 05:43:12,797 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:12,798 INFO L215 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:12,820 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2024-11-09 05:43:13,002 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:13,002 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:13,003 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:13,003 INFO L85 PathProgramCache]: Analyzing trace with hash -214835294, now seen corresponding path program 1 times [2024-11-09 05:43:13,003 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:13,004 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [157407789] [2024-11-09 05:43:13,004 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:13,004 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:13,024 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:13,319 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 8 proven. 23 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-11-09 05:43:13,319 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:13,320 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [157407789] [2024-11-09 05:43:13,320 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [157407789] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 05:43:13,320 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1439824507] [2024-11-09 05:43:13,320 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:13,320 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:13,320 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 05:43:13,326 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 05:43:13,329 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-11-09 05:43:13,433 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:13,436 INFO L255 TraceCheckSpWp]: Trace formula consists of 300 conjuncts, 9 conjuncts are in the unsatisfiable core [2024-11-09 05:43:13,439 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 05:43:13,637 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 5 proven. 2 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2024-11-09 05:43:13,637 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-09 05:43:13,830 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-11-09 05:43:13,831 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1439824507] provided 1 perfect and 1 imperfect interpolant sequences [2024-11-09 05:43:13,831 INFO L185 FreeRefinementEngine]: Found 1 perfect and 2 imperfect interpolant sequences. [2024-11-09 05:43:13,832 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10, 5] total 15 [2024-11-09 05:43:13,833 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [837330052] [2024-11-09 05:43:13,833 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:13,833 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-09 05:43:13,833 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:13,834 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-09 05:43:13,834 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=35, Invalid=175, Unknown=0, NotChecked=0, Total=210 [2024-11-09 05:43:13,834 INFO L87 Difference]: Start difference. First operand 297 states and 368 transitions. Second operand has 6 states, 5 states have (on average 8.6) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (9), 3 states have call predecessors, (9), 2 states have call successors, (9) [2024-11-09 05:43:14,076 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:14,077 INFO L93 Difference]: Finished difference Result 759 states and 949 transitions. [2024-11-09 05:43:14,078 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-09 05:43:14,078 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 8.6) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (9), 3 states have call predecessors, (9), 2 states have call successors, (9) Word has length 86 [2024-11-09 05:43:14,079 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:14,082 INFO L225 Difference]: With dead ends: 759 [2024-11-09 05:43:14,083 INFO L226 Difference]: Without dead ends: 464 [2024-11-09 05:43:14,084 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 187 GetRequests, 171 SyntacticMatches, 1 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 46 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=43, Invalid=229, Unknown=0, NotChecked=0, Total=272 [2024-11-09 05:43:14,085 INFO L432 NwaCegarLoop]: 65 mSDtfsCounter, 52 mSDsluCounter, 226 mSDsCounter, 0 mSdLazyCounter, 111 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 291 SdHoareTripleChecker+Invalid, 112 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 111 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:14,088 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 291 Invalid, 112 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 111 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 05:43:14,089 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 464 states. [2024-11-09 05:43:14,179 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 464 to 452. [2024-11-09 05:43:14,181 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 452 states, 299 states have (on average 1.2107023411371238) internal successors, (362), 319 states have internal predecessors, (362), 76 states have call successors, (76), 70 states have call predecessors, (76), 76 states have return successors, (115), 74 states have call predecessors, (115), 76 states have call successors, (115) [2024-11-09 05:43:14,184 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 452 states to 452 states and 553 transitions. [2024-11-09 05:43:14,185 INFO L78 Accepts]: Start accepts. Automaton has 452 states and 553 transitions. Word has length 86 [2024-11-09 05:43:14,185 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:14,185 INFO L471 AbstractCegarLoop]: Abstraction has 452 states and 553 transitions. [2024-11-09 05:43:14,186 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 8.6) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (9), 3 states have call predecessors, (9), 2 states have call successors, (9) [2024-11-09 05:43:14,186 INFO L276 IsEmpty]: Start isEmpty. Operand 452 states and 553 transitions. [2024-11-09 05:43:14,188 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 90 [2024-11-09 05:43:14,190 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:14,190 INFO L215 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:14,213 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-11-09 05:43:14,391 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:14,391 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:14,392 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:14,392 INFO L85 PathProgramCache]: Analyzing trace with hash 1405605229, now seen corresponding path program 1 times [2024-11-09 05:43:14,392 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:14,393 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [747430965] [2024-11-09 05:43:14,393 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:14,393 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:14,415 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:14,912 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 19 proven. 18 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-11-09 05:43:14,912 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:14,912 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [747430965] [2024-11-09 05:43:14,912 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [747430965] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 05:43:14,912 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [90272004] [2024-11-09 05:43:14,913 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:14,913 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:14,913 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 05:43:14,915 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 05:43:14,917 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-11-09 05:43:15,022 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:15,027 INFO L255 TraceCheckSpWp]: Trace formula consists of 306 conjuncts, 26 conjuncts are in the unsatisfiable core [2024-11-09 05:43:15,031 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 05:43:15,920 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 25 proven. 9 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-11-09 05:43:15,920 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-09 05:43:16,950 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 29 proven. 1 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-11-09 05:43:16,950 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [90272004] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-09 05:43:16,951 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1202479229] [2024-11-09 05:43:16,975 INFO L159 IcfgInterpreter]: Started Sifa with 49 locations of interest [2024-11-09 05:43:16,975 INFO L166 IcfgInterpreter]: Building call graph [2024-11-09 05:43:16,979 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2024-11-09 05:43:16,984 INFO L176 IcfgInterpreter]: Starting interpretation [2024-11-09 05:43:16,985 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2024-11-09 05:43:21,509 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 133 for LOIs [2024-11-09 05:43:21,580 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 15 for LOIs [2024-11-09 05:43:21,681 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__methaneQuery with input of size 13 for LOIs [2024-11-09 05:43:21,705 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 13 for LOIs [2024-11-09 05:43:21,746 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneAlarm with input of size 14 for LOIs [2024-11-09 05:43:21,767 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 36 for LOIs [2024-11-09 05:43:21,783 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 140 for LOIs [2024-11-09 05:43:21,912 INFO L180 IcfgInterpreter]: Interpretation finished [2024-11-09 05:43:31,532 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSifa [1202479229] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 05:43:31,532 INFO L185 FreeRefinementEngine]: Found 1 perfect and 3 imperfect interpolant sequences. [2024-11-09 05:43:31,533 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [30] imperfect sequences [15, 16, 13] total 65 [2024-11-09 05:43:31,533 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1838720332] [2024-11-09 05:43:31,533 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 05:43:31,534 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-11-09 05:43:31,534 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:31,535 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-11-09 05:43:31,537 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=608, Invalid=3552, Unknown=0, NotChecked=0, Total=4160 [2024-11-09 05:43:31,537 INFO L87 Difference]: Start difference. First operand 452 states and 553 transitions. Second operand has 31 states, 25 states have (on average 1.44) internal successors, (36), 23 states have internal predecessors, (36), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) [2024-11-09 05:43:42,810 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:42,811 INFO L93 Difference]: Finished difference Result 1098 states and 1350 transitions. [2024-11-09 05:43:42,812 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 48 states. [2024-11-09 05:43:42,812 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 25 states have (on average 1.44) internal successors, (36), 23 states have internal predecessors, (36), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) Word has length 89 [2024-11-09 05:43:42,813 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:42,818 INFO L225 Difference]: With dead ends: 1098 [2024-11-09 05:43:42,818 INFO L226 Difference]: Without dead ends: 648 [2024-11-09 05:43:42,822 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 314 GetRequests, 212 SyntacticMatches, 10 SemanticMatches, 92 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3137 ImplicationChecksByTransitivity, 18.0s TimeCoverageRelationStatistics Valid=1402, Invalid=7340, Unknown=0, NotChecked=0, Total=8742 [2024-11-09 05:43:42,824 INFO L432 NwaCegarLoop]: 32 mSDtfsCounter, 431 mSDsluCounter, 350 mSDsCounter, 0 mSdLazyCounter, 1951 mSolverCounterSat, 314 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 439 SdHoareTripleChecker+Valid, 382 SdHoareTripleChecker+Invalid, 2265 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 314 IncrementalHoareTripleChecker+Valid, 1951 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.4s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:42,825 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [439 Valid, 382 Invalid, 2265 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [314 Valid, 1951 Invalid, 0 Unknown, 0 Unchecked, 3.4s Time] [2024-11-09 05:43:42,826 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 648 states. [2024-11-09 05:43:42,960 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 648 to 581. [2024-11-09 05:43:42,961 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 581 states, 384 states have (on average 1.1770833333333333) internal successors, (452), 408 states have internal predecessors, (452), 96 states have call successors, (96), 90 states have call predecessors, (96), 100 states have return successors, (142), 95 states have call predecessors, (142), 96 states have call successors, (142) [2024-11-09 05:43:42,965 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 581 states to 581 states and 690 transitions. [2024-11-09 05:43:42,966 INFO L78 Accepts]: Start accepts. Automaton has 581 states and 690 transitions. Word has length 89 [2024-11-09 05:43:42,968 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:42,968 INFO L471 AbstractCegarLoop]: Abstraction has 581 states and 690 transitions. [2024-11-09 05:43:42,968 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 25 states have (on average 1.44) internal successors, (36), 23 states have internal predecessors, (36), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 8 states have call predecessors, (8), 8 states have call successors, (8) [2024-11-09 05:43:42,968 INFO L276 IsEmpty]: Start isEmpty. Operand 581 states and 690 transitions. [2024-11-09 05:43:42,971 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 137 [2024-11-09 05:43:42,974 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:42,974 INFO L215 NwaCegarLoop]: trace histogram [6, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:42,994 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-11-09 05:43:43,179 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:43,179 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:43,179 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:43,179 INFO L85 PathProgramCache]: Analyzing trace with hash -1382749180, now seen corresponding path program 1 times [2024-11-09 05:43:43,180 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:43,180 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1797798818] [2024-11-09 05:43:43,180 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:43,180 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:43,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:43,361 INFO L134 CoverageAnalysis]: Checked inductivity of 127 backedges. 49 proven. 7 refuted. 0 times theorem prover too weak. 71 trivial. 0 not checked. [2024-11-09 05:43:43,362 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:43,363 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1797798818] [2024-11-09 05:43:43,363 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1797798818] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 05:43:43,363 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [129168886] [2024-11-09 05:43:43,363 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:43,363 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:43,363 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 05:43:43,365 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 05:43:43,368 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-11-09 05:43:43,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:43,496 INFO L255 TraceCheckSpWp]: Trace formula consists of 412 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-11-09 05:43:43,503 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 05:43:43,985 INFO L134 CoverageAnalysis]: Checked inductivity of 127 backedges. 95 proven. 15 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-11-09 05:43:43,986 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-09 05:43:44,661 INFO L134 CoverageAnalysis]: Checked inductivity of 127 backedges. 50 proven. 7 refuted. 0 times theorem prover too weak. 70 trivial. 0 not checked. [2024-11-09 05:43:44,661 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [129168886] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-09 05:43:44,662 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [500060053] [2024-11-09 05:43:44,665 INFO L159 IcfgInterpreter]: Started Sifa with 58 locations of interest [2024-11-09 05:43:44,665 INFO L166 IcfgInterpreter]: Building call graph [2024-11-09 05:43:44,666 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2024-11-09 05:43:44,666 INFO L176 IcfgInterpreter]: Starting interpretation [2024-11-09 05:43:44,666 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2024-11-09 05:43:46,852 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 15 for LOIs [2024-11-09 05:43:46,856 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 31 for LOIs [2024-11-09 05:43:47,012 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__methaneQuery with input of size 3 for LOIs [2024-11-09 05:43:47,041 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 17 for LOIs [2024-11-09 05:43:47,091 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneAlarm with input of size 3 for LOIs [2024-11-09 05:43:47,099 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 3 for LOIs [2024-11-09 05:43:47,100 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 22 for LOIs [2024-11-09 05:43:47,105 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 9 for LOIs [2024-11-09 05:43:47,107 INFO L180 IcfgInterpreter]: Interpretation finished [2024-11-09 05:43:49,821 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '12411#(and (not (= ~pumpRunning~0 0)) (<= ~pumpRunning~0 2147483647) (not (= ~methaneLevelCritical~0 0)) (<= 0 ~methAndRunningLastTime~0) (<= 0 |old(~methAndRunningLastTime~0)|) (<= 0 (+ ~pumpRunning~0 2147483648)) (<= ~methaneLevelCritical~0 2147483647) (<= 0 (+ ~methaneLevelCritical~0 2147483648)) (not (= ~methAndRunningLastTime~0 0)))' at error location [2024-11-09 05:43:49,821 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2024-11-09 05:43:49,821 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-09 05:43:49,822 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 14, 14] total 29 [2024-11-09 05:43:49,822 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1299453237] [2024-11-09 05:43:49,822 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-09 05:43:49,823 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-11-09 05:43:49,823 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:43:49,824 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-11-09 05:43:49,825 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=420, Invalid=4136, Unknown=0, NotChecked=0, Total=4556 [2024-11-09 05:43:49,825 INFO L87 Difference]: Start difference. First operand 581 states and 690 transitions. Second operand has 29 states, 26 states have (on average 5.923076923076923) internal successors, (154), 25 states have internal predecessors, (154), 14 states have call successors, (44), 9 states have call predecessors, (44), 13 states have return successors, (43), 13 states have call predecessors, (43), 14 states have call successors, (43) [2024-11-09 05:43:54,976 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:43:54,976 INFO L93 Difference]: Finished difference Result 2820 states and 3536 transitions. [2024-11-09 05:43:54,976 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 103 states. [2024-11-09 05:43:54,977 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 26 states have (on average 5.923076923076923) internal successors, (154), 25 states have internal predecessors, (154), 14 states have call successors, (44), 9 states have call predecessors, (44), 13 states have return successors, (43), 13 states have call predecessors, (43), 14 states have call successors, (43) Word has length 136 [2024-11-09 05:43:54,977 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:43:54,991 INFO L225 Difference]: With dead ends: 2820 [2024-11-09 05:43:54,991 INFO L226 Difference]: Without dead ends: 2295 [2024-11-09 05:43:55,001 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 551 GetRequests, 374 SyntacticMatches, 12 SemanticMatches, 165 ConstructedPredicates, 0 IntricatePredicates, 1 DeprecatedPredicates, 10864 ImplicationChecksByTransitivity, 5.3s TimeCoverageRelationStatistics Valid=2320, Invalid=25402, Unknown=0, NotChecked=0, Total=27722 [2024-11-09 05:43:55,002 INFO L432 NwaCegarLoop]: 156 mSDtfsCounter, 1231 mSDsluCounter, 1164 mSDsCounter, 0 mSdLazyCounter, 3155 mSolverCounterSat, 1139 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1235 SdHoareTripleChecker+Valid, 1320 SdHoareTripleChecker+Invalid, 4294 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1139 IncrementalHoareTripleChecker+Valid, 3155 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.4s IncrementalHoareTripleChecker+Time [2024-11-09 05:43:55,003 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [1235 Valid, 1320 Invalid, 4294 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1139 Valid, 3155 Invalid, 0 Unknown, 0 Unchecked, 2.4s Time] [2024-11-09 05:43:55,006 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2295 states. [2024-11-09 05:43:55,368 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2295 to 2221. [2024-11-09 05:43:55,372 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2221 states, 1478 states have (on average 1.1495263870094723) internal successors, (1699), 1562 states have internal predecessors, (1699), 381 states have call successors, (381), 321 states have call predecessors, (381), 361 states have return successors, (556), 370 states have call predecessors, (556), 381 states have call successors, (556) [2024-11-09 05:43:55,383 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2221 states to 2221 states and 2636 transitions. [2024-11-09 05:43:55,386 INFO L78 Accepts]: Start accepts. Automaton has 2221 states and 2636 transitions. Word has length 136 [2024-11-09 05:43:55,387 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:43:55,387 INFO L471 AbstractCegarLoop]: Abstraction has 2221 states and 2636 transitions. [2024-11-09 05:43:55,387 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 26 states have (on average 5.923076923076923) internal successors, (154), 25 states have internal predecessors, (154), 14 states have call successors, (44), 9 states have call predecessors, (44), 13 states have return successors, (43), 13 states have call predecessors, (43), 14 states have call successors, (43) [2024-11-09 05:43:55,387 INFO L276 IsEmpty]: Start isEmpty. Operand 2221 states and 2636 transitions. [2024-11-09 05:43:55,397 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 208 [2024-11-09 05:43:55,397 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 05:43:55,398 INFO L215 NwaCegarLoop]: trace histogram [10, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:43:55,424 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-11-09 05:43:55,602 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:55,602 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 05:43:55,603 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 05:43:55,603 INFO L85 PathProgramCache]: Analyzing trace with hash 557192344, now seen corresponding path program 1 times [2024-11-09 05:43:55,603 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 05:43:55,604 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1749958168] [2024-11-09 05:43:55,604 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:55,604 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 05:43:55,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:55,987 INFO L134 CoverageAnalysis]: Checked inductivity of 372 backedges. 112 proven. 6 refuted. 0 times theorem prover too weak. 254 trivial. 0 not checked. [2024-11-09 05:43:55,987 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 05:43:55,988 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1749958168] [2024-11-09 05:43:55,988 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1749958168] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 05:43:55,988 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1248113869] [2024-11-09 05:43:55,988 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 05:43:55,988 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:43:55,989 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 05:43:55,990 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 05:43:55,992 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-11-09 05:43:56,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 05:43:56,149 INFO L255 TraceCheckSpWp]: Trace formula consists of 586 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-11-09 05:43:56,154 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 05:43:56,773 INFO L134 CoverageAnalysis]: Checked inductivity of 372 backedges. 243 proven. 44 refuted. 0 times theorem prover too weak. 85 trivial. 0 not checked. [2024-11-09 05:43:56,774 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-09 05:43:57,596 INFO L134 CoverageAnalysis]: Checked inductivity of 372 backedges. 119 proven. 64 refuted. 0 times theorem prover too weak. 189 trivial. 0 not checked. [2024-11-09 05:43:57,597 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1248113869] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-09 05:43:57,597 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1075986075] [2024-11-09 05:43:57,600 INFO L159 IcfgInterpreter]: Started Sifa with 61 locations of interest [2024-11-09 05:43:57,600 INFO L166 IcfgInterpreter]: Building call graph [2024-11-09 05:43:57,601 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2024-11-09 05:43:57,601 INFO L176 IcfgInterpreter]: Starting interpretation [2024-11-09 05:43:57,601 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2024-11-09 05:43:59,662 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 15 for LOIs [2024-11-09 05:43:59,666 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 31 for LOIs [2024-11-09 05:43:59,849 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__methaneQuery with input of size 3 for LOIs [2024-11-09 05:43:59,874 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 17 for LOIs [2024-11-09 05:43:59,916 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneAlarm with input of size 3 for LOIs [2024-11-09 05:43:59,924 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 3 for LOIs [2024-11-09 05:43:59,925 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 22 for LOIs [2024-11-09 05:43:59,929 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 9 for LOIs [2024-11-09 05:43:59,930 INFO L197 IcfgInterpreter]: Interpreting procedure deactivatePump with input of size 21 for LOIs [2024-11-09 05:43:59,932 INFO L180 IcfgInterpreter]: Interpretation finished [2024-11-09 05:44:03,140 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '21518#(and (not (= ~pumpRunning~0 0)) (<= ~pumpRunning~0 2147483647) (not (= ~methaneLevelCritical~0 0)) (<= 0 ~methAndRunningLastTime~0) (<= 0 |old(~methAndRunningLastTime~0)|) (<= 0 (+ ~pumpRunning~0 2147483648)) (<= ~methaneLevelCritical~0 2147483647) (<= 0 (+ ~methaneLevelCritical~0 2147483648)) (not (= ~methAndRunningLastTime~0 0)))' at error location [2024-11-09 05:44:03,141 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2024-11-09 05:44:03,141 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-09 05:44:03,141 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 13, 13] total 31 [2024-11-09 05:44:03,141 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [640461174] [2024-11-09 05:44:03,141 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-09 05:44:03,142 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-11-09 05:44:03,142 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 05:44:03,143 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-11-09 05:44:03,145 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=429, Invalid=4827, Unknown=0, NotChecked=0, Total=5256 [2024-11-09 05:44:03,146 INFO L87 Difference]: Start difference. First operand 2221 states and 2636 transitions. Second operand has 31 states, 28 states have (on average 6.5) internal successors, (182), 28 states have internal predecessors, (182), 16 states have call successors, (51), 7 states have call predecessors, (51), 12 states have return successors, (57), 17 states have call predecessors, (57), 16 states have call successors, (57) [2024-11-09 05:44:05,805 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 05:44:05,806 INFO L93 Difference]: Finished difference Result 2955 states and 3483 transitions. [2024-11-09 05:44:05,806 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 63 states. [2024-11-09 05:44:05,807 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 28 states have (on average 6.5) internal successors, (182), 28 states have internal predecessors, (182), 16 states have call successors, (51), 7 states have call predecessors, (51), 12 states have return successors, (57), 17 states have call predecessors, (57), 16 states have call successors, (57) Word has length 207 [2024-11-09 05:44:05,807 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 05:44:05,810 INFO L225 Difference]: With dead ends: 2955 [2024-11-09 05:44:05,810 INFO L226 Difference]: Without dead ends: 0 [2024-11-09 05:44:05,822 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 697 GetRequests, 550 SyntacticMatches, 17 SemanticMatches, 130 ConstructedPredicates, 0 IntricatePredicates, 2 DeprecatedPredicates, 6688 ImplicationChecksByTransitivity, 5.2s TimeCoverageRelationStatistics Valid=1584, Invalid=15708, Unknown=0, NotChecked=0, Total=17292 [2024-11-09 05:44:05,823 INFO L432 NwaCegarLoop]: 52 mSDtfsCounter, 568 mSDsluCounter, 629 mSDsCounter, 0 mSdLazyCounter, 1618 mSolverCounterSat, 364 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 570 SdHoareTripleChecker+Valid, 681 SdHoareTripleChecker+Invalid, 1982 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 364 IncrementalHoareTripleChecker+Valid, 1618 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2024-11-09 05:44:05,823 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [570 Valid, 681 Invalid, 1982 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [364 Valid, 1618 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2024-11-09 05:44:05,824 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-11-09 05:44:05,824 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-11-09 05:44:05,824 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 05:44:05,824 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-11-09 05:44:05,826 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 207 [2024-11-09 05:44:05,826 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 05:44:05,827 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-11-09 05:44:05,827 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 28 states have (on average 6.5) internal successors, (182), 28 states have internal predecessors, (182), 16 states have call successors, (51), 7 states have call predecessors, (51), 12 states have return successors, (57), 17 states have call predecessors, (57), 16 states have call successors, (57) [2024-11-09 05:44:05,827 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-11-09 05:44:05,827 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-11-09 05:44:05,830 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-11-09 05:44:05,853 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-11-09 05:44:06,035 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 05:44:06,038 INFO L407 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 05:44:06,040 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-11-09 05:44:22,919 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-11-09 05:44:22,946 WARN L162 FloydHoareUtils]: Requires clause for deactivatePump contained old-variable. Original clause: (and (= 1 ~systemActive~0) (or (< 2 ~waterLevel~0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< ~waterLevel~0 1) (< 1 ~methaneLevelCritical~0) (and (<= 2 ~waterLevel~0) (= |old(~pumpRunning~0)| 0)) (not (= ~methAndRunningLastTime~0 0)) (< ~methaneLevelCritical~0 0))) Eliminated clause: (= 1 ~systemActive~0) [2024-11-09 05:44:22,970 WARN L162 FloydHoareUtils]: Requires clause for changeMethaneLevel contained old-variable. Original clause: (let ((.cse7 (= 1 ~systemActive~0))) (let ((.cse1 (= ~methaneLevelCritical~0 0)) (.cse2 (not .cse7)) (.cse0 (= |old(~methaneLevelCritical~0)| 0))) (and (or (not .cse0) .cse1 .cse2) (let ((.cse3 (<= |old(~methaneLevelCritical~0)| 1)) (.cse8 (<= 0 |old(~methaneLevelCritical~0)|)) (.cse4 (= ~pumpRunning~0 0)) (.cse5 (= ~methAndRunningLastTime~0 0)) (.cse6 (= 2 ~waterLevel~0))) (or (and .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse3 .cse4 .cse5 .cse7 .cse8 (= ~waterLevel~0 1)) (and .cse4 .cse5 (= 0 ~systemActive~0)) (and .cse5 .cse6 .cse0 .cse7))) (or (and (<= ~methaneLevelCritical~0 1) (not .cse1) (<= 0 ~methaneLevelCritical~0)) .cse2 .cse0)))) Eliminated clause: (exists ((|old(~methaneLevelCritical~0)| Int)) (let ((.cse7 (= 1 ~systemActive~0))) (let ((.cse1 (= ~methaneLevelCritical~0 0)) (.cse2 (not .cse7)) (.cse0 (= |old(~methaneLevelCritical~0)| 0))) (and (or (not .cse0) .cse1 .cse2) (let ((.cse3 (<= |old(~methaneLevelCritical~0)| 1)) (.cse8 (<= 0 |old(~methaneLevelCritical~0)|)) (.cse4 (= ~pumpRunning~0 0)) (.cse5 (= ~methAndRunningLastTime~0 0)) (.cse6 (= 2 ~waterLevel~0))) (or (and .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse3 .cse4 .cse5 .cse7 .cse8 (= ~waterLevel~0 1)) (and .cse4 .cse5 (= 0 ~systemActive~0)) (and .cse5 .cse6 .cse0 .cse7))) (or (and (<= ~methaneLevelCritical~0 1) (not .cse1) (<= 0 ~methaneLevelCritical~0)) .cse2 .cse0))))) [2024-11-09 05:44:22,977 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-09 05:44:23,004 WARN L162 FloydHoareUtils]: Requires clause for timeShift contained old-variable. Original clause: (let ((.cse4 (= 1 ~systemActive~0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0)) (.cse0 (= |old(~methAndRunningLastTime~0)| 0)) (.cse3 (not .cse4)) (.cse6 (= |old(~waterLevel~0)| 2))) (and (or (not .cse0) (= ~methAndRunningLastTime~0 0)) (or .cse1 (not .cse2)) (or .cse2 (and (<= ~methaneLevelCritical~0 1) (<= 0 ~methaneLevelCritical~0))) (or (< 1 |old(~waterLevel~0)|) .cse3 (and .cse1 (= ~waterLevel~0 1))) (let ((.cse5 (= |old(~pumpRunning~0)| 0))) (or (and (= |old(~waterLevel~0)| 1) .cse0 .cse4 .cse5) (and .cse5 .cse2) (and .cse0 .cse4 .cse6))) (or .cse3 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 2 ~waterLevel~0)) (not .cse6))))) Eliminated clause: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse5 (= 0 ~systemActive~0))) (and (exists ((|old(~methAndRunningLastTime~0)| Int) (|old(~pumpRunning~0)| Int) (|old(~waterLevel~0)| Int)) (let ((.cse3 (= 1 ~systemActive~0))) (let ((.cse0 (= |old(~methAndRunningLastTime~0)| 0)) (.cse1 (not .cse3)) (.cse6 (= |old(~waterLevel~0)| 2))) (and (or (not .cse0) (= ~methAndRunningLastTime~0 0)) (or (< 1 |old(~waterLevel~0)|) .cse1 (and .cse2 (= ~waterLevel~0 1))) (let ((.cse4 (= |old(~pumpRunning~0)| 0))) (or (and (= |old(~waterLevel~0)| 1) .cse0 .cse3 .cse4) (and .cse4 .cse5) (and .cse0 .cse3 .cse6))) (or .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 2 ~waterLevel~0)) (not .cse6)))))) (or .cse2 (not .cse5)) (or .cse5 (and (<= ~methaneLevelCritical~0 1) (<= 0 ~methaneLevelCritical~0))))) [2024-11-09 05:44:23,029 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-09 05:44:23,035 WARN L162 FloydHoareUtils]: Requires clause for processEnvironment__wrappee__highWaterSensor contained old-variable. Original clause: (and (= ~pumpRunning~0 0) (let ((.cse0 (<= ~methaneLevelCritical~0 1)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |old(~pumpRunning~0)| 0)) (.cse3 (<= 0 ~methaneLevelCritical~0))) (or (and .cse0 (= ~methAndRunningLastTime~0 0) (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 .cse3)))) Eliminated clause: (and (= ~pumpRunning~0 0) (let ((.cse0 (<= ~methaneLevelCritical~0 1)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (<= 0 ~methaneLevelCritical~0))) (or (and .cse0 (= ~methAndRunningLastTime~0 0) (= 2 ~waterLevel~0) .cse1 .cse2) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2)))) [2024-11-09 05:44:23,047 WARN L162 FloydHoareUtils]: Requires clause for waterRise contained old-variable. Original clause: (let ((.cse0 (= 0 ~systemActive~0)) (.cse7 (= |old(~waterLevel~0)| 1)) (.cse4 (= 1 ~systemActive~0))) (and (or (= 2 ~waterLevel~0) (< |old(~waterLevel~0)| 2) .cse0) (let ((.cse2 (<= ~methaneLevelCritical~0 1)) (.cse5 (<= 0 ~methaneLevelCritical~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= ~methAndRunningLastTime~0 0)) (.cse6 (= |old(~waterLevel~0)| 2))) (or (and .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse1 .cse2 .cse3 .cse7 .cse4 .cse5) (and .cse1 .cse3 .cse0) (and .cse3 (= ~methaneLevelCritical~0 0) .cse4 .cse6))) (or (not .cse7) (not .cse4) (= ~waterLevel~0 1)))) Eliminated clause: (exists ((|old(~waterLevel~0)| Int)) (let ((.cse0 (= 0 ~systemActive~0)) (.cse7 (= |old(~waterLevel~0)| 1)) (.cse4 (= 1 ~systemActive~0))) (and (or (= 2 ~waterLevel~0) (< |old(~waterLevel~0)| 2) .cse0) (let ((.cse2 (<= ~methaneLevelCritical~0 1)) (.cse5 (<= 0 ~methaneLevelCritical~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= ~methAndRunningLastTime~0 0)) (.cse6 (= |old(~waterLevel~0)| 2))) (or (and .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse1 .cse2 .cse3 .cse7 .cse4 .cse5) (and .cse1 .cse3 .cse0) (and .cse3 (= ~methaneLevelCritical~0 0) .cse4 .cse6))) (or (not .cse7) (not .cse4) (= ~waterLevel~0 1))))) [2024-11-09 05:44:23,053 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-09 05:44:23,059 WARN L162 FloydHoareUtils]: Requires clause for processEnvironment__wrappee__methaneQuery contained old-variable. Original clause: (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (let ((.cse0 (= ~methAndRunningLastTime~0 0)) (.cse2 (<= ~methaneLevelCritical~0 1)) (.cse1 (= 1 ~systemActive~0)) (.cse3 (= |old(~pumpRunning~0)| 0)) (.cse4 (<= 0 ~methaneLevelCritical~0))) (or (and .cse0 (= ~methaneLevelCritical~0 0) .cse1 (<= ~waterLevel~0 2)) (and .cse2 .cse0 (= 2 ~waterLevel~0) .cse1 .cse3 .cse4) (and .cse2 (<= ~waterLevel~0 1) .cse1 .cse3 .cse4))) (or (= ~pumpRunning~0 0) (<= 1 ~waterLevel~0))) Eliminated clause: (let ((.cse0 (= ~pumpRunning~0 0))) (and (let ((.cse1 (<= ~methaneLevelCritical~0 1)) (.cse4 (= ~methAndRunningLastTime~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (<= 0 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 (<= ~waterLevel~0 1) .cse2 .cse3) (and .cse4 (= ~methaneLevelCritical~0 0) .cse2 (<= ~waterLevel~0 2)) (and .cse0 .cse1 .cse4 (= 2 ~waterLevel~0) .cse2 .cse3))) (or .cse0 (< 0 ~waterLevel~0)))) [2024-11-09 05:44:23,068 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 09.11 05:44:23 BoogieIcfgContainer [2024-11-09 05:44:23,068 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-11-09 05:44:23,069 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-11-09 05:44:23,069 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-11-09 05:44:23,069 INFO L274 PluginConnector]: Witness Printer initialized [2024-11-09 05:44:23,070 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 05:43:08" (3/4) ... [2024-11-09 05:44:23,072 INFO L142 WitnessPrinter]: Generating witness for correct program [2024-11-09 05:44:23,076 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2024-11-09 05:44:23,076 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-11-09 05:44:23,076 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-11-09 05:44:23,076 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2024-11-09 05:44:23,077 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-11-09 05:44:23,077 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-11-09 05:44:23,077 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2024-11-09 05:44:23,077 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-11-09 05:44:23,078 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2024-11-09 05:44:23,078 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2024-11-09 05:44:23,087 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 46 nodes and edges [2024-11-09 05:44:23,091 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2024-11-09 05:44:23,092 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-11-09 05:44:23,092 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-09 05:44:23,093 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-09 05:44:23,128 WARN L216 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((\old(methAndRunningLastTime) != 0) || (methAndRunningLastTime == 0)) && ((pumpRunning == 0) || (0 != systemActive))) && ((0 == systemActive) || ((methaneLevelCritical <= 1) && (0 <= methaneLevelCritical)))) && (((1 < \old(waterLevel)) || (1 != systemActive)) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((((((\old(waterLevel) == 1) && (\old(methAndRunningLastTime) == 0)) && (1 == systemActive)) && (\old(pumpRunning) == 0)) || ((\old(pumpRunning) == 0) && (0 == systemActive))) || (((\old(methAndRunningLastTime) == 0) && (1 == systemActive)) && (\old(waterLevel) == 2)))) && (((1 != systemActive) || ((pumpRunning == \old(pumpRunning)) && (2 == waterLevel))) || (\old(waterLevel) != 2))) [2024-11-09 05:44:23,175 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((\old(methAndRunningLastTime) != 0) || (methAndRunningLastTime == 0)) && ((pumpRunning == 0) || (0 != systemActive))) && ((0 == systemActive) || ((methaneLevelCritical <= 1) && (0 <= methaneLevelCritical)))) && (((1 < \old(waterLevel)) || (1 != systemActive)) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((((((\old(waterLevel) == 1) && (\old(methAndRunningLastTime) == 0)) && (1 == systemActive)) && (\old(pumpRunning) == 0)) || ((\old(pumpRunning) == 0) && (0 == systemActive))) || (((\old(methAndRunningLastTime) == 0) && (1 == systemActive)) && (\old(waterLevel) == 2)))) && (((1 != systemActive) || ((pumpRunning == \old(pumpRunning)) && (2 == waterLevel))) || (\old(waterLevel) != 2))) [2024-11-09 05:44:23,232 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/witness.graphml [2024-11-09 05:44:23,233 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/witness.yml [2024-11-09 05:44:23,233 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-11-09 05:44:23,235 INFO L158 Benchmark]: Toolchain (without parser) took 76484.88ms. Allocated memory was 176.2MB in the beginning and 981.5MB in the end (delta: 805.3MB). Free memory was 138.8MB in the beginning and 430.2MB in the end (delta: -291.4MB). Peak memory consumption was 516.3MB. Max. memory is 16.1GB. [2024-11-09 05:44:23,235 INFO L158 Benchmark]: CDTParser took 0.27ms. Allocated memory is still 176.2MB. Free memory is still 151.0MB. There was no memory consumed. Max. memory is 16.1GB. [2024-11-09 05:44:23,235 INFO L158 Benchmark]: CACSL2BoogieTranslator took 596.52ms. Allocated memory is still 176.2MB. Free memory was 138.8MB in the beginning and 116.4MB in the end (delta: 22.4MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. [2024-11-09 05:44:23,236 INFO L158 Benchmark]: Boogie Procedure Inliner took 72.50ms. Allocated memory is still 176.2MB. Free memory was 116.4MB in the beginning and 114.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-11-09 05:44:23,237 INFO L158 Benchmark]: Boogie Preprocessor took 52.63ms. Allocated memory is still 176.2MB. Free memory was 114.3MB in the beginning and 113.0MB in the end (delta: 1.3MB). There was no memory consumed. Max. memory is 16.1GB. [2024-11-09 05:44:23,237 INFO L158 Benchmark]: RCFGBuilder took 733.85ms. Allocated memory is still 176.2MB. Free memory was 112.8MB in the beginning and 81.6MB in the end (delta: 31.3MB). Peak memory consumption was 31.5MB. Max. memory is 16.1GB. [2024-11-09 05:44:23,237 INFO L158 Benchmark]: TraceAbstraction took 74857.70ms. Allocated memory was 176.2MB in the beginning and 981.5MB in the end (delta: 805.3MB). Free memory was 80.7MB in the beginning and 439.6MB in the end (delta: -358.9MB). Peak memory consumption was 535.4MB. Max. memory is 16.1GB. [2024-11-09 05:44:23,238 INFO L158 Benchmark]: Witness Printer took 164.72ms. Allocated memory is still 981.5MB. Free memory was 439.6MB in the beginning and 430.2MB in the end (delta: 9.4MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2024-11-09 05:44:23,240 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.27ms. Allocated memory is still 176.2MB. Free memory is still 151.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 596.52ms. Allocated memory is still 176.2MB. Free memory was 138.8MB in the beginning and 116.4MB in the end (delta: 22.4MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 72.50ms. Allocated memory is still 176.2MB. Free memory was 116.4MB in the beginning and 114.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 52.63ms. Allocated memory is still 176.2MB. Free memory was 114.3MB in the beginning and 113.0MB in the end (delta: 1.3MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 733.85ms. Allocated memory is still 176.2MB. Free memory was 112.8MB in the beginning and 81.6MB in the end (delta: 31.3MB). Peak memory consumption was 31.5MB. Max. memory is 16.1GB. * TraceAbstraction took 74857.70ms. Allocated memory was 176.2MB in the beginning and 981.5MB in the end (delta: 805.3MB). Free memory was 80.7MB in the beginning and 439.6MB in the end (delta: -358.9MB). Peak memory consumption was 535.4MB. Max. memory is 16.1GB. * Witness Printer took 164.72ms. Allocated memory is still 981.5MB. Free memory was 439.6MB in the beginning and 430.2MB in the end (delta: 9.4MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [49] - GenericResultAtLocation [Line: 155]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [155] - GenericResultAtLocation [Line: 164]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [164] - GenericResultAtLocation [Line: 205]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [205] - GenericResultAtLocation [Line: 313]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [313] - GenericResultAtLocation [Line: 381]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [381] - GenericResultAtLocation [Line: 638]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [638] - GenericResultAtLocation [Line: 673]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [673] - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 160]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 80 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 57.7s, OverallIterations: 11, TraceHistogramMax: 10, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 20.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2823 SdHoareTripleChecker+Valid, 7.8s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2799 mSDsluCounter, 3753 SdHoareTripleChecker+Invalid, 6.8s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2870 mSDsCounter, 1936 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 7305 IncrementalHoareTripleChecker+Invalid, 9241 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1936 mSolverCounterUnsat, 883 mSDtfsCounter, 7305 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 1955 GetRequests, 1476 SyntacticMatches, 48 SemanticMatches, 431 ConstructedPredicates, 0 IntricatePredicates, 3 DeprecatedPredicates, 20886 ImplicationChecksByTransitivity, 29.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=2221occurred in iteration=10, InterpolantAutomatonStates: 250, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 1.0s AutomataMinimizationTime, 11 MinimizatonAttempts, 203 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 8.4s InterpolantComputationTime, 1389 NumberOfCodeBlocks, 1389 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 1969 ConstructedInterpolants, 0 QuantifiedInterpolants, 5623 SizeOfPredicates, 19 NumberOfNonLiveVariables, 1898 ConjunctsInSsa, 98 ConjunctsInUnsatCore, 21 InterpolantComputations, 8 PerfectInterpolantSequences, 1721/1944 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: OVERALL_TIME: 4.9s, ICFG_INTERPRETER_ENTERED_PROCEDURES: 8, DAG_INTERPRETER_EARLY_EXIT_QUERIES_NONTRIVIAL: 67, DAG_INTERPRETER_EARLY_EXITS: 8, TOOLS_POST_APPLICATIONS: 79, TOOLS_POST_TIME: 1.6s, TOOLS_POST_CALL_APPLICATIONS: 48, TOOLS_POST_CALL_TIME: 1.9s, TOOLS_POST_RETURN_APPLICATIONS: 40, TOOLS_POST_RETURN_TIME: 0.8s, TOOLS_QUANTIFIERELIM_APPLICATIONS: 155, TOOLS_QUANTIFIERELIM_TIME: 4.3s, TOOLS_QUANTIFIERELIM_MAX_TIME: 0.3s, FLUID_QUERY_TIME: 0.0s, FLUID_QUERIES: 202, FLUID_YES_ANSWERS: 0, DOMAIN_JOIN_APPLICATIONS: 33, DOMAIN_JOIN_TIME: 0.4s, DOMAIN_ALPHA_APPLICATIONS: 0, DOMAIN_ALPHA_TIME: 0.0s, DOMAIN_WIDEN_APPLICATIONS: 0, DOMAIN_WIDEN_TIME: 0.0s, DOMAIN_ISSUBSETEQ_APPLICATIONS: 4, DOMAIN_ISSUBSETEQ_TIME: 0.0s, DOMAIN_ISBOTTOM_APPLICATIONS: 67, DOMAIN_ISBOTTOM_TIME: 0.1s, LOOP_SUMMARIZER_APPLICATIONS: 4, LOOP_SUMMARIZER_CACHE_MISSES: 4, LOOP_SUMMARIZER_OVERALL_TIME: 1.6s, LOOP_SUMMARIZER_NEW_COMPUTATION_TIME: 1.6s, LOOP_SUMMARIZER_FIXPOINT_ITERATIONS: 4, CALL_SUMMARIZER_APPLICATIONS: 40, CALL_SUMMARIZER_CACHE_MISSES: 7, CALL_SUMMARIZER_OVERALL_TIME: 0.1s, CALL_SUMMARIZER_NEW_COMPUTATION_TIME: 0.1s, PROCEDURE_GRAPH_BUILDER_TIME: 0.0s, PATH_EXPR_TIME: 0.0s, REGEX_TO_DAG_TIME: 0.0s, DAG_COMPRESSION_TIME: 0.0s, DAG_COMPRESSION_PROCESSED_NODES: 1269, DAG_COMPRESSION_RETAINED_NODES: 193, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 325]: Loop Invariant Derived loop invariant: (((((((((((methAndRunningLastTime == 0) && (pumpRunning <= 1)) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (0 <= pumpRunning)) || ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (splverifierCounter == 0)) && (waterLevel == 1))) || ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) || (((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) && (0 <= methaneLevelCritical))) || ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 387]: Location Invariant Derived location invariant: (((((((\old(methAndRunningLastTime) != 0) || (methAndRunningLastTime == 0)) && ((pumpRunning == 0) || (0 != systemActive))) && ((0 == systemActive) || ((methaneLevelCritical <= 1) && (0 <= methaneLevelCritical)))) && (((1 < \old(waterLevel)) || (1 != systemActive)) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((((((\old(waterLevel) == 1) && (\old(methAndRunningLastTime) == 0)) && (1 == systemActive)) && (\old(pumpRunning) == 0)) || ((\old(pumpRunning) == 0) && (0 == systemActive))) || (((\old(methAndRunningLastTime) == 0) && (1 == systemActive)) && (\old(waterLevel) == 2)))) && (((1 != systemActive) || ((pumpRunning == \old(pumpRunning)) && (2 == waterLevel))) || (\old(waterLevel) != 2))) - InvariantResult [Line: 324]: Location Invariant Derived location invariant: 0 - ProcedureContractResult [Line: 521]: Procedure Contract for deactivatePump Derived contract for procedure deactivatePump. Requires: (1 == systemActive) Ensures: (((pumpRunning == 0) && (1 == systemActive)) && ((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 411]: Procedure Contract for processEnvironment__wrappee__base Derived contract for procedure processEnvironment__wrappee__base. Requires: (((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (waterLevel <= 1)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) Ensures: ((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (waterLevel <= 1)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) && (((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 237]: Procedure Contract for changeMethaneLevel Derived contract for procedure changeMethaneLevel. Ensures: (((((((methaneLevelCritical == 0) || (1 != systemActive)) || (\old(methaneLevelCritical) == 0)) || (methAndRunningLastTime != 0)) && ((((((methaneLevelCritical <= 1) && (methaneLevelCritical != 0)) && (0 <= methaneLevelCritical)) || (\old(methaneLevelCritical) != 0)) || (1 != systemActive)) || (methAndRunningLastTime != 0))) && (((((((((\old(methaneLevelCritical) <= 1) && (pumpRunning == 0)) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (1 == systemActive)) && (0 <= \old(methaneLevelCritical))) || ((((((\old(methaneLevelCritical) <= 1) && (pumpRunning == 0)) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (0 <= \old(methaneLevelCritical))) && (waterLevel == 1))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (0 == systemActive))) || ((((methAndRunningLastTime == 0) && (2 == waterLevel)) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive)))) && ((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (waterLevel == \old(waterLevel))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 249]: Procedure Contract for isMethaneLevelCritical Derived contract for procedure isMethaneLevelCritical. Requires: ((((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (waterLevel <= 1)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) || (((((((methaneLevelCritical <= 1) && (pumpRunning <= 1)) && (2 == waterLevel)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) && (0 <= pumpRunning)) && ((pumpRunning == 0) || (methaneLevelCritical == 0)))) || ((((((methaneLevelCritical <= 1) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel <= 2)) && (1 <= waterLevel)) && (0 <= methaneLevelCritical))) || ((pumpRunning == 0) && (0 == systemActive))) Ensures: ((((\result == methaneLevelCritical) || (0 == systemActive)) && ((((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (waterLevel <= 1)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) || (((((((methaneLevelCritical <= 1) && (pumpRunning <= 1)) && (2 == waterLevel)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) && (0 <= pumpRunning)) && ((pumpRunning == 0) || (methaneLevelCritical == 0)))) || ((((((methaneLevelCritical <= 1) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel <= 2)) && (1 <= waterLevel)) && (0 <= methaneLevelCritical))) || ((pumpRunning == 0) && (0 == systemActive)))) && (((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 387]: Procedure Contract for timeShift Derived contract for procedure timeShift. Requires: (((pumpRunning == 0) || (0 != systemActive)) && ((0 == systemActive) || ((methaneLevelCritical <= 1) && (0 <= methaneLevelCritical)))) Ensures: ((((((((((\old(waterLevel) != 1) || (((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (methAndRunningLastTime == 0)) && (0 <= methaneLevelCritical)) && (waterLevel == 1))) || (0 == systemActive)) && (((((((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || (\old(methAndRunningLastTime) != 0)) || (methaneLevelCritical == 0)) || (1 != systemActive)) || (1 < methaneLevelCritical)) || (\old(waterLevel) != 2)) || (methaneLevelCritical < 0))) && ((((((\old(waterLevel) == 1) && (\old(methAndRunningLastTime) == 0)) && (1 == systemActive)) && (\old(pumpRunning) == 0)) || ((\old(pumpRunning) == 0) && (0 == systemActive))) || (((((methaneLevelCritical <= 1) && (\old(methAndRunningLastTime) == 0)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) && (\old(waterLevel) == 2)))) && (((((\old(pumpRunning) != 0) || (methaneLevelCritical != 0)) || (\old(waterLevel) != 2)) || ((((methAndRunningLastTime == 0) && (2 == waterLevel)) && (1 == systemActive)) && (pumpRunning == 1))) || (0 == systemActive))) && ((((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1)) || (\old(methAndRunningLastTime) != 0)) || (1 != systemActive)) || (methaneLevelCritical != 0)) || ((((methAndRunningLastTime == 0) && (2 == waterLevel)) && (\old(pumpRunning) == 0)) && (pumpRunning == 1))) || (\old(waterLevel) != 2))) && ((((((\old(pumpRunning) != 0) || (\old(methAndRunningLastTime) != 0)) || (methaneLevelCritical == 0)) || (1 != systemActive)) || (((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (0 <= methaneLevelCritical))) || (\old(waterLevel) != 2))) && ((0 != systemActive) || ((pumpRunning == 0) && (methAndRunningLastTime == 0)))) && ((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 52]: Procedure Contract for cleanup Derived contract for procedure cleanup. Requires: 0 Ensures: (0 && ((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 419]: Procedure Contract for processEnvironment__wrappee__highWaterSensor Derived contract for procedure processEnvironment__wrappee__highWaterSensor. Requires: ((pumpRunning == 0) && ((((((methaneLevelCritical <= 1) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) || ((((methaneLevelCritical <= 1) && (waterLevel <= 1)) && (1 == systemActive)) && (0 <= methaneLevelCritical)))) Ensures: ((((((methaneLevelCritical == 0) || ((pumpRunning == 0) && (\old(pumpRunning) == 0))) && (((2 != waterLevel) || ((\old(pumpRunning) == 0) && (pumpRunning == 1))) || (methaneLevelCritical != 0))) && ((((((methaneLevelCritical <= 1) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) || (((((methaneLevelCritical <= 1) && (waterLevel <= 1)) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (0 <= methaneLevelCritical)))) && ((pumpRunning == 0) || (1 < waterLevel))) && ((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 225]: Procedure Contract for waterRise Derived contract for procedure waterRise. Ensures: (((((((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) && (\old(waterLevel) == 2)) || ((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == 1)) && (1 == systemActive)) && (0 <= methaneLevelCritical))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (0 == systemActive))) || ((((methAndRunningLastTime == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(waterLevel) == 2))) && ((2 == waterLevel) || (1 != systemActive))) && ((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (methaneLevelCritical == \old(methaneLevelCritical))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 445]: Procedure Contract for processEnvironment__wrappee__methaneQuery Derived contract for procedure processEnvironment__wrappee__methaneQuery. Requires: ((((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (waterLevel <= 1)) && (1 == systemActive)) && (0 <= methaneLevelCritical)) || ((((methAndRunningLastTime == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel <= 2))) || ((((((pumpRunning == 0) && (methaneLevelCritical <= 1)) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (1 == systemActive)) && (0 <= methaneLevelCritical))) && ((pumpRunning == 0) || (0 < waterLevel))) Ensures: (((((((pumpRunning == 0) || (\old(pumpRunning) == 0)) && ((methaneLevelCritical == 0) || ((pumpRunning == 0) && (\old(pumpRunning) == 0)))) && (((((((methAndRunningLastTime == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel <= 2)) && (1 <= waterLevel)) || (((((methaneLevelCritical <= 1) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (1 == systemActive)) && (0 <= methaneLevelCritical))) || (((((methaneLevelCritical <= 1) && (waterLevel <= 1)) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (0 <= methaneLevelCritical)))) && ((((\old(pumpRunning) != 0) || (2 != waterLevel)) || (methaneLevelCritical != 0)) || (pumpRunning == 1))) && ((pumpRunning == 0) || (1 < waterLevel))) && ((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 529]: Procedure Contract for isMethaneAlarm Derived contract for procedure isMethaneAlarm. Requires: ((((((methaneLevelCritical <= 1) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel <= 2)) && (1 <= waterLevel)) && (0 <= methaneLevelCritical)) Ensures: ((((((((methaneLevelCritical <= 1) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel <= 2)) && (1 <= waterLevel)) && (0 <= methaneLevelCritical)) && (\result == methaneLevelCritical)) && (((((((cleanupTimeShifts == \old(cleanupTimeShifts)) && (methAndRunningLastTime == \old(methAndRunningLastTime))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) RESULT: Ultimate proved your program to be correct! [2024-11-09 05:44:23,299 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_89668b57-56cb-4b0c-8fdc-c07d86aaab85/bin/utaipan-verify-YMUCfTKeje/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE