./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product49.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a0165632 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product49.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash dcab8ddabad39d2c77c9d9341cfb89acc265e09aeb5bde0419f381c4b7bb75b6 --- Real Ultimate output --- This is Ultimate 0.2.5-dev-a016563 [2024-11-09 07:09:32,369 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-11-09 07:09:32,481 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/config/svcomp-Reach-32bit-Taipan_Default.epf [2024-11-09 07:09:32,487 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-11-09 07:09:32,487 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-11-09 07:09:32,516 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-11-09 07:09:32,528 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-11-09 07:09:32,529 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-11-09 07:09:32,530 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-11-09 07:09:32,531 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-11-09 07:09:32,531 INFO L153 SettingsManager]: * User list type=DISABLED [2024-11-09 07:09:32,532 INFO L151 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2024-11-09 07:09:32,532 INFO L153 SettingsManager]: * Explicit value domain=true [2024-11-09 07:09:32,533 INFO L153 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2024-11-09 07:09:32,533 INFO L153 SettingsManager]: * Octagon Domain=false [2024-11-09 07:09:32,533 INFO L153 SettingsManager]: * Abstract domain=CompoundDomain [2024-11-09 07:09:32,534 INFO L153 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2024-11-09 07:09:32,534 INFO L153 SettingsManager]: * Use the RCFG-of-the-future interface=true [2024-11-09 07:09:32,535 INFO L153 SettingsManager]: * Interval Domain=false [2024-11-09 07:09:32,535 INFO L151 SettingsManager]: Preferences of Sifa differ from their defaults: [2024-11-09 07:09:32,535 INFO L153 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2024-11-09 07:09:32,540 INFO L153 SettingsManager]: * Simplification Technique=POLY_PAC [2024-11-09 07:09:32,541 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-11-09 07:09:32,541 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-11-09 07:09:32,541 INFO L153 SettingsManager]: * sizeof long=4 [2024-11-09 07:09:32,542 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-11-09 07:09:32,542 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-11-09 07:09:32,542 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-11-09 07:09:32,542 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-11-09 07:09:32,543 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-11-09 07:09:32,543 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-11-09 07:09:32,543 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-11-09 07:09:32,543 INFO L153 SettingsManager]: * sizeof long double=12 [2024-11-09 07:09:32,547 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-11-09 07:09:32,548 INFO L153 SettingsManager]: * Use constant arrays=true [2024-11-09 07:09:32,548 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-11-09 07:09:32,548 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-09 07:09:32,549 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-09 07:09:32,549 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2024-11-09 07:09:32,549 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-11-09 07:09:32,549 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-11-09 07:09:32,552 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-11-09 07:09:32,552 INFO L153 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2024-11-09 07:09:32,552 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-11-09 07:09:32,553 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-11-09 07:09:32,553 INFO L153 SettingsManager]: * Trace refinement exception blacklist=NONE [2024-11-09 07:09:32,553 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-11-09 07:09:32,553 INFO L153 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> dcab8ddabad39d2c77c9d9341cfb89acc265e09aeb5bde0419f381c4b7bb75b6 [2024-11-09 07:09:32,887 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-11-09 07:09:32,963 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-11-09 07:09:32,966 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-11-09 07:09:32,972 INFO L270 PluginConnector]: Initializing CDTParser... [2024-11-09 07:09:32,977 INFO L274 PluginConnector]: CDTParser initialized [2024-11-09 07:09:32,978 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/../../sv-benchmarks/c/product-lines/minepump_spec4_product49.cil.c Unable to find full path for "g++" [2024-11-09 07:09:35,047 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-11-09 07:09:35,333 INFO L384 CDTParser]: Found 1 translation units. [2024-11-09 07:09:35,334 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/sv-benchmarks/c/product-lines/minepump_spec4_product49.cil.c [2024-11-09 07:09:35,352 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/data/b50ee256f/cb1824d1b29b486d980682bd78d7a062/FLAG42c52a3b5 [2024-11-09 07:09:35,625 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/data/b50ee256f/cb1824d1b29b486d980682bd78d7a062 [2024-11-09 07:09:35,628 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-11-09 07:09:35,630 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-11-09 07:09:35,635 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-11-09 07:09:35,636 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-11-09 07:09:35,643 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-11-09 07:09:35,644 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 09.11 07:09:35" (1/1) ... [2024-11-09 07:09:35,647 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@5d3e25c6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:35, skipping insertion in model container [2024-11-09 07:09:35,647 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 09.11 07:09:35" (1/1) ... [2024-11-09 07:09:35,758 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-11-09 07:09:35,974 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/sv-benchmarks/c/product-lines/minepump_spec4_product49.cil.c[1605,1618] [2024-11-09 07:09:36,128 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-09 07:09:36,154 INFO L200 MainTranslator]: Completed pre-run [2024-11-09 07:09:36,165 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2024-11-09 07:09:36,167 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [58] [2024-11-09 07:09:36,167 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [169] [2024-11-09 07:09:36,167 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [271] [2024-11-09 07:09:36,168 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [472] [2024-11-09 07:09:36,168 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [537] [2024-11-09 07:09:36,168 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [572] [2024-11-09 07:09:36,168 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [598] [2024-11-09 07:09:36,173 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/sv-benchmarks/c/product-lines/minepump_spec4_product49.cil.c[1605,1618] [2024-11-09 07:09:36,261 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-09 07:09:36,298 INFO L204 MainTranslator]: Completed translation [2024-11-09 07:09:36,298 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36 WrapperNode [2024-11-09 07:09:36,299 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-11-09 07:09:36,300 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-11-09 07:09:36,300 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-11-09 07:09:36,301 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-11-09 07:09:36,310 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,330 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,362 INFO L138 Inliner]: procedures = 55, calls = 98, calls flagged for inlining = 24, calls inlined = 20, statements flattened = 203 [2024-11-09 07:09:36,363 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-11-09 07:09:36,364 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-11-09 07:09:36,364 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-11-09 07:09:36,364 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-11-09 07:09:36,375 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,376 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,384 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,384 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,392 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,397 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,399 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,400 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,403 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-11-09 07:09:36,404 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-11-09 07:09:36,404 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-11-09 07:09:36,405 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-11-09 07:09:36,406 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (1/1) ... [2024-11-09 07:09:36,413 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2024-11-09 07:09:36,427 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 07:09:36,451 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2024-11-09 07:09:36,467 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2024-11-09 07:09:36,500 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-11-09 07:09:36,501 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-11-09 07:09:36,501 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-11-09 07:09:36,501 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-11-09 07:09:36,501 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-11-09 07:09:36,502 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-11-09 07:09:36,502 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-11-09 07:09:36,503 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2024-11-09 07:09:36,503 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2024-11-09 07:09:36,504 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-11-09 07:09:36,504 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-11-09 07:09:36,504 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2024-11-09 07:09:36,504 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-11-09 07:09:36,505 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-11-09 07:09:36,506 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-11-09 07:09:36,506 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-11-09 07:09:36,628 INFO L238 CfgBuilder]: Building ICFG [2024-11-09 07:09:36,633 INFO L264 CfgBuilder]: Building CFG for each procedure with an implementation [2024-11-09 07:09:36,971 INFO L? ?]: Removed 46 outVars from TransFormulas that were not future-live. [2024-11-09 07:09:36,971 INFO L287 CfgBuilder]: Performing block encoding [2024-11-09 07:09:37,112 INFO L311 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-11-09 07:09:37,112 INFO L316 CfgBuilder]: Removed 2 assume(true) statements. [2024-11-09 07:09:37,113 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 07:09:37 BoogieIcfgContainer [2024-11-09 07:09:37,113 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-11-09 07:09:37,115 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-11-09 07:09:37,115 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-11-09 07:09:37,119 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-11-09 07:09:37,119 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 09.11 07:09:35" (1/3) ... [2024-11-09 07:09:37,120 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@78adf28e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 09.11 07:09:37, skipping insertion in model container [2024-11-09 07:09:37,120 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 07:09:36" (2/3) ... [2024-11-09 07:09:37,120 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@78adf28e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 09.11 07:09:37, skipping insertion in model container [2024-11-09 07:09:37,120 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 07:09:37" (3/3) ... [2024-11-09 07:09:37,122 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product49.cil.c [2024-11-09 07:09:37,141 INFO L214 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-11-09 07:09:37,141 INFO L154 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-11-09 07:09:37,211 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-11-09 07:09:37,218 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@5cce8f7c, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-11-09 07:09:37,219 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-11-09 07:09:37,223 INFO L276 IsEmpty]: Start isEmpty. Operand has 51 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 41 states have internal predecessors, (48), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2024-11-09 07:09:37,232 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2024-11-09 07:09:37,232 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:37,233 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:37,234 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:37,239 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:37,240 INFO L85 PathProgramCache]: Analyzing trace with hash -326497322, now seen corresponding path program 1 times [2024-11-09 07:09:37,251 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:37,251 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [590064732] [2024-11-09 07:09:37,252 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:37,252 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:37,356 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:37,418 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:37,418 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:37,419 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [590064732] [2024-11-09 07:09:37,420 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [590064732] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:37,420 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:37,420 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-09 07:09:37,422 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1720261035] [2024-11-09 07:09:37,423 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:37,427 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-11-09 07:09:37,428 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:37,464 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-11-09 07:09:37,469 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-09 07:09:37,471 INFO L87 Difference]: Start difference. First operand has 51 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 41 states have internal predecessors, (48), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:37,569 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:37,570 INFO L93 Difference]: Finished difference Result 100 states and 137 transitions. [2024-11-09 07:09:37,572 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-11-09 07:09:37,573 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 12 [2024-11-09 07:09:37,574 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:37,585 INFO L225 Difference]: With dead ends: 100 [2024-11-09 07:09:37,585 INFO L226 Difference]: Without dead ends: 46 [2024-11-09 07:09:37,591 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-09 07:09:37,596 INFO L432 NwaCegarLoop]: 48 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 48 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:37,601 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 48 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 07:09:37,627 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 46 states. [2024-11-09 07:09:37,650 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 46 to 46. [2024-11-09 07:09:37,651 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 46 states, 30 states have (on average 1.3333333333333333) internal successors, (40), 37 states have internal predecessors, (40), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2024-11-09 07:09:37,653 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 46 states to 46 states and 59 transitions. [2024-11-09 07:09:37,655 INFO L78 Accepts]: Start accepts. Automaton has 46 states and 59 transitions. Word has length 12 [2024-11-09 07:09:37,655 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:37,655 INFO L471 AbstractCegarLoop]: Abstraction has 46 states and 59 transitions. [2024-11-09 07:09:37,656 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:37,656 INFO L276 IsEmpty]: Start isEmpty. Operand 46 states and 59 transitions. [2024-11-09 07:09:37,658 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2024-11-09 07:09:37,658 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:37,658 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:37,658 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-11-09 07:09:37,659 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:37,660 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:37,660 INFO L85 PathProgramCache]: Analyzing trace with hash 354006588, now seen corresponding path program 1 times [2024-11-09 07:09:37,660 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:37,660 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1885990873] [2024-11-09 07:09:37,661 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:37,661 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:37,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:37,778 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:37,779 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:37,779 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1885990873] [2024-11-09 07:09:37,780 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1885990873] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:37,780 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:37,780 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-09 07:09:37,780 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [988860125] [2024-11-09 07:09:37,781 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:37,783 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-09 07:09:37,783 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:37,784 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-09 07:09:37,784 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 07:09:37,785 INFO L87 Difference]: Start difference. First operand 46 states and 59 transitions. Second operand has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:37,839 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:37,840 INFO L93 Difference]: Finished difference Result 69 states and 89 transitions. [2024-11-09 07:09:37,841 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-09 07:09:37,841 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2024-11-09 07:09:37,842 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:37,844 INFO L225 Difference]: With dead ends: 69 [2024-11-09 07:09:37,845 INFO L226 Difference]: Without dead ends: 38 [2024-11-09 07:09:37,846 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 07:09:37,847 INFO L432 NwaCegarLoop]: 34 mSDtfsCounter, 7 mSDsluCounter, 25 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 59 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:37,848 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 59 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-09 07:09:37,849 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 38 states. [2024-11-09 07:09:37,854 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 38 to 38. [2024-11-09 07:09:37,855 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 38 states, 25 states have (on average 1.36) internal successors, (34), 32 states have internal predecessors, (34), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 5 states have call predecessors, (7), 7 states have call successors, (7) [2024-11-09 07:09:37,856 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 38 states to 38 states and 48 transitions. [2024-11-09 07:09:37,857 INFO L78 Accepts]: Start accepts. Automaton has 38 states and 48 transitions. Word has length 13 [2024-11-09 07:09:37,857 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:37,857 INFO L471 AbstractCegarLoop]: Abstraction has 38 states and 48 transitions. [2024-11-09 07:09:37,858 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:37,858 INFO L276 IsEmpty]: Start isEmpty. Operand 38 states and 48 transitions. [2024-11-09 07:09:37,859 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2024-11-09 07:09:37,859 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:37,859 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:37,859 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-11-09 07:09:37,860 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:37,860 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:37,861 INFO L85 PathProgramCache]: Analyzing trace with hash 597427594, now seen corresponding path program 1 times [2024-11-09 07:09:37,861 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:37,861 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [351771184] [2024-11-09 07:09:37,861 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:37,862 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:37,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:38,024 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:38,024 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:38,025 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [351771184] [2024-11-09 07:09:38,025 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [351771184] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:38,025 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:38,025 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-09 07:09:38,025 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [307734861] [2024-11-09 07:09:38,026 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:38,026 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-09 07:09:38,026 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:38,027 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-09 07:09:38,027 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 07:09:38,027 INFO L87 Difference]: Start difference. First operand 38 states and 48 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:38,093 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:38,094 INFO L93 Difference]: Finished difference Result 74 states and 95 transitions. [2024-11-09 07:09:38,094 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-09 07:09:38,095 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 15 [2024-11-09 07:09:38,095 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:38,096 INFO L225 Difference]: With dead ends: 74 [2024-11-09 07:09:38,096 INFO L226 Difference]: Without dead ends: 38 [2024-11-09 07:09:38,097 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 07:09:38,098 INFO L432 NwaCegarLoop]: 32 mSDtfsCounter, 37 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 32 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:38,099 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 32 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-09 07:09:38,099 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 38 states. [2024-11-09 07:09:38,105 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 38 to 38. [2024-11-09 07:09:38,106 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 38 states, 25 states have (on average 1.32) internal successors, (33), 32 states have internal predecessors, (33), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 5 states have call predecessors, (7), 7 states have call successors, (7) [2024-11-09 07:09:38,107 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 38 states to 38 states and 47 transitions. [2024-11-09 07:09:38,107 INFO L78 Accepts]: Start accepts. Automaton has 38 states and 47 transitions. Word has length 15 [2024-11-09 07:09:38,107 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:38,108 INFO L471 AbstractCegarLoop]: Abstraction has 38 states and 47 transitions. [2024-11-09 07:09:38,126 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 2 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:38,126 INFO L276 IsEmpty]: Start isEmpty. Operand 38 states and 47 transitions. [2024-11-09 07:09:38,127 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2024-11-09 07:09:38,128 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:38,128 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:38,128 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-11-09 07:09:38,128 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:38,130 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:38,130 INFO L85 PathProgramCache]: Analyzing trace with hash -1331039826, now seen corresponding path program 1 times [2024-11-09 07:09:38,130 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:38,131 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1890362912] [2024-11-09 07:09:38,131 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:38,131 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:38,162 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:38,263 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:38,263 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:38,263 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1890362912] [2024-11-09 07:09:38,264 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1890362912] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:38,264 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:38,264 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-09 07:09:38,264 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1820232210] [2024-11-09 07:09:38,265 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:38,265 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-09 07:09:38,265 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:38,266 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-09 07:09:38,266 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 07:09:38,266 INFO L87 Difference]: Start difference. First operand 38 states and 47 transitions. Second operand has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:38,368 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:38,368 INFO L93 Difference]: Finished difference Result 104 states and 132 transitions. [2024-11-09 07:09:38,368 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-09 07:09:38,369 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2024-11-09 07:09:38,369 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:38,370 INFO L225 Difference]: With dead ends: 104 [2024-11-09 07:09:38,371 INFO L226 Difference]: Without dead ends: 68 [2024-11-09 07:09:38,371 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-09 07:09:38,373 INFO L432 NwaCegarLoop]: 41 mSDtfsCounter, 29 mSDsluCounter, 27 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 29 SdHoareTripleChecker+Valid, 68 SdHoareTripleChecker+Invalid, 33 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:38,374 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [29 Valid, 68 Invalid, 33 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 07:09:38,375 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2024-11-09 07:09:38,391 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 66. [2024-11-09 07:09:38,392 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 66 states, 45 states have (on average 1.2666666666666666) internal successors, (57), 52 states have internal predecessors, (57), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (14), 10 states have call predecessors, (14), 10 states have call successors, (14) [2024-11-09 07:09:38,393 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 66 states to 66 states and 81 transitions. [2024-11-09 07:09:38,394 INFO L78 Accepts]: Start accepts. Automaton has 66 states and 81 transitions. Word has length 18 [2024-11-09 07:09:38,394 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:38,394 INFO L471 AbstractCegarLoop]: Abstraction has 66 states and 81 transitions. [2024-11-09 07:09:38,395 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:09:38,395 INFO L276 IsEmpty]: Start isEmpty. Operand 66 states and 81 transitions. [2024-11-09 07:09:38,396 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2024-11-09 07:09:38,396 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:38,396 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:38,397 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-11-09 07:09:38,397 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:38,398 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:38,398 INFO L85 PathProgramCache]: Analyzing trace with hash -75170115, now seen corresponding path program 1 times [2024-11-09 07:09:38,398 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:38,399 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [471186803] [2024-11-09 07:09:38,399 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:38,399 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:38,423 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:38,617 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:38,618 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:38,618 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [471186803] [2024-11-09 07:09:38,618 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [471186803] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:38,618 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:38,619 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-09 07:09:38,619 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1917684331] [2024-11-09 07:09:38,619 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:38,619 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-09 07:09:38,620 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:38,623 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-09 07:09:38,623 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=8, Invalid=12, Unknown=0, NotChecked=0, Total=20 [2024-11-09 07:09:38,623 INFO L87 Difference]: Start difference. First operand 66 states and 81 transitions. Second operand has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 07:09:38,819 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:38,819 INFO L93 Difference]: Finished difference Result 179 states and 222 transitions. [2024-11-09 07:09:38,821 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-11-09 07:09:38,821 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23 [2024-11-09 07:09:38,822 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:38,825 INFO L225 Difference]: With dead ends: 179 [2024-11-09 07:09:38,825 INFO L226 Difference]: Without dead ends: 115 [2024-11-09 07:09:38,828 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=18, Invalid=24, Unknown=0, NotChecked=0, Total=42 [2024-11-09 07:09:38,830 INFO L432 NwaCegarLoop]: 34 mSDtfsCounter, 48 mSDsluCounter, 76 mSDsCounter, 0 mSdLazyCounter, 65 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 110 SdHoareTripleChecker+Invalid, 72 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 65 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:38,834 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 110 Invalid, 72 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 65 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 07:09:38,835 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 115 states. [2024-11-09 07:09:38,870 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 115 to 100. [2024-11-09 07:09:38,871 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 69 states have (on average 1.2173913043478262) internal successors, (84), 78 states have internal predecessors, (84), 14 states have call successors, (14), 14 states have call predecessors, (14), 16 states have return successors, (20), 15 states have call predecessors, (20), 14 states have call successors, (20) [2024-11-09 07:09:38,872 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 118 transitions. [2024-11-09 07:09:38,873 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 118 transitions. Word has length 23 [2024-11-09 07:09:38,873 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:38,873 INFO L471 AbstractCegarLoop]: Abstraction has 100 states and 118 transitions. [2024-11-09 07:09:38,875 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-09 07:09:38,875 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 118 transitions. [2024-11-09 07:09:38,877 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-11-09 07:09:38,879 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:38,879 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:38,880 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-11-09 07:09:38,880 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:38,880 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:38,881 INFO L85 PathProgramCache]: Analyzing trace with hash 189121244, now seen corresponding path program 1 times [2024-11-09 07:09:38,881 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:38,881 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [708711642] [2024-11-09 07:09:38,881 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:38,881 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:38,909 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:39,270 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:39,271 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:39,271 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [708711642] [2024-11-09 07:09:39,271 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [708711642] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:39,271 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:39,271 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-11-09 07:09:39,272 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1793450939] [2024-11-09 07:09:39,272 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:39,272 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-11-09 07:09:39,272 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:39,273 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-11-09 07:09:39,273 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2024-11-09 07:09:39,274 INFO L87 Difference]: Start difference. First operand 100 states and 118 transitions. Second operand has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-09 07:09:39,839 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:39,839 INFO L93 Difference]: Finished difference Result 251 states and 312 transitions. [2024-11-09 07:09:39,840 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-11-09 07:09:39,840 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2024-11-09 07:09:39,841 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:39,843 INFO L225 Difference]: With dead ends: 251 [2024-11-09 07:09:39,844 INFO L226 Difference]: Without dead ends: 187 [2024-11-09 07:09:39,845 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2024-11-09 07:09:39,846 INFO L432 NwaCegarLoop]: 52 mSDtfsCounter, 110 mSDsluCounter, 181 mSDsCounter, 0 mSdLazyCounter, 356 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 118 SdHoareTripleChecker+Valid, 233 SdHoareTripleChecker+Invalid, 394 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 356 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:39,847 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [118 Valid, 233 Invalid, 394 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 356 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-11-09 07:09:39,848 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 187 states. [2024-11-09 07:09:39,903 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 187 to 168. [2024-11-09 07:09:39,904 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 168 states, 116 states have (on average 1.2241379310344827) internal successors, (142), 132 states have internal predecessors, (142), 24 states have call successors, (24), 22 states have call predecessors, (24), 27 states have return successors, (35), 26 states have call predecessors, (35), 24 states have call successors, (35) [2024-11-09 07:09:39,906 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 168 states to 168 states and 201 transitions. [2024-11-09 07:09:39,907 INFO L78 Accepts]: Start accepts. Automaton has 168 states and 201 transitions. Word has length 26 [2024-11-09 07:09:39,907 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:39,907 INFO L471 AbstractCegarLoop]: Abstraction has 168 states and 201 transitions. [2024-11-09 07:09:39,907 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.0) internal successors, (21), 7 states have internal predecessors, (21), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-09 07:09:39,908 INFO L276 IsEmpty]: Start isEmpty. Operand 168 states and 201 transitions. [2024-11-09 07:09:39,913 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-11-09 07:09:39,913 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:39,913 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:39,914 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-11-09 07:09:39,914 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:39,914 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:39,915 INFO L85 PathProgramCache]: Analyzing trace with hash -1646931880, now seen corresponding path program 1 times [2024-11-09 07:09:39,916 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:39,916 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [821146775] [2024-11-09 07:09:39,916 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:39,916 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:39,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:40,386 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:40,387 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:40,387 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [821146775] [2024-11-09 07:09:40,387 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [821146775] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:40,387 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:40,387 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-11-09 07:09:40,388 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [972467595] [2024-11-09 07:09:40,388 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:40,388 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-11-09 07:09:40,388 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:40,391 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-11-09 07:09:40,391 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2024-11-09 07:09:40,391 INFO L87 Difference]: Start difference. First operand 168 states and 201 transitions. Second operand has 8 states, 8 states have (on average 4.25) internal successors, (34), 7 states have internal predecessors, (34), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-09 07:09:40,746 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:40,747 INFO L93 Difference]: Finished difference Result 280 states and 345 transitions. [2024-11-09 07:09:40,747 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-11-09 07:09:40,747 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.25) internal successors, (34), 7 states have internal predecessors, (34), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 39 [2024-11-09 07:09:40,748 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:40,750 INFO L225 Difference]: With dead ends: 280 [2024-11-09 07:09:40,750 INFO L226 Difference]: Without dead ends: 209 [2024-11-09 07:09:40,751 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2024-11-09 07:09:40,752 INFO L432 NwaCegarLoop]: 34 mSDtfsCounter, 82 mSDsluCounter, 81 mSDsCounter, 0 mSdLazyCounter, 204 mSolverCounterSat, 49 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 88 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 253 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 49 IncrementalHoareTripleChecker+Valid, 204 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:40,752 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [88 Valid, 115 Invalid, 253 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [49 Valid, 204 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-09 07:09:40,753 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 209 states. [2024-11-09 07:09:40,805 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 209 to 169. [2024-11-09 07:09:40,805 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 169 states, 117 states have (on average 1.2307692307692308) internal successors, (144), 132 states have internal predecessors, (144), 24 states have call successors, (24), 22 states have call predecessors, (24), 27 states have return successors, (36), 26 states have call predecessors, (36), 24 states have call successors, (36) [2024-11-09 07:09:40,807 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 169 states to 169 states and 204 transitions. [2024-11-09 07:09:40,808 INFO L78 Accepts]: Start accepts. Automaton has 169 states and 204 transitions. Word has length 39 [2024-11-09 07:09:40,808 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:40,808 INFO L471 AbstractCegarLoop]: Abstraction has 169 states and 204 transitions. [2024-11-09 07:09:40,808 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.25) internal successors, (34), 7 states have internal predecessors, (34), 3 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-09 07:09:40,809 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 204 transitions. [2024-11-09 07:09:40,815 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-11-09 07:09:40,815 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:40,816 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:40,816 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-11-09 07:09:40,816 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:40,817 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:40,817 INFO L85 PathProgramCache]: Analyzing trace with hash 2127479, now seen corresponding path program 1 times [2024-11-09 07:09:40,819 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:40,819 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1441557715] [2024-11-09 07:09:40,820 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:40,820 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:40,844 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:40,915 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-11-09 07:09:40,915 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:40,915 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1441557715] [2024-11-09 07:09:40,915 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1441557715] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:40,916 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-09 07:09:40,916 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-09 07:09:40,916 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1285060707] [2024-11-09 07:09:40,916 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:40,916 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-09 07:09:40,917 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:40,917 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-09 07:09:40,917 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-09 07:09:40,918 INFO L87 Difference]: Start difference. First operand 169 states and 204 transitions. Second operand has 4 states, 4 states have (on average 7.0) internal successors, (28), 4 states have internal predecessors, (28), 1 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-11-09 07:09:41,040 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:41,040 INFO L93 Difference]: Finished difference Result 171 states and 205 transitions. [2024-11-09 07:09:41,041 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-09 07:09:41,041 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 7.0) internal successors, (28), 4 states have internal predecessors, (28), 1 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 42 [2024-11-09 07:09:41,041 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:41,043 INFO L225 Difference]: With dead ends: 171 [2024-11-09 07:09:41,043 INFO L226 Difference]: Without dead ends: 169 [2024-11-09 07:09:41,043 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-11-09 07:09:41,044 INFO L432 NwaCegarLoop]: 37 mSDtfsCounter, 35 mSDsluCounter, 63 mSDsCounter, 0 mSdLazyCounter, 48 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 100 SdHoareTripleChecker+Invalid, 51 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 48 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:41,047 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 100 Invalid, 51 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 48 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 07:09:41,049 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 169 states. [2024-11-09 07:09:41,097 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 169 to 169. [2024-11-09 07:09:41,097 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 169 states, 117 states have (on average 1.2136752136752136) internal successors, (142), 132 states have internal predecessors, (142), 24 states have call successors, (24), 22 states have call predecessors, (24), 27 states have return successors, (36), 26 states have call predecessors, (36), 24 states have call successors, (36) [2024-11-09 07:09:41,099 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 169 states to 169 states and 202 transitions. [2024-11-09 07:09:41,100 INFO L78 Accepts]: Start accepts. Automaton has 169 states and 202 transitions. Word has length 42 [2024-11-09 07:09:41,100 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:41,101 INFO L471 AbstractCegarLoop]: Abstraction has 169 states and 202 transitions. [2024-11-09 07:09:41,101 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 7.0) internal successors, (28), 4 states have internal predecessors, (28), 1 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-11-09 07:09:41,101 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 202 transitions. [2024-11-09 07:09:41,103 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2024-11-09 07:09:41,104 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:41,106 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:41,107 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-11-09 07:09:41,107 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:41,107 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:41,107 INFO L85 PathProgramCache]: Analyzing trace with hash 2088701844, now seen corresponding path program 1 times [2024-11-09 07:09:41,107 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:41,108 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [263764813] [2024-11-09 07:09:41,108 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:41,108 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:41,139 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:41,254 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 6 proven. 10 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-09 07:09:41,254 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:41,254 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [263764813] [2024-11-09 07:09:41,254 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [263764813] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 07:09:41,255 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [177767056] [2024-11-09 07:09:41,256 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:41,256 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 07:09:41,256 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 07:09:41,259 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 07:09:41,266 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-11-09 07:09:41,386 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:41,389 INFO L255 TraceCheckSpWp]: Trace formula consists of 207 conjuncts, 4 conjuncts are in the unsatisfiable core [2024-11-09 07:09:41,397 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 07:09:41,526 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 19 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:41,527 INFO L307 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-11-09 07:09:41,527 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [177767056] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:09:41,527 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-11-09 07:09:41,527 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [7] total 8 [2024-11-09 07:09:41,528 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1660372362] [2024-11-09 07:09:41,528 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:09:41,528 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-09 07:09:41,529 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:41,529 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-09 07:09:41,530 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=35, Unknown=0, NotChecked=0, Total=56 [2024-11-09 07:09:41,531 INFO L87 Difference]: Start difference. First operand 169 states and 202 transitions. Second operand has 3 states, 3 states have (on average 12.666666666666666) internal successors, (38), 3 states have internal predecessors, (38), 3 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-09 07:09:41,614 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:09:41,614 INFO L93 Difference]: Finished difference Result 253 states and 306 transitions. [2024-11-09 07:09:41,615 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-09 07:09:41,615 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.666666666666666) internal successors, (38), 3 states have internal predecessors, (38), 3 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) Word has length 47 [2024-11-09 07:09:41,615 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:09:41,618 INFO L225 Difference]: With dead ends: 253 [2024-11-09 07:09:41,618 INFO L226 Difference]: Without dead ends: 168 [2024-11-09 07:09:41,619 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 54 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=35, Unknown=0, NotChecked=0, Total=56 [2024-11-09 07:09:41,621 INFO L432 NwaCegarLoop]: 49 mSDtfsCounter, 21 mSDsluCounter, 25 mSDsCounter, 0 mSdLazyCounter, 34 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 74 SdHoareTripleChecker+Invalid, 35 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 34 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-09 07:09:41,621 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 74 Invalid, 35 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 34 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-09 07:09:41,624 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 168 states. [2024-11-09 07:09:41,659 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 168 to 168. [2024-11-09 07:09:41,661 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 168 states, 117 states have (on average 1.188034188034188) internal successors, (139), 131 states have internal predecessors, (139), 23 states have call successors, (23), 22 states have call predecessors, (23), 27 states have return successors, (29), 25 states have call predecessors, (29), 23 states have call successors, (29) [2024-11-09 07:09:41,662 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 168 states to 168 states and 191 transitions. [2024-11-09 07:09:41,662 INFO L78 Accepts]: Start accepts. Automaton has 168 states and 191 transitions. Word has length 47 [2024-11-09 07:09:41,663 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:09:41,663 INFO L471 AbstractCegarLoop]: Abstraction has 168 states and 191 transitions. [2024-11-09 07:09:41,663 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.666666666666666) internal successors, (38), 3 states have internal predecessors, (38), 3 states have call successors, (5), 3 states have call predecessors, (5), 3 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-09 07:09:41,663 INFO L276 IsEmpty]: Start isEmpty. Operand 168 states and 191 transitions. [2024-11-09 07:09:41,664 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2024-11-09 07:09:41,666 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:09:41,666 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:09:41,692 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2024-11-09 07:09:41,870 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 07:09:41,870 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:09:41,871 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:09:41,871 INFO L85 PathProgramCache]: Analyzing trace with hash 231444658, now seen corresponding path program 1 times [2024-11-09 07:09:41,871 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:09:41,871 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [955164267] [2024-11-09 07:09:41,871 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:41,871 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:09:41,902 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:42,488 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 3 proven. 12 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-11-09 07:09:42,489 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:09:42,489 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [955164267] [2024-11-09 07:09:42,489 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [955164267] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 07:09:42,489 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1483468889] [2024-11-09 07:09:42,489 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:09:42,490 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 07:09:42,490 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 07:09:42,492 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 07:09:42,493 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-11-09 07:09:42,602 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:09:42,606 INFO L255 TraceCheckSpWp]: Trace formula consists of 208 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-11-09 07:09:42,611 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 07:09:43,155 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 4 proven. 13 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-09 07:09:43,155 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-09 07:09:43,718 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 4 proven. 5 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-11-09 07:09:43,718 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1483468889] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-09 07:09:43,718 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1995710793] [2024-11-09 07:09:43,751 INFO L159 IcfgInterpreter]: Started Sifa with 34 locations of interest [2024-11-09 07:09:43,751 INFO L166 IcfgInterpreter]: Building call graph [2024-11-09 07:09:43,756 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2024-11-09 07:09:43,763 INFO L176 IcfgInterpreter]: Starting interpretation [2024-11-09 07:09:43,763 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2024-11-09 07:09:51,162 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 168 for LOIs [2024-11-09 07:09:51,291 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 31 for LOIs [2024-11-09 07:09:51,423 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 41 for LOIs [2024-11-09 07:09:51,516 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 33 for LOIs [2024-11-09 07:09:51,522 INFO L180 IcfgInterpreter]: Interpretation finished [2024-11-09 07:09:58,269 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '4178#(and (not (= ~pumpRunning~0 0)) (<= ~pumpRunning~0 2147483647) (<= 0 (+ ~pumpRunning~0 2147483648)) (= ~waterLevel~0 0))' at error location [2024-11-09 07:09:58,269 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2024-11-09 07:09:58,269 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-09 07:09:58,269 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 12, 10] total 28 [2024-11-09 07:09:58,270 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [448894975] [2024-11-09 07:09:58,270 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-09 07:09:58,270 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2024-11-09 07:09:58,270 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:09:58,271 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2024-11-09 07:09:58,272 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=293, Invalid=2257, Unknown=0, NotChecked=0, Total=2550 [2024-11-09 07:09:58,273 INFO L87 Difference]: Start difference. First operand 168 states and 191 transitions. Second operand has 28 states, 25 states have (on average 3.52) internal successors, (88), 24 states have internal predecessors, (88), 12 states have call successors, (16), 10 states have call predecessors, (16), 9 states have return successors, (14), 10 states have call predecessors, (14), 11 states have call successors, (14) [2024-11-09 07:10:01,249 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:10:01,249 INFO L93 Difference]: Finished difference Result 405 states and 477 transitions. [2024-11-09 07:10:01,250 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 69 states. [2024-11-09 07:10:01,250 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 25 states have (on average 3.52) internal successors, (88), 24 states have internal predecessors, (88), 12 states have call successors, (16), 10 states have call predecessors, (16), 9 states have return successors, (14), 10 states have call predecessors, (14), 11 states have call successors, (14) Word has length 50 [2024-11-09 07:10:01,250 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:10:01,252 INFO L225 Difference]: With dead ends: 405 [2024-11-09 07:10:01,252 INFO L226 Difference]: Without dead ends: 323 [2024-11-09 07:10:01,257 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 230 GetRequests, 111 SyntacticMatches, 10 SemanticMatches, 109 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4287 ImplicationChecksByTransitivity, 9.3s TimeCoverageRelationStatistics Valid=1730, Invalid=10480, Unknown=0, NotChecked=0, Total=12210 [2024-11-09 07:10:01,258 INFO L432 NwaCegarLoop]: 40 mSDtfsCounter, 564 mSDsluCounter, 405 mSDsCounter, 0 mSdLazyCounter, 944 mSolverCounterSat, 297 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 572 SdHoareTripleChecker+Valid, 445 SdHoareTripleChecker+Invalid, 1241 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 297 IncrementalHoareTripleChecker+Valid, 944 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-11-09 07:10:01,259 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [572 Valid, 445 Invalid, 1241 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [297 Valid, 944 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-11-09 07:10:01,260 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 323 states. [2024-11-09 07:10:01,283 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 323 to 179. [2024-11-09 07:10:01,284 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 126 states have (on average 1.1746031746031746) internal successors, (148), 139 states have internal predecessors, (148), 24 states have call successors, (24), 23 states have call predecessors, (24), 28 states have return successors, (30), 27 states have call predecessors, (30), 24 states have call successors, (30) [2024-11-09 07:10:01,285 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 202 transitions. [2024-11-09 07:10:01,286 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 202 transitions. Word has length 50 [2024-11-09 07:10:01,286 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:10:01,286 INFO L471 AbstractCegarLoop]: Abstraction has 179 states and 202 transitions. [2024-11-09 07:10:01,286 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 25 states have (on average 3.52) internal successors, (88), 24 states have internal predecessors, (88), 12 states have call successors, (16), 10 states have call predecessors, (16), 9 states have return successors, (14), 10 states have call predecessors, (14), 11 states have call successors, (14) [2024-11-09 07:10:01,287 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 202 transitions. [2024-11-09 07:10:01,287 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-11-09 07:10:01,288 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:10:01,288 INFO L215 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:10:01,308 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-11-09 07:10:01,492 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-11-09 07:10:01,492 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:10:01,493 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:10:01,493 INFO L85 PathProgramCache]: Analyzing trace with hash -396739879, now seen corresponding path program 2 times [2024-11-09 07:10:01,493 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:10:01,493 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1478020579] [2024-11-09 07:10:01,493 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:10:01,494 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:10:01,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:10:02,242 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 0 proven. 43 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-11-09 07:10:02,242 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:10:02,243 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1478020579] [2024-11-09 07:10:02,243 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1478020579] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 07:10:02,243 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1453657813] [2024-11-09 07:10:02,243 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-11-09 07:10:02,243 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 07:10:02,243 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 07:10:02,246 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 07:10:02,249 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-11-09 07:10:02,340 INFO L227 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 1 check-sat command(s) [2024-11-09 07:10:02,340 INFO L228 tOrderPrioritization]: Conjunction of SSA is unsat [2024-11-09 07:10:02,342 INFO L255 TraceCheckSpWp]: Trace formula consists of 148 conjuncts, 5 conjuncts are in the unsatisfiable core [2024-11-09 07:10:02,345 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 07:10:02,449 INFO L134 CoverageAnalysis]: Checked inductivity of 47 backedges. 9 proven. 0 refuted. 0 times theorem prover too weak. 38 trivial. 0 not checked. [2024-11-09 07:10:02,449 INFO L307 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-11-09 07:10:02,450 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1453657813] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-09 07:10:02,450 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-11-09 07:10:02,450 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [17] total 20 [2024-11-09 07:10:02,450 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [694155296] [2024-11-09 07:10:02,450 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-09 07:10:02,451 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-09 07:10:02,451 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:10:02,452 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-09 07:10:02,452 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=59, Invalid=321, Unknown=0, NotChecked=0, Total=380 [2024-11-09 07:10:02,452 INFO L87 Difference]: Start difference. First operand 179 states and 202 transitions. Second operand has 5 states, 5 states have (on average 6.2) internal successors, (31), 5 states have internal predecessors, (31), 1 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2024-11-09 07:10:02,576 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:10:02,576 INFO L93 Difference]: Finished difference Result 342 states and 391 transitions. [2024-11-09 07:10:02,577 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-11-09 07:10:02,577 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 5 states have internal predecessors, (31), 1 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) Word has length 63 [2024-11-09 07:10:02,578 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:10:02,579 INFO L225 Difference]: With dead ends: 342 [2024-11-09 07:10:02,579 INFO L226 Difference]: Without dead ends: 192 [2024-11-09 07:10:02,580 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 82 GetRequests, 63 SyntacticMatches, 0 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 103 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=66, Invalid=354, Unknown=0, NotChecked=0, Total=420 [2024-11-09 07:10:02,580 INFO L432 NwaCegarLoop]: 43 mSDtfsCounter, 18 mSDsluCounter, 111 mSDsCounter, 0 mSdLazyCounter, 85 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 154 SdHoareTripleChecker+Invalid, 86 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 85 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-09 07:10:02,581 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 154 Invalid, 86 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 85 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-09 07:10:02,582 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 192 states. [2024-11-09 07:10:02,603 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 192 to 178. [2024-11-09 07:10:02,603 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 178 states, 125 states have (on average 1.16) internal successors, (145), 138 states have internal predecessors, (145), 24 states have call successors, (24), 23 states have call predecessors, (24), 28 states have return successors, (30), 27 states have call predecessors, (30), 24 states have call successors, (30) [2024-11-09 07:10:02,604 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 178 states to 178 states and 199 transitions. [2024-11-09 07:10:02,605 INFO L78 Accepts]: Start accepts. Automaton has 178 states and 199 transitions. Word has length 63 [2024-11-09 07:10:02,605 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:10:02,606 INFO L471 AbstractCegarLoop]: Abstraction has 178 states and 199 transitions. [2024-11-09 07:10:02,606 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 5 states have internal predecessors, (31), 1 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (4), 2 states have call predecessors, (4), 1 states have call successors, (4) [2024-11-09 07:10:02,606 INFO L276 IsEmpty]: Start isEmpty. Operand 178 states and 199 transitions. [2024-11-09 07:10:02,607 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2024-11-09 07:10:02,607 INFO L207 NwaCegarLoop]: Found error trace [2024-11-09 07:10:02,607 INFO L215 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:10:02,628 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-11-09 07:10:02,808 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 07:10:02,809 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-09 07:10:02,809 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-09 07:10:02,809 INFO L85 PathProgramCache]: Analyzing trace with hash 107422127, now seen corresponding path program 1 times [2024-11-09 07:10:02,810 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-09 07:10:02,810 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1456722010] [2024-11-09 07:10:02,810 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:10:02,810 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-09 07:10:02,832 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:10:03,805 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 41 proven. 49 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-11-09 07:10:03,805 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-09 07:10:03,805 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1456722010] [2024-11-09 07:10:03,805 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1456722010] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-09 07:10:03,805 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [132490688] [2024-11-09 07:10:03,806 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-09 07:10:03,806 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-09 07:10:03,806 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 [2024-11-09 07:10:03,809 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-09 07:10:03,811 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-11-09 07:10:03,918 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-09 07:10:03,921 INFO L255 TraceCheckSpWp]: Trace formula consists of 302 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-11-09 07:10:03,925 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-09 07:10:04,580 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 51 proven. 36 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-11-09 07:10:04,580 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-09 07:10:05,204 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 62 proven. 21 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-11-09 07:10:05,205 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [132490688] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-09 07:10:05,205 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [147516913] [2024-11-09 07:10:05,208 INFO L159 IcfgInterpreter]: Started Sifa with 34 locations of interest [2024-11-09 07:10:05,208 INFO L166 IcfgInterpreter]: Building call graph [2024-11-09 07:10:05,208 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2024-11-09 07:10:05,209 INFO L176 IcfgInterpreter]: Starting interpretation [2024-11-09 07:10:05,209 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2024-11-09 07:10:10,377 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 165 for LOIs [2024-11-09 07:10:10,474 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 31 for LOIs [2024-11-09 07:10:10,595 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 41 for LOIs [2024-11-09 07:10:10,692 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 33 for LOIs [2024-11-09 07:10:10,698 INFO L180 IcfgInterpreter]: Interpretation finished [2024-11-09 07:10:17,468 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '6711#(and (not (= ~pumpRunning~0 0)) (<= ~pumpRunning~0 2147483647) (<= 0 (+ ~pumpRunning~0 2147483648)) (= ~waterLevel~0 0))' at error location [2024-11-09 07:10:17,469 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2024-11-09 07:10:17,469 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-09 07:10:17,469 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 13, 13] total 38 [2024-11-09 07:10:17,469 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [104200531] [2024-11-09 07:10:17,469 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-09 07:10:17,470 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 38 states [2024-11-09 07:10:17,470 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-09 07:10:17,471 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 38 interpolants. [2024-11-09 07:10:17,472 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=470, Invalid=3070, Unknown=0, NotChecked=0, Total=3540 [2024-11-09 07:10:17,472 INFO L87 Difference]: Start difference. First operand 178 states and 199 transitions. Second operand has 38 states, 36 states have (on average 4.138888888888889) internal successors, (149), 36 states have internal predecessors, (149), 16 states have call successors, (21), 8 states have call predecessors, (21), 15 states have return successors, (22), 15 states have call predecessors, (22), 16 states have call successors, (22) [2024-11-09 07:10:18,945 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-09 07:10:18,945 INFO L93 Difference]: Finished difference Result 269 states and 308 transitions. [2024-11-09 07:10:18,945 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-11-09 07:10:18,946 INFO L78 Accepts]: Start accepts. Automaton has has 38 states, 36 states have (on average 4.138888888888889) internal successors, (149), 36 states have internal predecessors, (149), 16 states have call successors, (21), 8 states have call predecessors, (21), 15 states have return successors, (22), 15 states have call predecessors, (22), 16 states have call successors, (22) Word has length 87 [2024-11-09 07:10:18,946 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-09 07:10:18,946 INFO L225 Difference]: With dead ends: 269 [2024-11-09 07:10:18,947 INFO L226 Difference]: Without dead ends: 0 [2024-11-09 07:10:18,949 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 307 GetRequests, 216 SyntacticMatches, 11 SemanticMatches, 80 ConstructedPredicates, 0 IntricatePredicates, 1 DeprecatedPredicates, 2421 ImplicationChecksByTransitivity, 8.3s TimeCoverageRelationStatistics Valid=1125, Invalid=5517, Unknown=0, NotChecked=0, Total=6642 [2024-11-09 07:10:18,949 INFO L432 NwaCegarLoop]: 33 mSDtfsCounter, 385 mSDsluCounter, 331 mSDsCounter, 0 mSdLazyCounter, 777 mSolverCounterSat, 258 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 387 SdHoareTripleChecker+Valid, 364 SdHoareTripleChecker+Invalid, 1035 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 258 IncrementalHoareTripleChecker+Valid, 777 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-11-09 07:10:18,950 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [387 Valid, 364 Invalid, 1035 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [258 Valid, 777 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-11-09 07:10:18,950 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-11-09 07:10:18,950 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-11-09 07:10:18,950 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-09 07:10:18,951 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-11-09 07:10:18,951 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 87 [2024-11-09 07:10:18,951 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-09 07:10:18,951 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-11-09 07:10:18,952 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 38 states, 36 states have (on average 4.138888888888889) internal successors, (149), 36 states have internal predecessors, (149), 16 states have call successors, (21), 8 states have call predecessors, (21), 15 states have return successors, (22), 15 states have call predecessors, (22), 16 states have call successors, (22) [2024-11-09 07:10:18,952 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-11-09 07:10:18,952 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-11-09 07:10:18,955 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-11-09 07:10:18,977 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-11-09 07:10:19,159 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-11-09 07:10:19,162 INFO L407 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-09 07:10:19,165 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-11-09 07:10:21,580 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-11-09 07:10:21,625 WARN L162 FloydHoareUtils]: Requires clause for timeShift contained old-variable. Original clause: (let ((.cse2 (= |old(~waterLevel~0)| 1)) (.cse0 (= 1 ~systemActive~0)) (.cse3 (= |old(~pumpRunning~0)| 0)) (.cse5 (= ~pumpRunning~0 0)) (.cse4 (= 2 ~waterLevel~0))) (and (let ((.cse1 (= |old(~waterLevel~0)| 2))) (or (and .cse0 (= |old(~pumpRunning~0)| 1) .cse1) .cse2 (and .cse0 .cse3 .cse1))) (or (< |old(~pumpRunning~0)| 1) (and .cse4 (= ~pumpRunning~0 1))) (or (not .cse2) (and .cse5 .cse0 .cse3 (= ~waterLevel~0 1))) (or (not .cse3) (< |old(~waterLevel~0)| 2) (and .cse5 .cse4)))) Eliminated clause: (exists ((|old(~pumpRunning~0)| Int) (|old(~waterLevel~0)| Int)) (let ((.cse2 (= |old(~waterLevel~0)| 1)) (.cse0 (= 1 ~systemActive~0)) (.cse3 (= |old(~pumpRunning~0)| 0)) (.cse5 (= ~pumpRunning~0 0)) (.cse4 (= 2 ~waterLevel~0))) (and (let ((.cse1 (= |old(~waterLevel~0)| 2))) (or (and .cse0 (= |old(~pumpRunning~0)| 1) .cse1) .cse2 (and .cse0 .cse3 .cse1))) (or (< |old(~pumpRunning~0)| 1) (and .cse4 (= ~pumpRunning~0 1))) (or (not .cse2) (and .cse5 .cse0 .cse3 (= ~waterLevel~0 1))) (or (not .cse3) (< |old(~waterLevel~0)| 2) (and .cse5 .cse4))))) [2024-11-09 07:10:21,635 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-09 07:10:21,640 WARN L162 FloydHoareUtils]: Requires clause for processEnvironment__wrappee__highWaterSensor contained old-variable. Original clause: (and (= ~pumpRunning~0 0) (or (= 2 ~waterLevel~0) (= ~waterLevel~0 1)) (= 1 ~systemActive~0) (= |old(~pumpRunning~0)| 0)) Eliminated clause: (and (= ~pumpRunning~0 0) (or (= 2 ~waterLevel~0) (= ~waterLevel~0 1)) (= 1 ~systemActive~0)) [2024-11-09 07:10:21,652 WARN L162 FloydHoareUtils]: Requires clause for waterRise contained old-variable. Original clause: (let ((.cse0 (= |old(~waterLevel~0)| 2)) (.cse2 (= ~pumpRunning~0 0))) (and (or (= 2 ~waterLevel~0) (not .cse0)) (let ((.cse1 (= 1 ~systemActive~0))) (or (and .cse1 .cse0 (= ~pumpRunning~0 1)) (and .cse2 .cse1))) (or (and (= |old(~waterLevel~0)| 1) (= ~waterLevel~0 1)) (not .cse2)))) Eliminated clause: (exists ((|old(~waterLevel~0)| Int)) (let ((.cse0 (= |old(~waterLevel~0)| 2)) (.cse2 (= ~pumpRunning~0 0))) (and (or (= 2 ~waterLevel~0) (not .cse0)) (let ((.cse1 (= 1 ~systemActive~0))) (or (and .cse1 .cse0 (= ~pumpRunning~0 1)) (and .cse2 .cse1))) (or (and (= |old(~waterLevel~0)| 1) (= ~waterLevel~0 1)) (not .cse2))))) [2024-11-09 07:10:21,657 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-09 07:10:21,658 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 09.11 07:10:21 BoogieIcfgContainer [2024-11-09 07:10:21,658 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-11-09 07:10:21,659 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-11-09 07:10:21,659 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-11-09 07:10:21,659 INFO L274 PluginConnector]: Witness Printer initialized [2024-11-09 07:10:21,659 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 07:09:37" (3/4) ... [2024-11-09 07:10:21,665 INFO L142 WitnessPrinter]: Generating witness for correct program [2024-11-09 07:10:21,670 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-11-09 07:10:21,670 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-11-09 07:10:21,670 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-11-09 07:10:21,670 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-11-09 07:10:21,671 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2024-11-09 07:10:21,671 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-11-09 07:10:21,682 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 42 nodes and edges [2024-11-09 07:10:21,683 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2024-11-09 07:10:21,683 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-11-09 07:10:21,684 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-09 07:10:21,684 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-09 07:10:21,713 WARN L216 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((1 == systemActive) && (\old(pumpRunning) == 1)) && (\old(waterLevel) == 2)) || (\old(waterLevel) == 1)) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2))) && ((\old(pumpRunning) < 1) || ((2 == waterLevel) && (pumpRunning == 1)))) && ((\old(waterLevel) != 1) || ((((pumpRunning == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (waterLevel == 1)))) && (((\old(pumpRunning) != 0) || (\old(waterLevel) < 2)) || ((pumpRunning == 0) && (2 == waterLevel)))) [2024-11-09 07:10:21,761 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((1 == systemActive) && (\old(pumpRunning) == 1)) && (\old(waterLevel) == 2)) || (\old(waterLevel) == 1)) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2))) && ((\old(pumpRunning) < 1) || ((2 == waterLevel) && (pumpRunning == 1)))) && ((\old(waterLevel) != 1) || ((((pumpRunning == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (waterLevel == 1)))) && (((\old(pumpRunning) != 0) || (\old(waterLevel) < 2)) || ((pumpRunning == 0) && (2 == waterLevel)))) [2024-11-09 07:10:21,824 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/witness.graphml [2024-11-09 07:10:21,825 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/witness.yml [2024-11-09 07:10:21,825 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-11-09 07:10:21,826 INFO L158 Benchmark]: Toolchain (without parser) took 46195.59ms. Allocated memory was 127.9MB in the beginning and 887.1MB in the end (delta: 759.2MB). Free memory was 63.6MB in the beginning and 634.0MB in the end (delta: -570.4MB). Peak memory consumption was 189.5MB. Max. memory is 16.1GB. [2024-11-09 07:10:21,826 INFO L158 Benchmark]: CDTParser took 0.21ms. Allocated memory is still 127.9MB. Free memory is still 100.2MB. There was no memory consumed. Max. memory is 16.1GB. [2024-11-09 07:10:21,826 INFO L158 Benchmark]: CACSL2BoogieTranslator took 663.66ms. Allocated memory was 127.9MB in the beginning and 163.6MB in the end (delta: 35.7MB). Free memory was 63.4MB in the beginning and 115.2MB in the end (delta: -51.8MB). Peak memory consumption was 10.0MB. Max. memory is 16.1GB. [2024-11-09 07:10:21,827 INFO L158 Benchmark]: Boogie Procedure Inliner took 63.03ms. Allocated memory is still 163.6MB. Free memory was 115.2MB in the beginning and 113.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-11-09 07:10:21,827 INFO L158 Benchmark]: Boogie Preprocessor took 39.57ms. Allocated memory is still 163.6MB. Free memory was 113.1MB in the beginning and 111.6MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-11-09 07:10:21,828 INFO L158 Benchmark]: RCFGBuilder took 708.73ms. Allocated memory is still 163.6MB. Free memory was 111.6MB in the beginning and 109.3MB in the end (delta: 2.3MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2024-11-09 07:10:21,828 INFO L158 Benchmark]: TraceAbstraction took 44543.20ms. Allocated memory was 163.6MB in the beginning and 887.1MB in the end (delta: 723.5MB). Free memory was 108.5MB in the beginning and 641.3MB in the end (delta: -532.8MB). Peak memory consumption was 515.5MB. Max. memory is 16.1GB. [2024-11-09 07:10:21,829 INFO L158 Benchmark]: Witness Printer took 166.42ms. Allocated memory is still 887.1MB. Free memory was 641.3MB in the beginning and 634.0MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2024-11-09 07:10:21,831 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21ms. Allocated memory is still 127.9MB. Free memory is still 100.2MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 663.66ms. Allocated memory was 127.9MB in the beginning and 163.6MB in the end (delta: 35.7MB). Free memory was 63.4MB in the beginning and 115.2MB in the end (delta: -51.8MB). Peak memory consumption was 10.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 63.03ms. Allocated memory is still 163.6MB. Free memory was 115.2MB in the beginning and 113.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 39.57ms. Allocated memory is still 163.6MB. Free memory was 113.1MB in the beginning and 111.6MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 708.73ms. Allocated memory is still 163.6MB. Free memory was 111.6MB in the beginning and 109.3MB in the end (delta: 2.3MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * TraceAbstraction took 44543.20ms. Allocated memory was 163.6MB in the beginning and 887.1MB in the end (delta: 723.5MB). Free memory was 108.5MB in the beginning and 641.3MB in the end (delta: -532.8MB). Peak memory consumption was 515.5MB. Max. memory is 16.1GB. * Witness Printer took 166.42ms. Allocated memory is still 887.1MB. Free memory was 641.3MB in the beginning and 634.0MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [58] - GenericResultAtLocation [Line: 169]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [169] - GenericResultAtLocation [Line: 271]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [271] - GenericResultAtLocation [Line: 472]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [472] - GenericResultAtLocation [Line: 537]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [537] - GenericResultAtLocation [Line: 572]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [572] - GenericResultAtLocation [Line: 598]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [598] - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 51 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 42.0s, OverallIterations: 12, TraceHistogramMax: 4, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 6.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1363 SdHoareTripleChecker+Valid, 2.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1336 mSDsluCounter, 1802 SdHoareTripleChecker+Invalid, 2.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1325 mSDsCounter, 659 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2599 IncrementalHoareTripleChecker+Invalid, 3258 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 659 mSolverCounterUnsat, 477 mSDtfsCounter, 2599 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 726 GetRequests, 460 SyntacticMatches, 21 SemanticMatches, 245 ConstructedPredicates, 0 IntricatePredicates, 1 DeprecatedPredicates, 6842 ImplicationChecksByTransitivity, 18.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=179occurred in iteration=10, InterpolantAutomatonStates: 146, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 12 MinimizatonAttempts, 234 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 6.5s InterpolantComputationTime, 682 NumberOfCodeBlocks, 642 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 801 ConstructedInterpolants, 0 QuantifiedInterpolants, 3395 SizeOfPredicates, 14 NumberOfNonLiveVariables, 865 ConjunctsInSsa, 55 ConjunctsInUnsatCore, 18 InterpolantComputations, 10 PerfectInterpolantSequences, 317/506 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 482]: Location Invariant Derived location invariant: 0 - InvariantResult [Line: 182]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 483]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) || ((((2 == waterLevel) && (1 == systemActive)) && (splverifierCounter == 0)) && (pumpRunning == 1))) - InvariantResult [Line: 279]: Location Invariant Derived location invariant: ((((((((1 == systemActive) && (\old(pumpRunning) == 1)) && (\old(waterLevel) == 2)) || (\old(waterLevel) == 1)) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2))) && ((\old(pumpRunning) < 1) || ((2 == waterLevel) && (pumpRunning == 1)))) && ((\old(waterLevel) != 1) || ((((pumpRunning == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (waterLevel == 1)))) && (((\old(pumpRunning) != 0) || (\old(waterLevel) < 2)) || ((pumpRunning == 0) && (2 == waterLevel)))) - ProcedureContractResult [Line: 303]: Procedure Contract for processEnvironment__wrappee__base Derived contract for procedure processEnvironment__wrappee__base. Requires: (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) Ensures: ((((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) && ((((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 93]: Procedure Contract for changeMethaneLevel Derived contract for procedure changeMethaneLevel. Requires: (((((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) || (((2 == waterLevel) && (1 == systemActive)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) Ensures: ((((((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) || (((2 == waterLevel) && (1 == systemActive)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) && (((((waterLevel == \old(waterLevel)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 279]: Procedure Contract for timeShift Derived contract for procedure timeShift. Ensures: (((((((((1 == systemActive) && (\old(pumpRunning) == 1)) && (\old(waterLevel) == 2)) || (\old(waterLevel) == 1)) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2))) && (((\old(pumpRunning) != 0) || (\old(waterLevel) < 2)) || ((2 == waterLevel) && (pumpRunning == 1)))) && (((pumpRunning == 0) && (waterLevel == 1)) || (\old(pumpRunning) < 1))) && ((\old(waterLevel) != 1) || ((((pumpRunning == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (waterLevel == 1)))) && ((((methaneLevelCritical == \old(methaneLevelCritical)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 172]: Procedure Contract for cleanup Derived contract for procedure cleanup. Requires: 0 Ensures: (0 && ((((methaneLevelCritical == \old(methaneLevelCritical)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 311]: Procedure Contract for processEnvironment__wrappee__highWaterSensor Derived contract for procedure processEnvironment__wrappee__highWaterSensor. Requires: (((pumpRunning == 0) && ((2 == waterLevel) || (waterLevel == 1))) && (1 == systemActive)) Ensures: (((((2 != waterLevel) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (pumpRunning == 1))) && ((2 == waterLevel) || (waterLevel == 1))) && ((waterLevel != 1) || (((pumpRunning == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)))) && (((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 81]: Procedure Contract for waterRise Derived contract for procedure waterRise. Ensures: (((2 == waterLevel) && ((((pumpRunning == 0) && (\old(waterLevel) == 1)) && (1 == systemActive)) || (((1 == systemActive) && (\old(waterLevel) == 2)) && (pumpRunning == 1)))) && (((((methaneLevelCritical == \old(methaneLevelCritical)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) RESULT: Ultimate proved your program to be correct! [2024-11-09 07:10:21,873 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2dffb1f0-27c2-4990-8a9b-92ab9a229711/bin/utaipan-verify-YMUCfTKeje/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE