./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 826ab2ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/plugins/org.eclipse.equinox.launcher_1.6.800.v20240513-1750.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/config/TaipanReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/config/svcomp-Reach-32bit-Taipan_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Taipan --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 5ed8e4dea18b15d78522f05bcbacefb8bf743c0552ef5a7415602905a04fdc4c --- Real Ultimate output --- This is Ultimate 0.3.0-dev-826ab2b [2024-11-14 04:46:30,037 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-11-14 04:46:30,105 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/config/svcomp-Reach-32bit-Taipan_Default.epf [2024-11-14 04:46:30,113 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-11-14 04:46:30,113 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-11-14 04:46:30,153 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-11-14 04:46:30,155 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-11-14 04:46:30,155 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-11-14 04:46:30,155 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * User list type=DISABLED [2024-11-14 04:46:30,156 INFO L151 SettingsManager]: Preferences of Abstract Interpretation differ from their defaults: [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Explicit value domain=true [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Abstract domain for RCFG-of-the-future=PoormanAbstractDomain [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Octagon Domain=false [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Abstract domain=CompoundDomain [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Check feasibility of abstract posts with an SMT solver=true [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Use the RCFG-of-the-future interface=true [2024-11-14 04:46:30,156 INFO L153 SettingsManager]: * Interval Domain=false [2024-11-14 04:46:30,157 INFO L151 SettingsManager]: Preferences of Sifa differ from their defaults: [2024-11-14 04:46:30,157 INFO L153 SettingsManager]: * Call Summarizer=TopInputCallSummarizer [2024-11-14 04:46:30,157 INFO L153 SettingsManager]: * Simplification Technique=POLY_PAC [2024-11-14 04:46:30,157 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-11-14 04:46:30,159 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-11-14 04:46:30,159 INFO L153 SettingsManager]: * sizeof long=4 [2024-11-14 04:46:30,159 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * sizeof long double=12 [2024-11-14 04:46:30,160 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-11-14 04:46:30,161 INFO L153 SettingsManager]: * Use constant arrays=true [2024-11-14 04:46:30,161 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-11-14 04:46:30,161 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-14 04:46:30,161 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-14 04:46:30,162 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2024-11-14 04:46:30,162 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-11-14 04:46:30,162 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-11-14 04:46:30,162 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-11-14 04:46:30,162 INFO L153 SettingsManager]: * Trace refinement strategy=SIFA_TAIPAN [2024-11-14 04:46:30,162 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-11-14 04:46:30,163 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-11-14 04:46:30,163 INFO L153 SettingsManager]: * Trace refinement exception blacklist=NONE [2024-11-14 04:46:30,163 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-11-14 04:46:30,163 INFO L153 SettingsManager]: * Abstract interpretation Mode=USE_PREDICATES Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Taipan Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 5ed8e4dea18b15d78522f05bcbacefb8bf743c0552ef5a7415602905a04fdc4c [2024-11-14 04:46:30,475 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-11-14 04:46:30,487 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-11-14 04:46:30,491 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-11-14 04:46:30,492 INFO L270 PluginConnector]: Initializing CDTParser... [2024-11-14 04:46:30,493 INFO L274 PluginConnector]: CDTParser initialized [2024-11-14 04:46:30,496 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/../../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c Unable to find full path for "g++" [2024-11-14 04:46:32,577 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-11-14 04:46:32,871 INFO L384 CDTParser]: Found 1 translation units. [2024-11-14 04:46:32,872 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c [2024-11-14 04:46:32,895 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/data/bd9f3b1d3/97a8ca432be9426d81df47c121de27d0/FLAG6724a0656 [2024-11-14 04:46:33,165 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/data/bd9f3b1d3/97a8ca432be9426d81df47c121de27d0 [2024-11-14 04:46:33,173 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-11-14 04:46:33,179 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-11-14 04:46:33,180 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-11-14 04:46:33,180 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-11-14 04:46:33,193 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-11-14 04:46:33,195 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,198 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@1c89102e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33, skipping insertion in model container [2024-11-14 04:46:33,202 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,242 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-11-14 04:46:33,441 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c[1605,1618] [2024-11-14 04:46:33,623 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-14 04:46:33,636 INFO L200 MainTranslator]: Completed pre-run [2024-11-14 04:46:33,648 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2024-11-14 04:46:33,651 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [58] [2024-11-14 04:46:33,651 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [169] [2024-11-14 04:46:33,651 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [271] [2024-11-14 04:46:33,652 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [499] [2024-11-14 04:46:33,653 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [525] [2024-11-14 04:46:33,653 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [592] [2024-11-14 04:46:33,655 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [627] [2024-11-14 04:46:33,661 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c[1605,1618] [2024-11-14 04:46:33,749 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-14 04:46:33,782 INFO L204 MainTranslator]: Completed translation [2024-11-14 04:46:33,783 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33 WrapperNode [2024-11-14 04:46:33,783 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-11-14 04:46:33,784 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-11-14 04:46:33,784 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-11-14 04:46:33,784 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-11-14 04:46:33,799 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,825 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,892 INFO L138 Inliner]: procedures = 57, calls = 101, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 217 [2024-11-14 04:46:33,892 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-11-14 04:46:33,893 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-11-14 04:46:33,893 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-11-14 04:46:33,893 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-11-14 04:46:33,909 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,913 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,917 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,917 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,932 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,947 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,948 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,952 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,954 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-11-14 04:46:33,961 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-11-14 04:46:33,961 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-11-14 04:46:33,961 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-11-14 04:46:33,966 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (1/1) ... [2024-11-14 04:46:33,978 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2024-11-14 04:46:33,996 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 [2024-11-14 04:46:34,016 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2024-11-14 04:46:34,023 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2024-11-14 04:46:34,054 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-11-14 04:46:34,054 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-11-14 04:46:34,054 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-11-14 04:46:34,054 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-11-14 04:46:34,054 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-11-14 04:46:34,054 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-11-14 04:46:34,055 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-11-14 04:46:34,055 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2024-11-14 04:46:34,055 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2024-11-14 04:46:34,055 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2024-11-14 04:46:34,055 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2024-11-14 04:46:34,055 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-11-14 04:46:34,055 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-11-14 04:46:34,055 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2024-11-14 04:46:34,055 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-11-14 04:46:34,055 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-11-14 04:46:34,055 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-11-14 04:46:34,055 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-11-14 04:46:34,150 INFO L238 CfgBuilder]: Building ICFG [2024-11-14 04:46:34,152 INFO L264 CfgBuilder]: Building CFG for each procedure with an implementation [2024-11-14 04:46:34,518 INFO L? ?]: Removed 49 outVars from TransFormulas that were not future-live. [2024-11-14 04:46:34,518 INFO L287 CfgBuilder]: Performing block encoding [2024-11-14 04:46:34,640 INFO L311 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-11-14 04:46:34,640 INFO L316 CfgBuilder]: Removed 2 assume(true) statements. [2024-11-14 04:46:34,641 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 14.11 04:46:34 BoogieIcfgContainer [2024-11-14 04:46:34,641 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-11-14 04:46:34,644 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-11-14 04:46:34,644 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-11-14 04:46:34,649 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-11-14 04:46:34,649 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 14.11 04:46:33" (1/3) ... [2024-11-14 04:46:34,650 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3e867530 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 14.11 04:46:34, skipping insertion in model container [2024-11-14 04:46:34,650 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 04:46:33" (2/3) ... [2024-11-14 04:46:34,650 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3e867530 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 14.11 04:46:34, skipping insertion in model container [2024-11-14 04:46:34,650 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 14.11 04:46:34" (3/3) ... [2024-11-14 04:46:34,651 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product58.cil.c [2024-11-14 04:46:34,682 INFO L217 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-11-14 04:46:34,685 INFO L154 ceAbstractionStarter]: Applying trace abstraction to ICFG minepump_spec1_product58.cil.c that has 8 procedures, 57 locations, 1 initial locations, 2 loop locations, and 1 error locations. [2024-11-14 04:46:34,753 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-11-14 04:46:34,770 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@5a2a059a, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-11-14 04:46:34,772 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-11-14 04:46:34,777 INFO L276 IsEmpty]: Start isEmpty. Operand has 57 states, 36 states have (on average 1.4166666666666667) internal successors, (51), 44 states have internal predecessors, (51), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) [2024-11-14 04:46:34,786 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-11-14 04:46:34,787 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:34,787 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:34,788 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:34,794 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:34,794 INFO L85 PathProgramCache]: Analyzing trace with hash 1674390573, now seen corresponding path program 1 times [2024-11-14 04:46:34,802 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:34,803 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [492654897] [2024-11-14 04:46:34,804 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:34,805 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:34,906 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:35,017 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-14 04:46:35,018 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:35,018 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [492654897] [2024-11-14 04:46:35,019 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [492654897] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-14 04:46:35,019 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-14 04:46:35,019 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-14 04:46:35,023 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2058495735] [2024-11-14 04:46:35,024 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-14 04:46:35,028 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-11-14 04:46:35,029 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:35,054 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-11-14 04:46:35,056 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-14 04:46:35,058 INFO L87 Difference]: Start difference. First operand has 57 states, 36 states have (on average 1.4166666666666667) internal successors, (51), 44 states have internal predecessors, (51), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-14 04:46:35,138 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:35,139 INFO L93 Difference]: Finished difference Result 112 states and 151 transitions. [2024-11-14 04:46:35,140 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-11-14 04:46:35,141 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-11-14 04:46:35,141 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:35,150 INFO L225 Difference]: With dead ends: 112 [2024-11-14 04:46:35,150 INFO L226 Difference]: Without dead ends: 52 [2024-11-14 04:46:35,155 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-14 04:46:35,161 INFO L432 NwaCegarLoop]: 55 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 55 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:35,161 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 55 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-14 04:46:35,178 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 52 states. [2024-11-14 04:46:35,203 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 52 to 52. [2024-11-14 04:46:35,206 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 33 states have (on average 1.303030303030303) internal successors, (43), 40 states have internal predecessors, (43), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2024-11-14 04:46:35,214 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 66 transitions. [2024-11-14 04:46:35,216 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 66 transitions. Word has length 16 [2024-11-14 04:46:35,217 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:35,217 INFO L471 AbstractCegarLoop]: Abstraction has 52 states and 66 transitions. [2024-11-14 04:46:35,218 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-14 04:46:35,218 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 66 transitions. [2024-11-14 04:46:35,219 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-11-14 04:46:35,221 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:35,221 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:35,222 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-11-14 04:46:35,222 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:35,223 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:35,223 INFO L85 PathProgramCache]: Analyzing trace with hash -1653652686, now seen corresponding path program 1 times [2024-11-14 04:46:35,223 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:35,224 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2002466920] [2024-11-14 04:46:35,224 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:35,224 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:35,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:35,381 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-14 04:46:35,381 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:35,381 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2002466920] [2024-11-14 04:46:35,381 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2002466920] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-14 04:46:35,381 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-14 04:46:35,382 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-14 04:46:35,382 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [81807928] [2024-11-14 04:46:35,382 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-14 04:46:35,383 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-14 04:46:35,383 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:35,384 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-14 04:46:35,384 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-14 04:46:35,384 INFO L87 Difference]: Start difference. First operand 52 states and 66 transitions. Second operand has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-14 04:46:35,447 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:35,447 INFO L93 Difference]: Finished difference Result 81 states and 103 transitions. [2024-11-14 04:46:35,449 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-14 04:46:35,450 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-11-14 04:46:35,450 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:35,451 INFO L225 Difference]: With dead ends: 81 [2024-11-14 04:46:35,451 INFO L226 Difference]: Without dead ends: 44 [2024-11-14 04:46:35,451 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-14 04:46:35,452 INFO L432 NwaCegarLoop]: 41 mSDtfsCounter, 7 mSDsluCounter, 32 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 73 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:35,452 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 73 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-14 04:46:35,455 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 44 states. [2024-11-14 04:46:35,462 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 44 to 44. [2024-11-14 04:46:35,463 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 44 states, 28 states have (on average 1.3214285714285714) internal successors, (37), 35 states have internal predecessors, (37), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2024-11-14 04:46:35,465 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 44 states to 44 states and 55 transitions. [2024-11-14 04:46:35,465 INFO L78 Accepts]: Start accepts. Automaton has 44 states and 55 transitions. Word has length 17 [2024-11-14 04:46:35,465 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:35,465 INFO L471 AbstractCegarLoop]: Abstraction has 44 states and 55 transitions. [2024-11-14 04:46:35,465 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-14 04:46:35,466 INFO L276 IsEmpty]: Start isEmpty. Operand 44 states and 55 transitions. [2024-11-14 04:46:35,469 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2024-11-14 04:46:35,469 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:35,470 INFO L215 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:35,470 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-11-14 04:46:35,470 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:35,470 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:35,470 INFO L85 PathProgramCache]: Analyzing trace with hash 1852487397, now seen corresponding path program 1 times [2024-11-14 04:46:35,471 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:35,471 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1201174927] [2024-11-14 04:46:35,471 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:35,471 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:35,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:35,656 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-14 04:46:35,656 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:35,656 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1201174927] [2024-11-14 04:46:35,656 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1201174927] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-14 04:46:35,657 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-14 04:46:35,657 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-14 04:46:35,657 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1837746239] [2024-11-14 04:46:35,657 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-14 04:46:35,657 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-14 04:46:35,658 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:35,658 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-14 04:46:35,658 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-14 04:46:35,658 INFO L87 Difference]: Start difference. First operand 44 states and 55 transitions. Second operand has 4 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-14 04:46:35,798 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:35,798 INFO L93 Difference]: Finished difference Result 118 states and 152 transitions. [2024-11-14 04:46:35,800 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-14 04:46:35,801 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2024-11-14 04:46:35,801 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:35,802 INFO L225 Difference]: With dead ends: 118 [2024-11-14 04:46:35,802 INFO L226 Difference]: Without dead ends: 76 [2024-11-14 04:46:35,803 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2024-11-14 04:46:35,804 INFO L432 NwaCegarLoop]: 40 mSDtfsCounter, 32 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 45 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 32 SdHoareTripleChecker+Valid, 110 SdHoareTripleChecker+Invalid, 50 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 45 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:35,804 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [32 Valid, 110 Invalid, 50 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 45 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-14 04:46:35,805 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2024-11-14 04:46:35,816 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2024-11-14 04:46:35,817 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 50 states have (on average 1.26) internal successors, (63), 57 states have internal predecessors, (63), 13 states have call successors, (13), 12 states have call predecessors, (13), 12 states have return successors, (17), 13 states have call predecessors, (17), 13 states have call successors, (17) [2024-11-14 04:46:35,819 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 93 transitions. [2024-11-14 04:46:35,820 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 93 transitions. Word has length 19 [2024-11-14 04:46:35,820 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:35,820 INFO L471 AbstractCegarLoop]: Abstraction has 76 states and 93 transitions. [2024-11-14 04:46:35,820 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-14 04:46:35,820 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 93 transitions. [2024-11-14 04:46:35,821 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-11-14 04:46:35,821 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:35,821 INFO L215 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:35,822 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-11-14 04:46:35,822 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:35,825 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:35,825 INFO L85 PathProgramCache]: Analyzing trace with hash -429933361, now seen corresponding path program 1 times [2024-11-14 04:46:35,825 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:35,825 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [578433083] [2024-11-14 04:46:35,825 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:35,826 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:35,871 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:36,276 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-11-14 04:46:36,276 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:36,276 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [578433083] [2024-11-14 04:46:36,277 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [578433083] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-14 04:46:36,277 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-14 04:46:36,277 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-14 04:46:36,277 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1611183063] [2024-11-14 04:46:36,277 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-14 04:46:36,278 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-14 04:46:36,278 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:36,279 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-14 04:46:36,279 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-11-14 04:46:36,280 INFO L87 Difference]: Start difference. First operand 76 states and 93 transitions. Second operand has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 6 states have internal predecessors, (23), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-11-14 04:46:36,557 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:36,558 INFO L93 Difference]: Finished difference Result 214 states and 261 transitions. [2024-11-14 04:46:36,558 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-11-14 04:46:36,558 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 6 states have internal predecessors, (23), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 31 [2024-11-14 04:46:36,559 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:36,561 INFO L225 Difference]: With dead ends: 214 [2024-11-14 04:46:36,564 INFO L226 Difference]: Without dead ends: 140 [2024-11-14 04:46:36,565 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=26, Unknown=0, NotChecked=0, Total=42 [2024-11-14 04:46:36,566 INFO L432 NwaCegarLoop]: 62 mSDtfsCounter, 59 mSDsluCounter, 148 mSDsCounter, 0 mSdLazyCounter, 152 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 59 SdHoareTripleChecker+Valid, 210 SdHoareTripleChecker+Invalid, 155 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 152 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:36,566 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [59 Valid, 210 Invalid, 155 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 152 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-14 04:46:36,567 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 140 states. [2024-11-14 04:46:36,601 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 140 to 122. [2024-11-14 04:46:36,602 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 122 states, 81 states have (on average 1.2345679012345678) internal successors, (100), 89 states have internal predecessors, (100), 19 states have call successors, (19), 19 states have call predecessors, (19), 21 states have return successors, (25), 20 states have call predecessors, (25), 19 states have call successors, (25) [2024-11-14 04:46:36,603 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 122 states to 122 states and 144 transitions. [2024-11-14 04:46:36,606 INFO L78 Accepts]: Start accepts. Automaton has 122 states and 144 transitions. Word has length 31 [2024-11-14 04:46:36,606 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:36,607 INFO L471 AbstractCegarLoop]: Abstraction has 122 states and 144 transitions. [2024-11-14 04:46:36,607 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 6 states have internal predecessors, (23), 4 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-11-14 04:46:36,607 INFO L276 IsEmpty]: Start isEmpty. Operand 122 states and 144 transitions. [2024-11-14 04:46:36,608 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-11-14 04:46:36,608 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:36,608 INFO L215 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:36,608 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-11-14 04:46:36,608 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:36,608 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:36,609 INFO L85 PathProgramCache]: Analyzing trace with hash -370877256, now seen corresponding path program 1 times [2024-11-14 04:46:36,609 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:36,609 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [328398051] [2024-11-14 04:46:36,609 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:36,609 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:36,643 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:36,795 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-11-14 04:46:36,795 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:36,795 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [328398051] [2024-11-14 04:46:36,795 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [328398051] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-14 04:46:36,796 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-14 04:46:36,796 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-14 04:46:36,796 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [418844079] [2024-11-14 04:46:36,796 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-14 04:46:36,796 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-14 04:46:36,796 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:36,797 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-14 04:46:36,797 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-11-14 04:46:36,797 INFO L87 Difference]: Start difference. First operand 122 states and 144 transitions. Second operand has 6 states, 5 states have (on average 5.0) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-14 04:46:37,025 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:37,025 INFO L93 Difference]: Finished difference Result 353 states and 427 transitions. [2024-11-14 04:46:37,026 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-14 04:46:37,026 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 5.0) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) Word has length 34 [2024-11-14 04:46:37,027 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:37,029 INFO L225 Difference]: With dead ends: 353 [2024-11-14 04:46:37,031 INFO L226 Difference]: Without dead ends: 233 [2024-11-14 04:46:37,033 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-11-14 04:46:37,034 INFO L432 NwaCegarLoop]: 39 mSDtfsCounter, 31 mSDsluCounter, 136 mSDsCounter, 0 mSdLazyCounter, 97 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 175 SdHoareTripleChecker+Invalid, 97 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 97 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:37,034 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 175 Invalid, 97 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 97 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-14 04:46:37,035 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 233 states. [2024-11-14 04:46:37,088 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 233 to 227. [2024-11-14 04:46:37,089 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 227 states, 152 states have (on average 1.2105263157894737) internal successors, (184), 164 states have internal predecessors, (184), 35 states have call successors, (35), 35 states have call predecessors, (35), 39 states have return successors, (47), 37 states have call predecessors, (47), 35 states have call successors, (47) [2024-11-14 04:46:37,094 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 227 states to 227 states and 266 transitions. [2024-11-14 04:46:37,095 INFO L78 Accepts]: Start accepts. Automaton has 227 states and 266 transitions. Word has length 34 [2024-11-14 04:46:37,095 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:37,095 INFO L471 AbstractCegarLoop]: Abstraction has 227 states and 266 transitions. [2024-11-14 04:46:37,095 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 5.0) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-14 04:46:37,095 INFO L276 IsEmpty]: Start isEmpty. Operand 227 states and 266 transitions. [2024-11-14 04:46:37,100 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-11-14 04:46:37,100 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:37,100 INFO L215 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:37,101 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-11-14 04:46:37,101 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:37,101 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:37,101 INFO L85 PathProgramCache]: Analyzing trace with hash 405516645, now seen corresponding path program 1 times [2024-11-14 04:46:37,101 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:37,101 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1639608144] [2024-11-14 04:46:37,102 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:37,102 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:37,122 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:37,421 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-11-14 04:46:37,422 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:37,424 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1639608144] [2024-11-14 04:46:37,424 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1639608144] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-14 04:46:37,424 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-14 04:46:37,424 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [11] imperfect sequences [] total 11 [2024-11-14 04:46:37,424 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2119760864] [2024-11-14 04:46:37,424 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-14 04:46:37,425 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-11-14 04:46:37,425 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:37,425 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-11-14 04:46:37,425 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=25, Invalid=85, Unknown=0, NotChecked=0, Total=110 [2024-11-14 04:46:37,425 INFO L87 Difference]: Start difference. First operand 227 states and 266 transitions. Second operand has 11 states, 10 states have (on average 2.5) internal successors, (25), 9 states have internal predecessors, (25), 3 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2024-11-14 04:46:38,193 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:38,194 INFO L93 Difference]: Finished difference Result 401 states and 493 transitions. [2024-11-14 04:46:38,194 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-11-14 04:46:38,194 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 10 states have (on average 2.5) internal successors, (25), 9 states have internal predecessors, (25), 3 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) Word has length 37 [2024-11-14 04:46:38,195 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:38,198 INFO L225 Difference]: With dead ends: 401 [2024-11-14 04:46:38,198 INFO L226 Difference]: Without dead ends: 313 [2024-11-14 04:46:38,199 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 30 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 24 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 126 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=179, Invalid=471, Unknown=0, NotChecked=0, Total=650 [2024-11-14 04:46:38,200 INFO L432 NwaCegarLoop]: 28 mSDtfsCounter, 290 mSDsluCounter, 145 mSDsCounter, 0 mSdLazyCounter, 243 mSolverCounterSat, 210 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 294 SdHoareTripleChecker+Valid, 173 SdHoareTripleChecker+Invalid, 453 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 210 IncrementalHoareTripleChecker+Valid, 243 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:38,200 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [294 Valid, 173 Invalid, 453 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [210 Valid, 243 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-11-14 04:46:38,201 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 313 states. [2024-11-14 04:46:38,243 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 313 to 307. [2024-11-14 04:46:38,244 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 307 states, 207 states have (on average 1.21256038647343) internal successors, (251), 224 states have internal predecessors, (251), 47 states have call successors, (47), 44 states have call predecessors, (47), 52 states have return successors, (73), 49 states have call predecessors, (73), 47 states have call successors, (73) [2024-11-14 04:46:38,248 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 307 states to 307 states and 371 transitions. [2024-11-14 04:46:38,249 INFO L78 Accepts]: Start accepts. Automaton has 307 states and 371 transitions. Word has length 37 [2024-11-14 04:46:38,249 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:38,249 INFO L471 AbstractCegarLoop]: Abstraction has 307 states and 371 transitions. [2024-11-14 04:46:38,249 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 10 states have (on average 2.5) internal successors, (25), 9 states have internal predecessors, (25), 3 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2024-11-14 04:46:38,250 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 371 transitions. [2024-11-14 04:46:38,252 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2024-11-14 04:46:38,252 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:38,252 INFO L215 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:38,252 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-11-14 04:46:38,253 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:38,253 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:38,253 INFO L85 PathProgramCache]: Analyzing trace with hash 841714965, now seen corresponding path program 1 times [2024-11-14 04:46:38,253 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:38,254 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [729918550] [2024-11-14 04:46:38,254 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:38,254 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:38,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:38,378 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-11-14 04:46:38,378 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:38,378 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [729918550] [2024-11-14 04:46:38,378 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [729918550] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-14 04:46:38,379 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-14 04:46:38,379 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-14 04:46:38,379 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [40296763] [2024-11-14 04:46:38,379 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-14 04:46:38,379 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-14 04:46:38,379 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:38,380 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-14 04:46:38,380 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-14 04:46:38,380 INFO L87 Difference]: Start difference. First operand 307 states and 371 transitions. Second operand has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 3 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-11-14 04:46:38,451 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:38,452 INFO L93 Difference]: Finished difference Result 606 states and 741 transitions. [2024-11-14 04:46:38,454 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-14 04:46:38,455 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 3 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 54 [2024-11-14 04:46:38,455 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:38,457 INFO L225 Difference]: With dead ends: 606 [2024-11-14 04:46:38,458 INFO L226 Difference]: Without dead ends: 301 [2024-11-14 04:46:38,459 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-14 04:46:38,460 INFO L432 NwaCegarLoop]: 39 mSDtfsCounter, 34 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 39 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:38,460 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 39 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-14 04:46:38,461 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 301 states. [2024-11-14 04:46:38,501 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 301 to 280. [2024-11-14 04:46:38,502 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 280 states, 189 states have (on average 1.1746031746031746) internal successors, (222), 203 states have internal predecessors, (222), 43 states have call successors, (43), 40 states have call predecessors, (43), 47 states have return successors, (62), 45 states have call predecessors, (62), 43 states have call successors, (62) [2024-11-14 04:46:38,504 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 280 states to 280 states and 327 transitions. [2024-11-14 04:46:38,505 INFO L78 Accepts]: Start accepts. Automaton has 280 states and 327 transitions. Word has length 54 [2024-11-14 04:46:38,505 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:38,505 INFO L471 AbstractCegarLoop]: Abstraction has 280 states and 327 transitions. [2024-11-14 04:46:38,505 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 3 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-11-14 04:46:38,506 INFO L276 IsEmpty]: Start isEmpty. Operand 280 states and 327 transitions. [2024-11-14 04:46:38,508 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2024-11-14 04:46:38,508 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:38,508 INFO L215 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:38,509 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-11-14 04:46:38,509 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:38,509 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:38,509 INFO L85 PathProgramCache]: Analyzing trace with hash 415477113, now seen corresponding path program 1 times [2024-11-14 04:46:38,510 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:38,510 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1926425524] [2024-11-14 04:46:38,510 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:38,510 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:38,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:39,335 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 5 proven. 14 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-11-14 04:46:39,336 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:39,336 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1926425524] [2024-11-14 04:46:39,336 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1926425524] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-14 04:46:39,336 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1948476465] [2024-11-14 04:46:39,336 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:39,336 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-14 04:46:39,337 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 [2024-11-14 04:46:39,339 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-14 04:46:39,342 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-11-14 04:46:39,452 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:39,459 INFO L255 TraceCheckSpWp]: Trace formula consists of 238 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-11-14 04:46:39,468 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-14 04:46:39,976 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 13 proven. 10 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-11-14 04:46:39,977 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-14 04:46:40,596 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 8 proven. 3 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-11-14 04:46:40,597 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1948476465] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-14 04:46:40,597 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1383693159] [2024-11-14 04:46:40,627 INFO L159 IcfgInterpreter]: Started Sifa with 43 locations of interest [2024-11-14 04:46:40,627 INFO L166 IcfgInterpreter]: Building call graph [2024-11-14 04:46:40,631 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2024-11-14 04:46:40,638 INFO L176 IcfgInterpreter]: Starting interpretation [2024-11-14 04:46:40,638 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2024-11-14 04:46:44,161 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 150 for LOIs [2024-11-14 04:46:44,229 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 39 for LOIs [2024-11-14 04:46:44,427 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 49 for LOIs [2024-11-14 04:46:44,617 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 45 for LOIs [2024-11-14 04:46:44,630 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 16 for LOIs [2024-11-14 04:46:44,633 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 40 for LOIs [2024-11-14 04:46:44,640 INFO L180 IcfgInterpreter]: Interpretation finished [2024-11-14 04:46:48,960 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '5053#(and (<= ~methaneLevelCritical~0 1) (not (= ~pumpRunning~0 0)) (<= ~pumpRunning~0 2147483647) (not (= ~methaneLevelCritical~0 0)) (<= 0 ~methaneLevelCritical~0) (<= 0 (+ ~pumpRunning~0 2147483648)))' at error location [2024-11-14 04:46:48,961 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2024-11-14 04:46:48,961 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-14 04:46:48,961 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 11, 11] total 30 [2024-11-14 04:46:48,961 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1643680232] [2024-11-14 04:46:48,961 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-14 04:46:48,962 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-11-14 04:46:48,962 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:46:48,963 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-11-14 04:46:48,964 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=397, Invalid=3143, Unknown=0, NotChecked=0, Total=3540 [2024-11-14 04:46:48,965 INFO L87 Difference]: Start difference. First operand 280 states and 327 transitions. Second operand has 30 states, 27 states have (on average 3.6666666666666665) internal successors, (99), 26 states have internal predecessors, (99), 14 states have call successors, (26), 11 states have call predecessors, (26), 10 states have return successors, (23), 10 states have call predecessors, (23), 14 states have call successors, (23) [2024-11-14 04:46:51,355 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:46:51,355 INFO L93 Difference]: Finished difference Result 970 states and 1201 transitions. [2024-11-14 04:46:51,356 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 35 states. [2024-11-14 04:46:51,356 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 27 states have (on average 3.6666666666666665) internal successors, (99), 26 states have internal predecessors, (99), 14 states have call successors, (26), 11 states have call predecessors, (26), 10 states have return successors, (23), 10 states have call predecessors, (23), 14 states have call successors, (23) Word has length 65 [2024-11-14 04:46:51,357 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:46:51,363 INFO L225 Difference]: With dead ends: 970 [2024-11-14 04:46:51,363 INFO L226 Difference]: Without dead ends: 752 [2024-11-14 04:46:51,368 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 245 GetRequests, 153 SyntacticMatches, 6 SemanticMatches, 86 ConstructedPredicates, 0 IntricatePredicates, 1 DeprecatedPredicates, 3057 ImplicationChecksByTransitivity, 6.0s TimeCoverageRelationStatistics Valid=1066, Invalid=6590, Unknown=0, NotChecked=0, Total=7656 [2024-11-14 04:46:51,369 INFO L432 NwaCegarLoop]: 38 mSDtfsCounter, 875 mSDsluCounter, 423 mSDsCounter, 0 mSdLazyCounter, 761 mSolverCounterSat, 528 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 879 SdHoareTripleChecker+Valid, 461 SdHoareTripleChecker+Invalid, 1289 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 528 IncrementalHoareTripleChecker+Valid, 761 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-11-14 04:46:51,370 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [879 Valid, 461 Invalid, 1289 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [528 Valid, 761 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-11-14 04:46:51,372 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 752 states. [2024-11-14 04:46:51,464 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 752 to 652. [2024-11-14 04:46:51,465 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 652 states, 441 states have (on average 1.1609977324263039) internal successors, (512), 477 states have internal predecessors, (512), 102 states have call successors, (102), 84 states have call predecessors, (102), 108 states have return successors, (166), 111 states have call predecessors, (166), 102 states have call successors, (166) [2024-11-14 04:46:51,470 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 652 states to 652 states and 780 transitions. [2024-11-14 04:46:51,471 INFO L78 Accepts]: Start accepts. Automaton has 652 states and 780 transitions. Word has length 65 [2024-11-14 04:46:51,472 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:46:51,472 INFO L471 AbstractCegarLoop]: Abstraction has 652 states and 780 transitions. [2024-11-14 04:46:51,473 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 27 states have (on average 3.6666666666666665) internal successors, (99), 26 states have internal predecessors, (99), 14 states have call successors, (26), 11 states have call predecessors, (26), 10 states have return successors, (23), 10 states have call predecessors, (23), 14 states have call successors, (23) [2024-11-14 04:46:51,473 INFO L276 IsEmpty]: Start isEmpty. Operand 652 states and 780 transitions. [2024-11-14 04:46:51,476 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 115 [2024-11-14 04:46:51,476 INFO L207 NwaCegarLoop]: Found error trace [2024-11-14 04:46:51,477 INFO L215 NwaCegarLoop]: trace histogram [6, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:46:51,503 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-11-14 04:46:51,677 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-14 04:46:51,678 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-14 04:46:51,678 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-14 04:46:51,678 INFO L85 PathProgramCache]: Analyzing trace with hash -433513293, now seen corresponding path program 1 times [2024-11-14 04:46:51,678 INFO L118 FreeRefinementEngine]: Executing refinement strategy SIFA_TAIPAN [2024-11-14 04:46:51,679 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1668496377] [2024-11-14 04:46:51,679 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:51,679 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-14 04:46:51,712 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:52,963 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 52 proven. 52 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2024-11-14 04:46:52,964 INFO L136 FreeRefinementEngine]: Strategy SIFA_TAIPAN found an infeasible trace [2024-11-14 04:46:52,964 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1668496377] [2024-11-14 04:46:52,964 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1668496377] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-14 04:46:52,964 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [403540239] [2024-11-14 04:46:52,964 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-14 04:46:52,964 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-14 04:46:52,964 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 [2024-11-14 04:46:52,967 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-14 04:46:52,969 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-11-14 04:46:53,088 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-14 04:46:53,090 INFO L255 TraceCheckSpWp]: Trace formula consists of 358 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-11-14 04:46:53,094 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-14 04:46:53,657 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 81 proven. 42 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2024-11-14 04:46:53,657 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-14 04:46:54,295 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 72 proven. 25 refuted. 0 times theorem prover too weak. 46 trivial. 0 not checked. [2024-11-14 04:46:54,295 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [403540239] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-14 04:46:54,295 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSifa [1907425573] [2024-11-14 04:46:54,298 INFO L159 IcfgInterpreter]: Started Sifa with 43 locations of interest [2024-11-14 04:46:54,298 INFO L166 IcfgInterpreter]: Building call graph [2024-11-14 04:46:54,298 INFO L171 IcfgInterpreter]: Initial procedures are [ULTIMATE.start] [2024-11-14 04:46:54,299 INFO L176 IcfgInterpreter]: Starting interpretation [2024-11-14 04:46:54,299 INFO L197 IcfgInterpreter]: Interpreting procedure ULTIMATE.start with input of size 1 for LOIs [2024-11-14 04:46:56,754 INFO L197 IcfgInterpreter]: Interpreting procedure waterRise with input of size 150 for LOIs [2024-11-14 04:46:56,818 INFO L197 IcfgInterpreter]: Interpreting procedure timeShift with input of size 39 for LOIs [2024-11-14 04:46:56,983 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__highWaterSensor with input of size 49 for LOIs [2024-11-14 04:46:57,120 INFO L197 IcfgInterpreter]: Interpreting procedure isMethaneLevelCritical with input of size 45 for LOIs [2024-11-14 04:46:57,134 INFO L197 IcfgInterpreter]: Interpreting procedure changeMethaneLevel with input of size 16 for LOIs [2024-11-14 04:46:57,136 INFO L197 IcfgInterpreter]: Interpreting procedure processEnvironment__wrappee__base with input of size 40 for LOIs [2024-11-14 04:46:57,141 INFO L180 IcfgInterpreter]: Interpretation finished [2024-11-14 04:47:01,808 INFO L133 SifaRunner]: Sifa could not show that error location is unreachable, found '8276#(and (<= ~methaneLevelCritical~0 1) (not (= ~pumpRunning~0 0)) (<= ~pumpRunning~0 2147483647) (not (= ~methaneLevelCritical~0 0)) (<= 0 ~methaneLevelCritical~0) (<= 0 (+ ~pumpRunning~0 2147483648)))' at error location [2024-11-14 04:47:01,808 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: ALGORITHM_FAILED [2024-11-14 04:47:01,808 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-14 04:47:01,808 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 13, 13] total 34 [2024-11-14 04:47:01,808 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [470840466] [2024-11-14 04:47:01,808 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-14 04:47:01,809 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 34 states [2024-11-14 04:47:01,809 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy SIFA_TAIPAN [2024-11-14 04:47:01,810 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 34 interpolants. [2024-11-14 04:47:01,811 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=467, Invalid=3565, Unknown=0, NotChecked=0, Total=4032 [2024-11-14 04:47:01,811 INFO L87 Difference]: Start difference. First operand 652 states and 780 transitions. Second operand has 34 states, 32 states have (on average 4.9375) internal successors, (158), 33 states have internal predecessors, (158), 22 states have call successors, (36), 8 states have call predecessors, (36), 14 states have return successors, (38), 18 states have call predecessors, (38), 22 states have call successors, (38) [2024-11-14 04:47:02,638 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-14 04:47:02,638 INFO L93 Difference]: Finished difference Result 908 states and 1087 transitions. [2024-11-14 04:47:02,638 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-11-14 04:47:02,639 INFO L78 Accepts]: Start accepts. Automaton has has 34 states, 32 states have (on average 4.9375) internal successors, (158), 33 states have internal predecessors, (158), 22 states have call successors, (36), 8 states have call predecessors, (36), 14 states have return successors, (38), 18 states have call predecessors, (38), 22 states have call successors, (38) Word has length 114 [2024-11-14 04:47:02,639 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-14 04:47:02,641 INFO L225 Difference]: With dead ends: 908 [2024-11-14 04:47:02,641 INFO L226 Difference]: Without dead ends: 0 [2024-11-14 04:47:02,646 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 376 GetRequests, 293 SyntacticMatches, 9 SemanticMatches, 74 ConstructedPredicates, 0 IntricatePredicates, 1 DeprecatedPredicates, 2511 ImplicationChecksByTransitivity, 5.6s TimeCoverageRelationStatistics Valid=732, Invalid=4968, Unknown=0, NotChecked=0, Total=5700 [2024-11-14 04:47:02,649 INFO L432 NwaCegarLoop]: 40 mSDtfsCounter, 384 mSDsluCounter, 241 mSDsCounter, 0 mSdLazyCounter, 497 mSolverCounterSat, 252 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 387 SdHoareTripleChecker+Valid, 281 SdHoareTripleChecker+Invalid, 749 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 252 IncrementalHoareTripleChecker+Valid, 497 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-11-14 04:47:02,649 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [387 Valid, 281 Invalid, 749 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [252 Valid, 497 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-11-14 04:47:02,649 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-11-14 04:47:02,649 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-11-14 04:47:02,650 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-14 04:47:02,650 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-11-14 04:47:02,650 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 114 [2024-11-14 04:47:02,650 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-14 04:47:02,651 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-11-14 04:47:02,651 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 34 states, 32 states have (on average 4.9375) internal successors, (158), 33 states have internal predecessors, (158), 22 states have call successors, (36), 8 states have call predecessors, (36), 14 states have return successors, (38), 18 states have call predecessors, (38), 22 states have call successors, (38) [2024-11-14 04:47:02,651 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-11-14 04:47:02,651 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-11-14 04:47:02,656 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-11-14 04:47:02,675 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-11-14 04:47:02,857 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-14 04:47:02,859 INFO L407 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-14 04:47:02,861 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-11-14 04:47:05,883 INFO L173 ceAbstractionStarter]: Computing trace abstraction results [2024-11-14 04:47:05,928 WARN L162 FloydHoareUtils]: Requires clause for timeShift contained old-variable. Original clause: (let ((.cse2 (= |old(~waterLevel~0)| 2)) (.cse3 (= |old(~waterLevel~0)| 1))) (and (let ((.cse0 (= |old(~pumpRunning~0)| 0)) (.cse1 (not (= 0 ~systemActive~0)))) (or (and (or .cse0 (= |old(~pumpRunning~0)| 1)) .cse1 .cse2) (and .cse3 .cse0 .cse1))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 2 ~waterLevel~0)) (not .cse2)) (or (not .cse3) (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1))))) Eliminated clause: (exists ((|old(~pumpRunning~0)| Int) (|old(~waterLevel~0)| Int)) (let ((.cse2 (= |old(~waterLevel~0)| 2)) (.cse3 (= |old(~waterLevel~0)| 1))) (and (let ((.cse0 (= |old(~pumpRunning~0)| 0)) (.cse1 (not (= 0 ~systemActive~0)))) (or (and (or .cse0 (= |old(~pumpRunning~0)| 1)) .cse1 .cse2) (and .cse3 .cse0 .cse1))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 2 ~waterLevel~0)) (not .cse2)) (or (not .cse3) (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1)))))) [2024-11-14 04:47:05,939 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-14 04:47:05,954 WARN L162 FloydHoareUtils]: Requires clause for processEnvironment__wrappee__highWaterSensor contained old-variable. Original clause: (and (= ~pumpRunning~0 0) (= |old(~pumpRunning~0)| 0) (let ((.cse0 (not (= 0 ~systemActive~0)))) (or (and (= 2 ~waterLevel~0) .cse0) (and (= ~waterLevel~0 1) .cse0)))) Eliminated clause: (and (= ~pumpRunning~0 0) (let ((.cse0 (not (= 0 ~systemActive~0)))) (or (and (= 2 ~waterLevel~0) .cse0) (and (= ~waterLevel~0 1) .cse0)))) [2024-11-14 04:47:05,968 WARN L162 FloydHoareUtils]: Requires clause for waterRise contained old-variable. Original clause: (let ((.cse1 (not (= 0 ~systemActive~0))) (.cse0 (= |old(~waterLevel~0)| 2)) (.cse2 (= |old(~waterLevel~0)| 1))) (and (or (= 2 ~waterLevel~0) (not .cse0)) (or (and (= ~waterLevel~0 1) .cse1) (not .cse2)) (let ((.cse3 (= ~pumpRunning~0 0))) (or (and (or .cse3 (= ~pumpRunning~0 1)) (or .cse3 (= ~methaneLevelCritical~0 0)) .cse1 .cse0) (and .cse3 .cse2))))) Eliminated clause: (exists ((|old(~waterLevel~0)| Int)) (let ((.cse1 (not (= 0 ~systemActive~0))) (.cse0 (= |old(~waterLevel~0)| 2)) (.cse2 (= |old(~waterLevel~0)| 1))) (and (or (= 2 ~waterLevel~0) (not .cse0)) (or (and (= ~waterLevel~0 1) .cse1) (not .cse2)) (let ((.cse3 (= ~pumpRunning~0 0))) (or (and (or .cse3 (= ~pumpRunning~0 1)) (or .cse3 (= ~methaneLevelCritical~0 0)) .cse1 .cse0) (and .cse3 .cse2)))))) [2024-11-14 04:47:05,973 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-14 04:47:05,974 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 14.11 04:47:05 BoogieIcfgContainer [2024-11-14 04:47:05,974 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-11-14 04:47:05,975 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-11-14 04:47:05,975 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-11-14 04:47:05,975 INFO L274 PluginConnector]: Witness Printer initialized [2024-11-14 04:47:05,976 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 14.11 04:46:34" (3/4) ... [2024-11-14 04:47:05,979 INFO L142 WitnessPrinter]: Generating witness for correct program [2024-11-14 04:47:05,985 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-11-14 04:47:05,985 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-11-14 04:47:05,986 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-11-14 04:47:05,986 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-11-14 04:47:05,986 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2024-11-14 04:47:05,986 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2024-11-14 04:47:05,986 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-11-14 04:47:05,992 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 46 nodes and edges [2024-11-14 04:47:05,993 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2024-11-14 04:47:05,993 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-11-14 04:47:05,994 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-14 04:47:05,994 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-14 04:47:06,022 WARN L216 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((\old(pumpRunning) == 0) || (\old(pumpRunning) == 1)) && (0 != systemActive)) && (\old(waterLevel) == 2)) || (((\old(waterLevel) == 1) && (\old(pumpRunning) == 0)) && (0 != systemActive))) && (((pumpRunning == \old(pumpRunning)) && (2 == waterLevel)) || (\old(waterLevel) != 2))) && ((\old(waterLevel) != 1) || ((pumpRunning == 0) && (waterLevel == 1)))) [2024-11-14 04:47:06,056 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((\old(pumpRunning) == 0) || (\old(pumpRunning) == 1)) && (0 != systemActive)) && (\old(waterLevel) == 2)) || (((\old(waterLevel) == 1) && (\old(pumpRunning) == 0)) && (0 != systemActive))) && (((pumpRunning == \old(pumpRunning)) && (2 == waterLevel)) || (\old(waterLevel) != 2))) && ((\old(waterLevel) != 1) || ((pumpRunning == 0) && (waterLevel == 1)))) [2024-11-14 04:47:06,109 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/witness.graphml [2024-11-14 04:47:06,109 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/witness.yml [2024-11-14 04:47:06,109 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-11-14 04:47:06,110 INFO L158 Benchmark]: Toolchain (without parser) took 32931.58ms. Allocated memory was 117.4MB in the beginning and 813.7MB in the end (delta: 696.3MB). Free memory was 91.8MB in the beginning and 519.8MB in the end (delta: -428.0MB). Peak memory consumption was 264.7MB. Max. memory is 16.1GB. [2024-11-14 04:47:06,111 INFO L158 Benchmark]: CDTParser took 1.13ms. Allocated memory is still 117.4MB. Free memory is still 74.0MB. There was no memory consumed. Max. memory is 16.1GB. [2024-11-14 04:47:06,112 INFO L158 Benchmark]: CACSL2BoogieTranslator took 603.24ms. Allocated memory is still 117.4MB. Free memory was 91.4MB in the beginning and 71.1MB in the end (delta: 20.3MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-11-14 04:47:06,112 INFO L158 Benchmark]: Boogie Procedure Inliner took 108.57ms. Allocated memory is still 117.4MB. Free memory was 71.1MB in the beginning and 69.1MB in the end (delta: 1.9MB). There was no memory consumed. Max. memory is 16.1GB. [2024-11-14 04:47:06,113 INFO L158 Benchmark]: Boogie Preprocessor took 61.56ms. Allocated memory is still 117.4MB. Free memory was 69.1MB in the beginning and 68.0MB in the end (delta: 1.2MB). There was no memory consumed. Max. memory is 16.1GB. [2024-11-14 04:47:06,113 INFO L158 Benchmark]: RCFGBuilder took 680.46ms. Allocated memory is still 117.4MB. Free memory was 68.0MB in the beginning and 39.8MB in the end (delta: 28.2MB). Peak memory consumption was 25.2MB. Max. memory is 16.1GB. [2024-11-14 04:47:06,114 INFO L158 Benchmark]: TraceAbstraction took 31330.95ms. Allocated memory was 117.4MB in the beginning and 813.7MB in the end (delta: 696.3MB). Free memory was 39.4MB in the beginning and 524.0MB in the end (delta: -484.6MB). Peak memory consumption was 451.1MB. Max. memory is 16.1GB. [2024-11-14 04:47:06,114 INFO L158 Benchmark]: Witness Printer took 134.20ms. Allocated memory is still 813.7MB. Free memory was 524.0MB in the beginning and 519.8MB in the end (delta: 4.2MB). There was no memory consumed. Max. memory is 16.1GB. [2024-11-14 04:47:06,117 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 1.13ms. Allocated memory is still 117.4MB. Free memory is still 74.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 603.24ms. Allocated memory is still 117.4MB. Free memory was 91.4MB in the beginning and 71.1MB in the end (delta: 20.3MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 108.57ms. Allocated memory is still 117.4MB. Free memory was 71.1MB in the beginning and 69.1MB in the end (delta: 1.9MB). There was no memory consumed. Max. memory is 16.1GB. * Boogie Preprocessor took 61.56ms. Allocated memory is still 117.4MB. Free memory was 69.1MB in the beginning and 68.0MB in the end (delta: 1.2MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 680.46ms. Allocated memory is still 117.4MB. Free memory was 68.0MB in the beginning and 39.8MB in the end (delta: 28.2MB). Peak memory consumption was 25.2MB. Max. memory is 16.1GB. * TraceAbstraction took 31330.95ms. Allocated memory was 117.4MB in the beginning and 813.7MB in the end (delta: 696.3MB). Free memory was 39.4MB in the beginning and 524.0MB in the end (delta: -484.6MB). Peak memory consumption was 451.1MB. Max. memory is 16.1GB. * Witness Printer took 134.20ms. Allocated memory is still 813.7MB. Free memory was 524.0MB in the beginning and 519.8MB in the end (delta: 4.2MB). There was no memory consumed. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [58] - GenericResultAtLocation [Line: 169]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [169] - GenericResultAtLocation [Line: 271]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [271] - GenericResultAtLocation [Line: 499]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [499] - GenericResultAtLocation [Line: 525]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [525] - GenericResultAtLocation [Line: 592]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [592] - GenericResultAtLocation [Line: 627]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [627] - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 57 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 28.1s, OverallIterations: 9, TraceHistogramMax: 6, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 5.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1728 SdHoareTripleChecker+Valid, 2.6s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1712 mSDsluCounter, 1577 SdHoareTripleChecker+Invalid, 2.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1195 mSDsCounter, 1000 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1852 IncrementalHoareTripleChecker+Invalid, 2852 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1000 mSolverCounterUnsat, 382 mSDtfsCounter, 1852 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 683 GetRequests, 467 SyntacticMatches, 15 SemanticMatches, 201 ConstructedPredicates, 0 IntricatePredicates, 2 DeprecatedPredicates, 5699 ImplicationChecksByTransitivity, 12.0s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=652occurred in iteration=8, InterpolantAutomatonStates: 97, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 9 MinimizatonAttempts, 151 StatesRemovedByMinimization, 5 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 5.7s InterpolantComputationTime, 566 NumberOfCodeBlocks, 566 NumberOfCodeBlocksAsserted, 11 NumberOfCheckSat, 732 ConstructedInterpolants, 0 QuantifiedInterpolants, 2750 SizeOfPredicates, 12 NumberOfNonLiveVariables, 596 ConjunctsInSsa, 46 ConjunctsInUnsatCore, 13 InterpolantComputations, 7 PerfectInterpolantSequences, 383/529 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 535]: Location Invariant Derived location invariant: 0 - InvariantResult [Line: 182]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 536]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0) && (splverifierCounter == 0)) && (waterLevel == 1)) && (0 != systemActive)) || (((((2 == waterLevel) && (splverifierCounter == 0)) && ((pumpRunning == 0) || (pumpRunning == 1))) && ((pumpRunning == 0) || (methaneLevelCritical == 0))) && (0 != systemActive))) - InvariantResult [Line: 280]: Location Invariant Derived location invariant: (((((((\old(pumpRunning) == 0) || (\old(pumpRunning) == 1)) && (0 != systemActive)) && (\old(waterLevel) == 2)) || (((\old(waterLevel) == 1) && (\old(pumpRunning) == 0)) && (0 != systemActive))) && (((pumpRunning == \old(pumpRunning)) && (2 == waterLevel)) || (\old(waterLevel) != 2))) && ((\old(waterLevel) != 1) || ((pumpRunning == 0) && (waterLevel == 1)))) - ProcedureContractResult [Line: 304]: Procedure Contract for processEnvironment__wrappee__base Derived contract for procedure processEnvironment__wrappee__base. Requires: (((pumpRunning == 0) && (waterLevel == 1)) && (0 != systemActive)) Ensures: ((((pumpRunning == 0) && (waterLevel == 1)) && (0 != systemActive)) && ((((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 93]: Procedure Contract for changeMethaneLevel Derived contract for procedure changeMethaneLevel. Requires: ((((pumpRunning == 0) && (waterLevel == 1)) && (0 != systemActive)) || (((2 == waterLevel) && ((pumpRunning == 0) || (pumpRunning == 1))) && (0 != systemActive))) Ensures: (((((pumpRunning == 0) && (waterLevel == 1)) && (0 != systemActive)) || (((2 == waterLevel) && ((pumpRunning == 0) || (pumpRunning == 1))) && (0 != systemActive))) && (((((waterLevel == \old(waterLevel)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 280]: Procedure Contract for timeShift Derived contract for procedure timeShift. Ensures: ((((((((\old(pumpRunning) != 0) || (((pumpRunning == 0) && (2 == waterLevel)) && (0 != systemActive))) || ((((2 == waterLevel) && (methaneLevelCritical == 0)) && (0 != systemActive)) && (pumpRunning == 1))) || (\old(waterLevel) != 2)) && (((((\old(pumpRunning) == 0) || (\old(pumpRunning) == 1)) && (0 != systemActive)) && (\old(waterLevel) == 2)) || ((\old(waterLevel) == 1) && (0 != systemActive)))) && (((((((2 == waterLevel) && (methaneLevelCritical == 0)) && (0 != systemActive)) && (pumpRunning == 1)) || ((pumpRunning == 0) && (waterLevel == 1))) || (\old(waterLevel) != 2)) || ((((pumpRunning == 0) && (2 == waterLevel)) && (\old(pumpRunning) == 0)) && (0 != systemActive)))) && ((\old(waterLevel) != 1) || (((pumpRunning == 0) && (\old(pumpRunning) == 0)) && (waterLevel == 1)))) && ((((methaneLevelCritical == \old(methaneLevelCritical)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 172]: Procedure Contract for cleanup Derived contract for procedure cleanup. Requires: 0 Ensures: (0 && ((((methaneLevelCritical == \old(methaneLevelCritical)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 105]: Procedure Contract for isMethaneLevelCritical Derived contract for procedure isMethaneLevelCritical. Requires: (((((2 == waterLevel) && (methaneLevelCritical == 0)) && (0 != systemActive)) && (pumpRunning == 1)) || ((((pumpRunning == 0) && (waterLevel <= 2)) && (1 <= waterLevel)) && (0 != systemActive))) Ensures: (((((((2 == waterLevel) && (methaneLevelCritical == 0)) && (0 != systemActive)) && (pumpRunning == 1)) || ((((pumpRunning == 0) && (waterLevel <= 2)) && (1 <= waterLevel)) && (0 != systemActive))) && (\result == methaneLevelCritical)) && ((((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 312]: Procedure Contract for processEnvironment__wrappee__highWaterSensor Derived contract for procedure processEnvironment__wrappee__highWaterSensor. Requires: ((pumpRunning == 0) && (((2 == waterLevel) && (0 != systemActive)) || ((waterLevel == 1) && (0 != systemActive)))) Ensures: (((((\old(pumpRunning) == 0) && ((1 < waterLevel) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((((2 == waterLevel) && ((pumpRunning == 0) || (pumpRunning == 1))) && ((pumpRunning == 0) || (methaneLevelCritical == 0))) || (waterLevel < 2))) && (0 != systemActive)) && (((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (systemActive == \old(systemActive))) && (head == \old(head)))) - ProcedureContractResult [Line: 81]: Procedure Contract for waterRise Derived contract for procedure waterRise. Ensures: (((2 == waterLevel) && ((((pumpRunning == 0) && (\old(waterLevel) == 1)) && (0 != systemActive)) || (((((pumpRunning == 0) || (pumpRunning == 1)) && ((pumpRunning == 0) || (methaneLevelCritical == 0))) && (0 != systemActive)) && (\old(waterLevel) == 2)))) && (((((methaneLevelCritical == \old(methaneLevelCritical)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (head == \old(head)))) RESULT: Ultimate proved your program to be correct! [2024-11-14 04:47:06,162 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f3518241-21ec-4dd6-9003-b745ce7646ca/bin/utaipan-verify-sOmjnqqW8E/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE