./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 20ed64ec Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 118c87a61fbb1df2cb9a671e761c9c9d71205fb6 ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................ Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-20ed64e [2021-08-26 08:43:03,523 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-08-26 08:43:03,532 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-08-26 08:43:03,563 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-08-26 08:43:03,563 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-08-26 08:43:03,564 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-08-26 08:43:03,565 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-08-26 08:43:03,566 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-08-26 08:43:03,568 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-08-26 08:43:03,568 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-08-26 08:43:03,569 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-08-26 08:43:03,570 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-08-26 08:43:03,570 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-08-26 08:43:03,571 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-08-26 08:43:03,572 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-08-26 08:43:03,573 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-08-26 08:43:03,573 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-08-26 08:43:03,574 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-08-26 08:43:03,575 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-08-26 08:43:03,576 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-08-26 08:43:03,577 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-08-26 08:43:03,578 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-08-26 08:43:03,579 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-08-26 08:43:03,579 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-08-26 08:43:03,581 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-08-26 08:43:03,581 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-08-26 08:43:03,582 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-08-26 08:43:03,582 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-08-26 08:43:03,583 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-08-26 08:43:03,584 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-08-26 08:43:03,584 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-08-26 08:43:03,584 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-08-26 08:43:03,585 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-08-26 08:43:03,585 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-08-26 08:43:03,586 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-08-26 08:43:03,586 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-08-26 08:43:03,587 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-08-26 08:43:03,587 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-08-26 08:43:03,587 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-08-26 08:43:03,588 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-08-26 08:43:03,588 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-08-26 08:43:03,590 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-08-26 08:43:03,611 INFO L113 SettingsManager]: Loading preferences was successful [2021-08-26 08:43:03,613 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-08-26 08:43:03,616 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-08-26 08:43:03,616 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-08-26 08:43:03,617 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-08-26 08:43:03,617 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-08-26 08:43:03,618 INFO L138 SettingsManager]: * Use SBE=true [2021-08-26 08:43:03,618 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-08-26 08:43:03,618 INFO L138 SettingsManager]: * sizeof long=4 [2021-08-26 08:43:03,618 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-08-26 08:43:03,619 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-08-26 08:43:03,619 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-08-26 08:43:03,619 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-08-26 08:43:03,619 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-08-26 08:43:03,620 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-08-26 08:43:03,620 INFO L138 SettingsManager]: * sizeof long double=12 [2021-08-26 08:43:03,620 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-08-26 08:43:03,620 INFO L138 SettingsManager]: * Use constant arrays=true [2021-08-26 08:43:03,620 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-08-26 08:43:03,620 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-08-26 08:43:03,620 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-08-26 08:43:03,621 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-08-26 08:43:03,621 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-08-26 08:43:03,621 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-08-26 08:43:03,621 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-08-26 08:43:03,621 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-08-26 08:43:03,622 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-08-26 08:43:03,622 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-08-26 08:43:03,622 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-08-26 08:43:03,622 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-08-26 08:43:03,622 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 118c87a61fbb1df2cb9a671e761c9c9d71205fb6 [2021-08-26 08:43:03,895 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-08-26 08:43:03,914 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-08-26 08:43:03,916 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-08-26 08:43:03,917 INFO L271 PluginConnector]: Initializing CDTParser... [2021-08-26 08:43:03,917 INFO L275 PluginConnector]: CDTParser initialized [2021-08-26 08:43:03,918 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c [2021-08-26 08:43:03,970 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/34d09fed6/6186f157a13a4ac6b7ba83cb0c998fa6/FLAGb3e107d13 [2021-08-26 08:43:04,397 INFO L306 CDTParser]: Found 1 translation units. [2021-08-26 08:43:04,398 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c [2021-08-26 08:43:04,410 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/34d09fed6/6186f157a13a4ac6b7ba83cb0c998fa6/FLAGb3e107d13 [2021-08-26 08:43:04,419 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/34d09fed6/6186f157a13a4ac6b7ba83cb0c998fa6 [2021-08-26 08:43:04,421 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-08-26 08:43:04,422 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-08-26 08:43:04,427 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-08-26 08:43:04,428 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-08-26 08:43:04,431 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-08-26 08:43:04,432 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,432 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6f83979f and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04, skipping insertion in model container [2021-08-26 08:43:04,432 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,437 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-08-26 08:43:04,472 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-08-26 08:43:04,579 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c[3321,3334] [2021-08-26 08:43:04,670 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-08-26 08:43:04,679 INFO L203 MainTranslator]: Completed pre-run [2021-08-26 08:43:04,704 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c[3321,3334] [2021-08-26 08:43:04,751 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-08-26 08:43:04,766 INFO L208 MainTranslator]: Completed translation [2021-08-26 08:43:04,767 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04 WrapperNode [2021-08-26 08:43:04,767 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-08-26 08:43:04,768 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-08-26 08:43:04,769 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-08-26 08:43:04,769 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-08-26 08:43:04,773 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,784 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,824 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-08-26 08:43:04,827 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-08-26 08:43:04,830 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-08-26 08:43:04,830 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-08-26 08:43:04,836 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,836 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,843 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,852 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,868 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,878 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,879 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,882 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-08-26 08:43:04,883 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-08-26 08:43:04,883 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-08-26 08:43:04,883 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-08-26 08:43:04,883 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (1/1) ... [2021-08-26 08:43:04,897 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-08-26 08:43:04,914 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-08-26 08:43:04,926 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-08-26 08:43:04,961 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-08-26 08:43:04,975 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-08-26 08:43:04,975 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-08-26 08:43:04,975 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-08-26 08:43:04,975 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-08-26 08:43:05,650 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-08-26 08:43:05,650 INFO L299 CfgBuilder]: Removed 196 assume(true) statements. [2021-08-26 08:43:05,652 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.08 08:43:05 BoogieIcfgContainer [2021-08-26 08:43:05,652 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-08-26 08:43:05,653 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-08-26 08:43:05,653 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-08-26 08:43:05,655 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-08-26 08:43:05,656 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 26.08 08:43:04" (1/3) ... [2021-08-26 08:43:05,657 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@5d1ad2f5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.08 08:43:05, skipping insertion in model container [2021-08-26 08:43:05,657 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.08 08:43:04" (2/3) ... [2021-08-26 08:43:05,657 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@5d1ad2f5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.08 08:43:05, skipping insertion in model container [2021-08-26 08:43:05,658 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.08 08:43:05" (3/3) ... [2021-08-26 08:43:05,659 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product59.cil.c [2021-08-26 08:43:05,663 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-08-26 08:43:05,663 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-08-26 08:43:05,700 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-08-26 08:43:05,707 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-08-26 08:43:05,707 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-08-26 08:43:05,721 INFO L276 IsEmpty]: Start isEmpty. Operand has 137 states, 133 states have (on average 1.5338345864661653) internal successors, (204), 136 states have internal predecessors, (204), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:05,725 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2021-08-26 08:43:05,725 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:05,725 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:05,726 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:05,730 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:05,730 INFO L82 PathProgramCache]: Analyzing trace with hash 998639577, now seen corresponding path program 1 times [2021-08-26 08:43:05,736 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:05,736 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2116852596] [2021-08-26 08:43:05,736 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:05,736 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:05,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:05,903 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:05,903 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:05,904 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2116852596] [2021-08-26 08:43:05,904 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2116852596] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:05,905 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:05,905 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-08-26 08:43:05,912 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1956299121] [2021-08-26 08:43:05,919 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-08-26 08:43:05,920 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:05,935 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-08-26 08:43:05,935 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-08-26 08:43:05,939 INFO L87 Difference]: Start difference. First operand has 137 states, 133 states have (on average 1.5338345864661653) internal successors, (204), 136 states have internal predecessors, (204), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:05,976 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:05,976 INFO L93 Difference]: Finished difference Result 268 states and 401 transitions. [2021-08-26 08:43:05,976 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-08-26 08:43:05,977 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 16 [2021-08-26 08:43:05,977 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:05,985 INFO L225 Difference]: With dead ends: 268 [2021-08-26 08:43:05,994 INFO L226 Difference]: Without dead ends: 133 [2021-08-26 08:43:05,997 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0ms TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-08-26 08:43:06,007 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 133 states. [2021-08-26 08:43:06,024 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 133 to 133. [2021-08-26 08:43:06,025 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 133 states, 130 states have (on average 1.476923076923077) internal successors, (192), 132 states have internal predecessors, (192), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,026 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 133 states to 133 states and 192 transitions. [2021-08-26 08:43:06,027 INFO L78 Accepts]: Start accepts. Automaton has 133 states and 192 transitions. Word has length 16 [2021-08-26 08:43:06,027 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:06,027 INFO L470 AbstractCegarLoop]: Abstraction has 133 states and 192 transitions. [2021-08-26 08:43:06,027 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,028 INFO L276 IsEmpty]: Start isEmpty. Operand 133 states and 192 transitions. [2021-08-26 08:43:06,028 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2021-08-26 08:43:06,028 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:06,028 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:06,029 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-08-26 08:43:06,029 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:06,029 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:06,030 INFO L82 PathProgramCache]: Analyzing trace with hash -48117320, now seen corresponding path program 1 times [2021-08-26 08:43:06,030 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:06,030 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [575022826] [2021-08-26 08:43:06,030 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:06,030 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:06,065 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:06,128 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:06,128 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:06,128 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [575022826] [2021-08-26 08:43:06,129 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [575022826] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:06,129 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:06,129 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-08-26 08:43:06,129 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1623357199] [2021-08-26 08:43:06,130 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-26 08:43:06,130 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:06,130 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-26 08:43:06,131 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:06,131 INFO L87 Difference]: Start difference. First operand 133 states and 192 transitions. Second operand has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,147 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:06,147 INFO L93 Difference]: Finished difference Result 133 states and 192 transitions. [2021-08-26 08:43:06,148 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-26 08:43:06,148 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 17 [2021-08-26 08:43:06,148 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:06,149 INFO L225 Difference]: With dead ends: 133 [2021-08-26 08:43:06,149 INFO L226 Difference]: Without dead ends: 55 [2021-08-26 08:43:06,150 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 3.8ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:06,150 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2021-08-26 08:43:06,153 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2021-08-26 08:43:06,153 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 54 states have (on average 1.462962962962963) internal successors, (79), 54 states have internal predecessors, (79), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,153 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 79 transitions. [2021-08-26 08:43:06,154 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 79 transitions. Word has length 17 [2021-08-26 08:43:06,154 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:06,154 INFO L470 AbstractCegarLoop]: Abstraction has 55 states and 79 transitions. [2021-08-26 08:43:06,154 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,154 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 79 transitions. [2021-08-26 08:43:06,155 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2021-08-26 08:43:06,155 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:06,155 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:06,155 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-08-26 08:43:06,156 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:06,156 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:06,156 INFO L82 PathProgramCache]: Analyzing trace with hash -1725162559, now seen corresponding path program 1 times [2021-08-26 08:43:06,156 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:06,157 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [583063171] [2021-08-26 08:43:06,157 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:06,157 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:06,176 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:06,216 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:06,216 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:06,217 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [583063171] [2021-08-26 08:43:06,217 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [583063171] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:06,218 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:06,218 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-08-26 08:43:06,219 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1429382725] [2021-08-26 08:43:06,219 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-26 08:43:06,220 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:06,220 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-26 08:43:06,222 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:06,222 INFO L87 Difference]: Start difference. First operand 55 states and 79 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,240 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:06,241 INFO L93 Difference]: Finished difference Result 153 states and 225 transitions. [2021-08-26 08:43:06,244 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-26 08:43:06,244 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 22 [2021-08-26 08:43:06,244 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:06,245 INFO L225 Difference]: With dead ends: 153 [2021-08-26 08:43:06,245 INFO L226 Difference]: Without dead ends: 104 [2021-08-26 08:43:06,246 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 2.2ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:06,246 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-08-26 08:43:06,257 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 100. [2021-08-26 08:43:06,257 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 99 states have (on average 1.4848484848484849) internal successors, (147), 99 states have internal predecessors, (147), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,258 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 147 transitions. [2021-08-26 08:43:06,258 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 147 transitions. Word has length 22 [2021-08-26 08:43:06,258 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:06,258 INFO L470 AbstractCegarLoop]: Abstraction has 100 states and 147 transitions. [2021-08-26 08:43:06,258 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,259 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 147 transitions. [2021-08-26 08:43:06,259 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-08-26 08:43:06,259 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:06,259 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:06,260 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-08-26 08:43:06,260 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:06,260 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:06,260 INFO L82 PathProgramCache]: Analyzing trace with hash 1536171928, now seen corresponding path program 1 times [2021-08-26 08:43:06,261 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:06,261 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1094504955] [2021-08-26 08:43:06,261 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:06,261 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:06,284 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:06,314 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:06,314 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:06,314 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1094504955] [2021-08-26 08:43:06,315 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1094504955] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:06,315 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:06,315 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-08-26 08:43:06,315 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [664596344] [2021-08-26 08:43:06,315 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-26 08:43:06,315 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:06,316 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-26 08:43:06,316 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:06,316 INFO L87 Difference]: Start difference. First operand 100 states and 147 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,344 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:06,347 INFO L93 Difference]: Finished difference Result 235 states and 350 transitions. [2021-08-26 08:43:06,347 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-26 08:43:06,347 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-08-26 08:43:06,348 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:06,348 INFO L225 Difference]: With dead ends: 235 [2021-08-26 08:43:06,348 INFO L226 Difference]: Without dead ends: 141 [2021-08-26 08:43:06,349 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 1.7ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:06,349 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 141 states. [2021-08-26 08:43:06,356 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 141 to 139. [2021-08-26 08:43:06,359 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 138 states have (on average 1.4565217391304348) internal successors, (201), 138 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,360 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 201 transitions. [2021-08-26 08:43:06,360 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 201 transitions. Word has length 24 [2021-08-26 08:43:06,360 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:06,360 INFO L470 AbstractCegarLoop]: Abstraction has 139 states and 201 transitions. [2021-08-26 08:43:06,360 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,361 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 201 transitions. [2021-08-26 08:43:06,361 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-08-26 08:43:06,362 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:06,362 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:06,362 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-08-26 08:43:06,362 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:06,363 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:06,363 INFO L82 PathProgramCache]: Analyzing trace with hash 1391898518, now seen corresponding path program 1 times [2021-08-26 08:43:06,364 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:06,364 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [235918736] [2021-08-26 08:43:06,364 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:06,364 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:06,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:06,448 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:06,448 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:06,449 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [235918736] [2021-08-26 08:43:06,449 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [235918736] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:06,450 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:06,451 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-08-26 08:43:06,451 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1885048590] [2021-08-26 08:43:06,451 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-26 08:43:06,452 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:06,452 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-26 08:43:06,456 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-26 08:43:06,456 INFO L87 Difference]: Start difference. First operand 139 states and 201 transitions. Second operand has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,558 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:06,559 INFO L93 Difference]: Finished difference Result 747 states and 1098 transitions. [2021-08-26 08:43:06,559 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-08-26 08:43:06,560 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-08-26 08:43:06,560 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:06,563 INFO L225 Difference]: With dead ends: 747 [2021-08-26 08:43:06,563 INFO L226 Difference]: Without dead ends: 614 [2021-08-26 08:43:06,565 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 28.7ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-08-26 08:43:06,567 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 614 states. [2021-08-26 08:43:06,598 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 614 to 262. [2021-08-26 08:43:06,599 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 262 states, 261 states have (on average 1.4367816091954022) internal successors, (375), 261 states have internal predecessors, (375), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,599 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 262 states to 262 states and 375 transitions. [2021-08-26 08:43:06,599 INFO L78 Accepts]: Start accepts. Automaton has 262 states and 375 transitions. Word has length 25 [2021-08-26 08:43:06,600 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:06,600 INFO L470 AbstractCegarLoop]: Abstraction has 262 states and 375 transitions. [2021-08-26 08:43:06,600 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,600 INFO L276 IsEmpty]: Start isEmpty. Operand 262 states and 375 transitions. [2021-08-26 08:43:06,601 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-08-26 08:43:06,601 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:06,601 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:06,601 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-08-26 08:43:06,602 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:06,602 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:06,602 INFO L82 PathProgramCache]: Analyzing trace with hash 1188091424, now seen corresponding path program 1 times [2021-08-26 08:43:06,602 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:06,602 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [790910256] [2021-08-26 08:43:06,603 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:06,603 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:06,614 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:06,645 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:06,646 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:06,646 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [790910256] [2021-08-26 08:43:06,646 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [790910256] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:06,646 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:06,646 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-08-26 08:43:06,646 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [294699170] [2021-08-26 08:43:06,647 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-26 08:43:06,647 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:06,648 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-26 08:43:06,651 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-26 08:43:06,651 INFO L87 Difference]: Start difference. First operand 262 states and 375 transitions. Second operand has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,746 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:06,746 INFO L93 Difference]: Finished difference Result 768 states and 1102 transitions. [2021-08-26 08:43:06,747 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-08-26 08:43:06,747 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-08-26 08:43:06,747 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:06,749 INFO L225 Difference]: With dead ends: 768 [2021-08-26 08:43:06,750 INFO L226 Difference]: Without dead ends: 766 [2021-08-26 08:43:06,753 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 25.7ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-08-26 08:43:06,754 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 766 states. [2021-08-26 08:43:06,768 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 766 to 262. [2021-08-26 08:43:06,769 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 262 states, 261 states have (on average 1.4291187739463602) internal successors, (373), 261 states have internal predecessors, (373), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,770 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 262 states to 262 states and 373 transitions. [2021-08-26 08:43:06,770 INFO L78 Accepts]: Start accepts. Automaton has 262 states and 373 transitions. Word has length 26 [2021-08-26 08:43:06,770 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:06,770 INFO L470 AbstractCegarLoop]: Abstraction has 262 states and 373 transitions. [2021-08-26 08:43:06,771 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,771 INFO L276 IsEmpty]: Start isEmpty. Operand 262 states and 373 transitions. [2021-08-26 08:43:06,775 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-08-26 08:43:06,775 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:06,776 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:06,776 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-08-26 08:43:06,777 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:06,777 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:06,777 INFO L82 PathProgramCache]: Analyzing trace with hash 770731220, now seen corresponding path program 1 times [2021-08-26 08:43:06,777 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:06,780 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2139450715] [2021-08-26 08:43:06,780 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:06,780 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:06,798 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:06,856 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:06,856 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:06,856 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2139450715] [2021-08-26 08:43:06,856 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2139450715] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:06,857 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:06,857 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-26 08:43:06,857 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [991591118] [2021-08-26 08:43:06,858 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-26 08:43:06,858 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:06,859 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-26 08:43:06,859 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-26 08:43:06,859 INFO L87 Difference]: Start difference. First operand 262 states and 373 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,908 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:06,909 INFO L93 Difference]: Finished difference Result 698 states and 980 transitions. [2021-08-26 08:43:06,909 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-08-26 08:43:06,909 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-08-26 08:43:06,910 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:06,911 INFO L225 Difference]: With dead ends: 698 [2021-08-26 08:43:06,911 INFO L226 Difference]: Without dead ends: 442 [2021-08-26 08:43:06,913 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 26.5ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-08-26 08:43:06,913 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 442 states. [2021-08-26 08:43:06,924 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 442 to 286. [2021-08-26 08:43:06,924 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 286 states, 285 states have (on average 1.3929824561403508) internal successors, (397), 285 states have internal predecessors, (397), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,925 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 286 states to 286 states and 397 transitions. [2021-08-26 08:43:06,925 INFO L78 Accepts]: Start accepts. Automaton has 286 states and 397 transitions. Word has length 34 [2021-08-26 08:43:06,926 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:06,926 INFO L470 AbstractCegarLoop]: Abstraction has 286 states and 397 transitions. [2021-08-26 08:43:06,927 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:06,927 INFO L276 IsEmpty]: Start isEmpty. Operand 286 states and 397 transitions. [2021-08-26 08:43:06,928 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-08-26 08:43:06,928 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:06,928 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:06,928 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-08-26 08:43:06,929 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:06,929 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:06,929 INFO L82 PathProgramCache]: Analyzing trace with hash 183925206, now seen corresponding path program 1 times [2021-08-26 08:43:06,929 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:06,929 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1175086990] [2021-08-26 08:43:06,930 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:06,930 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:06,948 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:06,994 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:06,994 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:06,994 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1175086990] [2021-08-26 08:43:06,994 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1175086990] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:06,994 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:06,994 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-26 08:43:06,994 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1979641456] [2021-08-26 08:43:06,995 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-26 08:43:06,995 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:06,995 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-26 08:43:06,995 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-26 08:43:06,996 INFO L87 Difference]: Start difference. First operand 286 states and 397 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,101 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:07,102 INFO L93 Difference]: Finished difference Result 782 states and 1065 transitions. [2021-08-26 08:43:07,102 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-08-26 08:43:07,102 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-08-26 08:43:07,103 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:07,105 INFO L225 Difference]: With dead ends: 782 [2021-08-26 08:43:07,105 INFO L226 Difference]: Without dead ends: 502 [2021-08-26 08:43:07,106 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 25.3ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-08-26 08:43:07,106 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 502 states. [2021-08-26 08:43:07,124 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 502 to 302. [2021-08-26 08:43:07,125 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.372093023255814) internal successors, (413), 301 states have internal predecessors, (413), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,126 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 413 transitions. [2021-08-26 08:43:07,126 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 413 transitions. Word has length 34 [2021-08-26 08:43:07,126 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:07,127 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 413 transitions. [2021-08-26 08:43:07,127 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,127 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 413 transitions. [2021-08-26 08:43:07,128 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-08-26 08:43:07,128 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:07,128 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:07,129 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-08-26 08:43:07,129 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:07,129 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:07,130 INFO L82 PathProgramCache]: Analyzing trace with hash -1095938472, now seen corresponding path program 1 times [2021-08-26 08:43:07,130 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:07,130 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1270171335] [2021-08-26 08:43:07,130 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:07,130 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:07,147 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:07,168 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:07,168 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:07,168 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1270171335] [2021-08-26 08:43:07,169 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1270171335] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:07,169 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:07,169 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-08-26 08:43:07,169 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [474575154] [2021-08-26 08:43:07,170 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-26 08:43:07,170 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:07,170 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-26 08:43:07,174 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:07,174 INFO L87 Difference]: Start difference. First operand 302 states and 413 transitions. Second operand has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,221 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:07,222 INFO L93 Difference]: Finished difference Result 814 states and 1123 transitions. [2021-08-26 08:43:07,223 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-26 08:43:07,223 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-08-26 08:43:07,223 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:07,225 INFO L225 Difference]: With dead ends: 814 [2021-08-26 08:43:07,225 INFO L226 Difference]: Without dead ends: 518 [2021-08-26 08:43:07,225 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 1.7ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:07,226 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 518 states. [2021-08-26 08:43:07,246 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 518 to 516. [2021-08-26 08:43:07,247 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 516 states, 515 states have (on average 1.3572815533980582) internal successors, (699), 515 states have internal predecessors, (699), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,249 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 516 states to 516 states and 699 transitions. [2021-08-26 08:43:07,249 INFO L78 Accepts]: Start accepts. Automaton has 516 states and 699 transitions. Word has length 34 [2021-08-26 08:43:07,249 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:07,250 INFO L470 AbstractCegarLoop]: Abstraction has 516 states and 699 transitions. [2021-08-26 08:43:07,250 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,250 INFO L276 IsEmpty]: Start isEmpty. Operand 516 states and 699 transitions. [2021-08-26 08:43:07,251 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-08-26 08:43:07,251 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:07,251 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:07,251 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-08-26 08:43:07,252 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:07,252 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:07,252 INFO L82 PathProgramCache]: Analyzing trace with hash 420497238, now seen corresponding path program 1 times [2021-08-26 08:43:07,252 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:07,253 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1290172653] [2021-08-26 08:43:07,253 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:07,254 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:07,270 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:07,306 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:07,307 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:07,307 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1290172653] [2021-08-26 08:43:07,307 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1290172653] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:07,307 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:07,307 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-08-26 08:43:07,309 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1158185603] [2021-08-26 08:43:07,310 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-08-26 08:43:07,310 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:07,311 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-08-26 08:43:07,311 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-08-26 08:43:07,311 INFO L87 Difference]: Start difference. First operand 516 states and 699 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,485 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:07,485 INFO L93 Difference]: Finished difference Result 1686 states and 2260 transitions. [2021-08-26 08:43:07,485 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-08-26 08:43:07,485 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-08-26 08:43:07,486 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:07,489 INFO L225 Difference]: With dead ends: 1686 [2021-08-26 08:43:07,489 INFO L226 Difference]: Without dead ends: 1176 [2021-08-26 08:43:07,490 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 41.5ms TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-08-26 08:43:07,490 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1176 states. [2021-08-26 08:43:07,514 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1176 to 516. [2021-08-26 08:43:07,515 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 516 states, 515 states have (on average 1.3339805825242719) internal successors, (687), 515 states have internal predecessors, (687), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,516 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 516 states to 516 states and 687 transitions. [2021-08-26 08:43:07,516 INFO L78 Accepts]: Start accepts. Automaton has 516 states and 687 transitions. Word has length 35 [2021-08-26 08:43:07,516 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:07,516 INFO L470 AbstractCegarLoop]: Abstraction has 516 states and 687 transitions. [2021-08-26 08:43:07,516 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,516 INFO L276 IsEmpty]: Start isEmpty. Operand 516 states and 687 transitions. [2021-08-26 08:43:07,517 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2021-08-26 08:43:07,517 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:07,517 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:07,518 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-08-26 08:43:07,518 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:07,518 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:07,518 INFO L82 PathProgramCache]: Analyzing trace with hash 325446782, now seen corresponding path program 1 times [2021-08-26 08:43:07,518 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:07,518 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [838287654] [2021-08-26 08:43:07,518 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:07,519 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:07,528 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:07,548 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-08-26 08:43:07,548 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:07,548 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [838287654] [2021-08-26 08:43:07,548 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [838287654] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:07,548 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:07,549 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-08-26 08:43:07,549 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [599849954] [2021-08-26 08:43:07,549 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-26 08:43:07,549 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:07,549 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-26 08:43:07,550 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:07,550 INFO L87 Difference]: Start difference. First operand 516 states and 687 transitions. Second operand has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,593 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:07,593 INFO L93 Difference]: Finished difference Result 606 states and 804 transitions. [2021-08-26 08:43:07,594 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-26 08:43:07,594 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 52 [2021-08-26 08:43:07,594 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:07,595 INFO L225 Difference]: With dead ends: 606 [2021-08-26 08:43:07,595 INFO L226 Difference]: Without dead ends: 256 [2021-08-26 08:43:07,596 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 1.5ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-26 08:43:07,596 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 256 states. [2021-08-26 08:43:07,607 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 256 to 256. [2021-08-26 08:43:07,608 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 256 states, 255 states have (on average 1.2823529411764707) internal successors, (327), 255 states have internal predecessors, (327), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,609 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 256 states to 256 states and 327 transitions. [2021-08-26 08:43:07,609 INFO L78 Accepts]: Start accepts. Automaton has 256 states and 327 transitions. Word has length 52 [2021-08-26 08:43:07,609 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:07,609 INFO L470 AbstractCegarLoop]: Abstraction has 256 states and 327 transitions. [2021-08-26 08:43:07,609 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,609 INFO L276 IsEmpty]: Start isEmpty. Operand 256 states and 327 transitions. [2021-08-26 08:43:07,610 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-08-26 08:43:07,610 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:07,610 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:07,610 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-08-26 08:43:07,610 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:07,610 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:07,611 INFO L82 PathProgramCache]: Analyzing trace with hash 507471461, now seen corresponding path program 1 times [2021-08-26 08:43:07,611 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:07,611 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [518968604] [2021-08-26 08:43:07,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:07,611 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:07,641 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:07,702 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-26 08:43:07,702 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:07,702 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [518968604] [2021-08-26 08:43:07,702 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [518968604] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:07,703 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:07,703 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-08-26 08:43:07,703 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [704146191] [2021-08-26 08:43:07,703 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-08-26 08:43:07,703 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:07,704 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-08-26 08:43:07,704 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-08-26 08:43:07,704 INFO L87 Difference]: Start difference. First operand 256 states and 327 transitions. Second operand has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,908 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:07,908 INFO L93 Difference]: Finished difference Result 1330 states and 1690 transitions. [2021-08-26 08:43:07,909 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-08-26 08:43:07,909 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-08-26 08:43:07,909 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:07,912 INFO L225 Difference]: With dead ends: 1330 [2021-08-26 08:43:07,912 INFO L226 Difference]: Without dead ends: 1080 [2021-08-26 08:43:07,913 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 66.4ms TimeCoverageRelationStatistics Valid=47, Invalid=85, Unknown=0, NotChecked=0, Total=132 [2021-08-26 08:43:07,914 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1080 states. [2021-08-26 08:43:07,939 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1080 to 472. [2021-08-26 08:43:07,940 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 472 states, 471 states have (on average 1.2632696390658174) internal successors, (595), 471 states have internal predecessors, (595), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,941 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 472 states to 472 states and 595 transitions. [2021-08-26 08:43:07,941 INFO L78 Accepts]: Start accepts. Automaton has 472 states and 595 transitions. Word has length 56 [2021-08-26 08:43:07,942 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:07,942 INFO L470 AbstractCegarLoop]: Abstraction has 472 states and 595 transitions. [2021-08-26 08:43:07,942 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:07,942 INFO L276 IsEmpty]: Start isEmpty. Operand 472 states and 595 transitions. [2021-08-26 08:43:07,942 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-08-26 08:43:07,943 INFO L504 BasicCegarLoop]: Found error trace [2021-08-26 08:43:07,943 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-26 08:43:07,943 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-08-26 08:43:07,943 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-26 08:43:07,943 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-26 08:43:07,944 INFO L82 PathProgramCache]: Analyzing trace with hash 1208536039, now seen corresponding path program 1 times [2021-08-26 08:43:07,944 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-26 08:43:07,944 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1926555336] [2021-08-26 08:43:07,944 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-26 08:43:07,944 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-26 08:43:07,959 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-26 08:43:07,985 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-08-26 08:43:07,986 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-26 08:43:07,986 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1926555336] [2021-08-26 08:43:07,986 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1926555336] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-26 08:43:07,986 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-26 08:43:07,986 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-26 08:43:07,986 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2037470615] [2021-08-26 08:43:07,987 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-26 08:43:07,987 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-26 08:43:07,987 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-26 08:43:07,987 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-26 08:43:07,987 INFO L87 Difference]: Start difference. First operand 472 states and 595 transitions. Second operand has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:08,025 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-26 08:43:08,026 INFO L93 Difference]: Finished difference Result 816 states and 1012 transitions. [2021-08-26 08:43:08,026 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-08-26 08:43:08,026 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-08-26 08:43:08,026 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-26 08:43:08,026 INFO L225 Difference]: With dead ends: 816 [2021-08-26 08:43:08,027 INFO L226 Difference]: Without dead ends: 0 [2021-08-26 08:43:08,027 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 18.1ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-08-26 08:43:08,027 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-08-26 08:43:08,028 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-08-26 08:43:08,028 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:08,028 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-08-26 08:43:08,028 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 56 [2021-08-26 08:43:08,028 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-26 08:43:08,028 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-08-26 08:43:08,028 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-26 08:43:08,028 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-08-26 08:43:08,028 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-08-26 08:43:08,031 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-08-26 08:43:08,031 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-08-26 08:43:08,031 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-08-26 08:43:08,031 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-08-26 08:43:08,033 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-08-26 08:43:08,036 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,038 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,243 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,243 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,244 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,244 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,245 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,397 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,397 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,398 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,398 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,398 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,399 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,491 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,492 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,492 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,689 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,689 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,690 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,690 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,690 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,691 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,691 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,692 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,692 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,697 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,760 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,760 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,770 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,807 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,808 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,808 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,808 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,809 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,809 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,810 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,929 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,930 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,946 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,946 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:08,947 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,031 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,032 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,032 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,117 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,118 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,118 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,119 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,124 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,125 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,126 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,242 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,246 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,247 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,247 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:09,248 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-26 08:43:13,857 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 185) no Hoare annotation was computed. [2021-08-26 08:43:13,857 INFO L853 garLoopResultBuilder]: At program point L399(lines 394 402) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_isPumpRunning_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse4 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 (= 1 ~systemActive~0) .cse3 (<= 1 ~waterLevel~0) .cse4) (and .cse0 .cse1 .cse2 .cse3 (= 0 ~systemActive~0) .cse4))) [2021-08-26 08:43:13,857 INFO L853 garLoopResultBuilder]: At program point L399-1(lines 394 402) the Hoare annotation is: false [2021-08-26 08:43:13,857 INFO L853 garLoopResultBuilder]: At program point L399-2(lines 394 402) the Hoare annotation is: false [2021-08-26 08:43:13,857 INFO L857 garLoopResultBuilder]: For program point L467(lines 467 471) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L467-2(lines 467 471) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L467-3(lines 467 471) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L302(lines 302 319) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L467-5(lines 467 471) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L302-1(lines 302 319) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L467-6(lines 467 471) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L302-2(lines 302 319) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L302-3(lines 302 319) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L467-8(lines 467 471) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L302-4(lines 302 319) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L302-5(lines 302 319) no Hoare annotation was computed. [2021-08-26 08:43:13,858 INFO L853 garLoopResultBuilder]: At program point L270(lines 269 288) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse3 (= 0 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse2 (= ~methaneLevelCritical~0 1)) (.cse6 (<= 1 ~waterLevel~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse4 .cse3) (and .cse0 .cse5 .cse2 .cse6))) [2021-08-26 08:43:13,858 INFO L857 garLoopResultBuilder]: For program point L270-1(lines 270 276) no Hoare annotation was computed. [2021-08-26 08:43:13,859 INFO L857 garLoopResultBuilder]: For program point L204(lines 203 250) no Hoare annotation was computed. [2021-08-26 08:43:13,859 INFO L853 garLoopResultBuilder]: At program point L270-2(lines 269 288) the Hoare annotation is: false [2021-08-26 08:43:13,859 INFO L853 garLoopResultBuilder]: At program point L270-3(lines 269 288) the Hoare annotation is: false [2021-08-26 08:43:13,859 INFO L853 garLoopResultBuilder]: At program point L138(lines 129 142) the Hoare annotation is: false [2021-08-26 08:43:13,859 INFO L853 garLoopResultBuilder]: At program point L138-1(lines 129 142) the Hoare annotation is: (let ((.cse0 (not (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (.cse5 (<= 1 ~waterLevel~0)) (.cse4 (= ~methaneLevelCritical~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse5) (and .cse1 .cse2 .cse7 .cse3 .cse4) (and .cse1 .cse2 .cse6 .cse7 .cse3))) [2021-08-26 08:43:13,859 INFO L853 garLoopResultBuilder]: At program point L138-2(lines 129 142) the Hoare annotation is: false [2021-08-26 08:43:13,859 INFO L853 garLoopResultBuilder]: At program point L138-3(lines 129 142) the Hoare annotation is: false [2021-08-26 08:43:13,859 INFO L853 garLoopResultBuilder]: At program point L138-4(lines 129 142) the Hoare annotation is: false [2021-08-26 08:43:13,860 INFO L853 garLoopResultBuilder]: At program point L138-5(lines 129 142) the Hoare annotation is: false [2021-08-26 08:43:13,860 INFO L857 garLoopResultBuilder]: For program point L205(lines 205 209) no Hoare annotation was computed. [2021-08-26 08:43:13,860 INFO L857 garLoopResultBuilder]: For program point L239(lines 239 245) no Hoare annotation was computed. [2021-08-26 08:43:13,860 INFO L853 garLoopResultBuilder]: At program point L239-1(lines 270 276) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse7 .cse3 .cse5) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 .cse7 .cse3))) [2021-08-26 08:43:13,860 INFO L857 garLoopResultBuilder]: For program point L306(lines 306 314) no Hoare annotation was computed. [2021-08-26 08:43:13,860 INFO L857 garLoopResultBuilder]: For program point L306-1(lines 306 314) no Hoare annotation was computed. [2021-08-26 08:43:13,860 INFO L857 garLoopResultBuilder]: For program point L306-2(lines 306 314) no Hoare annotation was computed. [2021-08-26 08:43:13,860 INFO L857 garLoopResultBuilder]: For program point L306-3(lines 306 314) no Hoare annotation was computed. [2021-08-26 08:43:13,860 INFO L857 garLoopResultBuilder]: For program point L306-4(lines 306 314) no Hoare annotation was computed. [2021-08-26 08:43:13,861 INFO L857 garLoopResultBuilder]: For program point L306-5(lines 306 314) no Hoare annotation was computed. [2021-08-26 08:43:13,861 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 185) no Hoare annotation was computed. [2021-08-26 08:43:13,861 INFO L853 garLoopResultBuilder]: At program point L473(lines 458 476) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_isLowWaterLevel_#res| 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (< 0 (+ ULTIMATE.start_isLowWaterLevel_~tmp~6 1))) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ULTIMATE.start_isLowWaterLevel_~tmp___0~3 1)) (.cse5 (<= 1 ~waterLevel~0)) (.cse6 (<= |ULTIMATE.start_isLowWaterSensorDry_#res| 0)) (.cse7 (<= 0 |ULTIMATE.start_isLowWaterSensorDry_#res|)) (.cse8 (<= ULTIMATE.start_isLowWaterLevel_~tmp~6 0))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~methaneLevelCritical~0 1) .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 (= ~methaneLevelCritical~0 0) .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8))) [2021-08-26 08:43:13,861 INFO L853 garLoopResultBuilder]: At program point L473-1(lines 458 476) the Hoare annotation is: false [2021-08-26 08:43:13,861 INFO L853 garLoopResultBuilder]: At program point L473-2(lines 458 476) the Hoare annotation is: false [2021-08-26 08:43:13,861 INFO L853 garLoopResultBuilder]: At program point L277(lines 277 283) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 (<= 2 ~waterLevel~0) .cse3))) [2021-08-26 08:43:13,861 INFO L853 garLoopResultBuilder]: At program point L277-1(lines 277 283) the Hoare annotation is: false [2021-08-26 08:43:13,861 INFO L853 garLoopResultBuilder]: At program point L277-2(lines 277 283) the Hoare annotation is: false [2021-08-26 08:43:13,861 INFO L857 garLoopResultBuilder]: For program point L80(lines 80 84) no Hoare annotation was computed. [2021-08-26 08:43:13,862 INFO L857 garLoopResultBuilder]: For program point L213(lines 213 219) no Hoare annotation was computed. [2021-08-26 08:43:13,862 INFO L853 garLoopResultBuilder]: At program point L213-1(lines 213 219) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse8 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse9 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse2 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse7 .cse9) (and .cse0 .cse5 .cse2 .cse6 (<= 2 ~waterLevel~0) .cse3) (and .cse0 .cse1 .cse3 .cse8 .cse4 .cse9))) [2021-08-26 08:43:13,862 INFO L853 garLoopResultBuilder]: At program point L148(lines 143 151) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (<= 1 ~waterLevel~0)) (.cse3 (<= |ULTIMATE.start_isLowWaterSensorDry_#res| 0)) (.cse4 (<= 0 |ULTIMATE.start_isLowWaterSensorDry_#res|))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 1) .cse2 .cse3 .cse4) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1 .cse2 .cse3 .cse4))) [2021-08-26 08:43:13,862 INFO L853 garLoopResultBuilder]: At program point L148-1(lines 143 151) the Hoare annotation is: false [2021-08-26 08:43:13,862 INFO L853 garLoopResultBuilder]: At program point L148-2(lines 143 151) the Hoare annotation is: false [2021-08-26 08:43:13,862 INFO L853 garLoopResultBuilder]: At program point L908-2(lines 908 922) the Hoare annotation is: false [2021-08-26 08:43:13,862 INFO L857 garLoopResultBuilder]: For program point L909(line 909) no Hoare annotation was computed. [2021-08-26 08:43:13,862 INFO L857 garLoopResultBuilder]: For program point L481(lines 481 487) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L853 garLoopResultBuilder]: At program point L481-1(lines 481 487) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 0)) (and .cse0 .cse1 (= ~methaneLevelCritical~0 1)))) [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-2(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-3(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-5(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-6(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-8(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-9(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-11(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,863 INFO L857 garLoopResultBuilder]: For program point L448-12(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point L448-14(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point L448-15(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point L448-17(lines 448 452) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L853 garLoopResultBuilder]: At program point L251(lines 202 252) the Hoare annotation is: false [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point L185(line 185) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point L185-1(line 185) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point L185-2(line 185) no Hoare annotation was computed. [2021-08-26 08:43:13,864 INFO L857 garLoopResultBuilder]: For program point L912(lines 912 916) no Hoare annotation was computed. [2021-08-26 08:43:13,865 INFO L857 garLoopResultBuilder]: For program point L912-1(lines 270 276) no Hoare annotation was computed. [2021-08-26 08:43:13,865 INFO L857 garLoopResultBuilder]: For program point L979(lines 979 986) no Hoare annotation was computed. [2021-08-26 08:43:13,865 INFO L860 garLoopResultBuilder]: At program point L979-1(lines 979 986) the Hoare annotation is: true [2021-08-26 08:43:13,865 INFO L857 garLoopResultBuilder]: For program point L56(lines 56 60) no Hoare annotation was computed. [2021-08-26 08:43:13,865 INFO L857 garLoopResultBuilder]: For program point L56-3(lines 56 60) no Hoare annotation was computed. [2021-08-26 08:43:13,865 INFO L857 garLoopResultBuilder]: For program point L56-6(lines 56 60) no Hoare annotation was computed. [2021-08-26 08:43:13,865 INFO L853 garLoopResultBuilder]: At program point L454(lines 439 457) the Hoare annotation is: false [2021-08-26 08:43:13,865 INFO L853 garLoopResultBuilder]: At program point L454-1(lines 439 457) the Hoare annotation is: (let ((.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse6 (<= 1 ~waterLevel~0)) (.cse7 (not (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0))) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse9 (<= 2 ~waterLevel~0)) (.cse4 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse2 .cse3 .cse4 .cse6 .cse7) (and .cse0 .cse1 .cse9 .cse4 .cse5) (and .cse0 .cse1 .cse8 .cse9 .cse4))) [2021-08-26 08:43:13,865 INFO L853 garLoopResultBuilder]: At program point L454-2(lines 439 457) the Hoare annotation is: false [2021-08-26 08:43:13,866 INFO L853 garLoopResultBuilder]: At program point L454-3(lines 439 457) the Hoare annotation is: false [2021-08-26 08:43:13,866 INFO L853 garLoopResultBuilder]: At program point L454-4(lines 439 457) the Hoare annotation is: false [2021-08-26 08:43:13,866 INFO L853 garLoopResultBuilder]: At program point L454-5(lines 439 457) the Hoare annotation is: false [2021-08-26 08:43:13,866 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-08-26 08:43:13,866 INFO L857 garLoopResultBuilder]: For program point L223(lines 223 229) no Hoare annotation was computed. [2021-08-26 08:43:13,866 INFO L853 garLoopResultBuilder]: At program point L223-1(lines 223 229) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse7 .cse3 .cse5) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 .cse7 .cse3))) [2021-08-26 08:43:13,866 INFO L853 garLoopResultBuilder]: At program point L884(lines 1 991) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-08-26 08:43:13,866 INFO L853 garLoopResultBuilder]: At program point L390(lines 383 393) the Hoare annotation is: false [2021-08-26 08:43:13,866 INFO L853 garLoopResultBuilder]: At program point L390-1(lines 383 393) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 (= |ULTIMATE.start_isMethaneAlarm_#res| 1) (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 .cse3))) [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L390-2(lines 383 393) the Hoare annotation is: false [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L390-3(lines 383 393) the Hoare annotation is: false [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L390-4(lines 383 393) the Hoare annotation is: false [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L390-5(lines 383 393) the Hoare annotation is: false [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L93(lines 88 96) the Hoare annotation is: false [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L93-1(lines 88 96) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)))) [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L93-2(lines 88 96) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 1)) (.cse5 (<= 1 ~waterLevel~0)) (.cse8 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse7) (and .cse0 .cse1 .cse4 .cse6 .cse5 .cse8) (and .cse0 .cse2 .cse3 (<= 2 ~waterLevel~0) .cse4))) [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L93-3(lines 88 96) the Hoare annotation is: false [2021-08-26 08:43:13,867 INFO L853 garLoopResultBuilder]: At program point L93-4(lines 88 96) the Hoare annotation is: false [2021-08-26 08:43:13,868 INFO L853 garLoopResultBuilder]: At program point L93-5(lines 88 96) the Hoare annotation is: false [2021-08-26 08:43:13,868 INFO L853 garLoopResultBuilder]: At program point L93-6(lines 88 96) the Hoare annotation is: false [2021-08-26 08:43:13,868 INFO L853 garLoopResultBuilder]: At program point L93-7(lines 88 96) the Hoare annotation is: false [2021-08-26 08:43:13,868 INFO L853 garLoopResultBuilder]: At program point L93-8(lines 88 96) the Hoare annotation is: false [2021-08-26 08:43:13,868 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-08-26 08:43:13,868 INFO L860 garLoopResultBuilder]: At program point L988(lines 969 991) the Hoare annotation is: true [2021-08-26 08:43:13,868 INFO L857 garLoopResultBuilder]: For program point L328(lines 328 345) no Hoare annotation was computed. [2021-08-26 08:43:13,868 INFO L857 garLoopResultBuilder]: For program point L328-1(lines 328 345) no Hoare annotation was computed. [2021-08-26 08:43:13,868 INFO L857 garLoopResultBuilder]: For program point L328-2(lines 328 345) no Hoare annotation was computed. [2021-08-26 08:43:13,869 INFO L857 garLoopResultBuilder]: For program point L163(lines 163 176) no Hoare annotation was computed. [2021-08-26 08:43:13,869 INFO L853 garLoopResultBuilder]: At program point L163-1(lines 1 991) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse8 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse9 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse2 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse7 .cse9) (and .cse0 .cse5 .cse2 .cse6 (<= 2 ~waterLevel~0) .cse3) (and .cse0 .cse1 .cse3 .cse8 .cse4 .cse9))) [2021-08-26 08:43:13,869 INFO L857 garLoopResultBuilder]: For program point L163-2(lines 163 176) no Hoare annotation was computed. [2021-08-26 08:43:13,869 INFO L853 garLoopResultBuilder]: At program point L163-3(lines 1 991) the Hoare annotation is: false [2021-08-26 08:43:13,869 INFO L857 garLoopResultBuilder]: For program point L163-4(lines 163 176) no Hoare annotation was computed. [2021-08-26 08:43:13,869 INFO L853 garLoopResultBuilder]: At program point L163-5(lines 1 991) the Hoare annotation is: false [2021-08-26 08:43:13,869 INFO L853 garLoopResultBuilder]: At program point L956(lines 952 958) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-08-26 08:43:13,869 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-08-26 08:43:13,869 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 185) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L853 garLoopResultBuilder]: At program point L892(lines 887 895) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L133(lines 133 139) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L133-1(lines 133 139) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L133-2(lines 133 139) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L133-3(lines 133 139) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L133-4(lines 133 139) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L133-5(lines 133 139) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L365(lines 365 371) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L332(lines 332 340) no Hoare annotation was computed. [2021-08-26 08:43:13,870 INFO L857 garLoopResultBuilder]: For program point L365-2(lines 365 371) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L332-1(lines 332 340) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L332-2(lines 332 340) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L233(lines 233 246) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L365-4(lines 365 371) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L167(lines 167 173) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L365-6(lines 365 371) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L167-2(lines 167 173) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L365-8(lines 365 371) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L68(lines 68 72) no Hoare annotation was computed. [2021-08-26 08:43:13,871 INFO L857 garLoopResultBuilder]: For program point L365-10(lines 365 371) no Hoare annotation was computed. [2021-08-26 08:43:13,872 INFO L857 garLoopResultBuilder]: For program point L167-4(lines 167 173) no Hoare annotation was computed. [2021-08-26 08:43:13,875 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-08-26 08:43:13,891 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 26.08 08:43:13 BoogieIcfgContainer [2021-08-26 08:43:13,891 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-08-26 08:43:13,892 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-08-26 08:43:13,892 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-08-26 08:43:13,892 INFO L275 PluginConnector]: Witness Printer initialized [2021-08-26 08:43:13,892 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.08 08:43:05" (3/4) ... [2021-08-26 08:43:13,894 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-08-26 08:43:13,905 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-08-26 08:43:13,906 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-08-26 08:43:13,906 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-08-26 08:43:13,907 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-08-26 08:43:13,907 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-08-26 08:43:13,908 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-08-26 08:43:13,909 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-08-26 08:43:13,923 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) [2021-08-26 08:43:13,924 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) [2021-08-26 08:43:13,925 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1)) || ((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-08-26 08:43:13,925 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) || (((((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) [2021-08-26 08:43:13,926 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-08-26 08:43:13,926 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1) [2021-08-26 08:43:13,926 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((\result == 1 && splverifierCounter == 0) && 0 < tmp + 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) || (((((((((\result == 1 && splverifierCounter == 0) && methaneLevelCritical == 0) && 0 < tmp + 1) && 1 == systemActive) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) [2021-08-26 08:43:13,927 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && !(tmp == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && 1 <= waterLevel) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-08-26 08:43:13,927 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) [2021-08-26 08:43:13,928 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 1) && methaneLevelCritical == 1) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-08-26 08:43:13,966 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-08-26 08:43:13,966 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-08-26 08:43:13,968 INFO L168 Benchmark]: Toolchain (without parser) took 9544.81 ms. Allocated memory was 58.7 MB in the beginning and 247.5 MB in the end (delta: 188.7 MB). Free memory was 36.7 MB in the beginning and 169.7 MB in the end (delta: -133.0 MB). Peak memory consumption was 55.2 MB. Max. memory is 16.1 GB. [2021-08-26 08:43:13,968 INFO L168 Benchmark]: CDTParser took 0.15 ms. Allocated memory is still 58.7 MB. Free memory was 40.9 MB in the beginning and 40.9 MB in the end (delta: 1.6 kB). There was no memory consumed. Max. memory is 16.1 GB. [2021-08-26 08:43:13,968 INFO L168 Benchmark]: CACSL2BoogieTranslator took 340.41 ms. Allocated memory is still 58.7 MB. Free memory was 36.4 MB in the beginning and 34.3 MB in the end (delta: 2.1 MB). Peak memory consumption was 14.7 MB. Max. memory is 16.1 GB. [2021-08-26 08:43:13,968 INFO L168 Benchmark]: Boogie Procedure Inliner took 58.17 ms. Allocated memory is still 58.7 MB. Free memory was 34.2 MB in the beginning and 30.0 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-08-26 08:43:13,968 INFO L168 Benchmark]: Boogie Preprocessor took 55.17 ms. Allocated memory is still 58.7 MB. Free memory was 30.0 MB in the beginning and 27.2 MB in the end (delta: 2.8 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-08-26 08:43:13,969 INFO L168 Benchmark]: RCFGBuilder took 769.65 ms. Allocated memory was 58.7 MB in the beginning and 73.4 MB in the end (delta: 14.7 MB). Free memory was 27.2 MB in the beginning and 52.0 MB in the end (delta: -24.7 MB). Peak memory consumption was 16.6 MB. Max. memory is 16.1 GB. [2021-08-26 08:43:13,969 INFO L168 Benchmark]: TraceAbstraction took 8238.03 ms. Allocated memory was 73.4 MB in the beginning and 247.5 MB in the end (delta: 174.1 MB). Free memory was 51.6 MB in the beginning and 182.3 MB in the end (delta: -130.7 MB). Peak memory consumption was 148.5 MB. Max. memory is 16.1 GB. [2021-08-26 08:43:13,969 INFO L168 Benchmark]: Witness Printer took 74.76 ms. Allocated memory is still 247.5 MB. Free memory was 182.3 MB in the beginning and 169.7 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. [2021-08-26 08:43:13,970 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.15 ms. Allocated memory is still 58.7 MB. Free memory was 40.9 MB in the beginning and 40.9 MB in the end (delta: 1.6 kB). There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 340.41 ms. Allocated memory is still 58.7 MB. Free memory was 36.4 MB in the beginning and 34.3 MB in the end (delta: 2.1 MB). Peak memory consumption was 14.7 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 58.17 ms. Allocated memory is still 58.7 MB. Free memory was 34.2 MB in the beginning and 30.0 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 55.17 ms. Allocated memory is still 58.7 MB. Free memory was 30.0 MB in the beginning and 27.2 MB in the end (delta: 2.8 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * RCFGBuilder took 769.65 ms. Allocated memory was 58.7 MB in the beginning and 73.4 MB in the end (delta: 14.7 MB). Free memory was 27.2 MB in the beginning and 52.0 MB in the end (delta: -24.7 MB). Peak memory consumption was 16.6 MB. Max. memory is 16.1 GB. * TraceAbstraction took 8238.03 ms. Allocated memory was 73.4 MB in the beginning and 247.5 MB in the end (delta: 174.1 MB). Free memory was 51.6 MB in the beginning and 182.3 MB in the end (delta: -130.7 MB). Peak memory consumption was 148.5 MB. Max. memory is 16.1 GB. * Witness Printer took 74.76 ms. Allocated memory is still 247.5 MB. Free memory was 182.3 MB in the beginning and 169.7 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0ms ErrorAutomatonConstructionTimeTotal, 0.0ms FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0ms ErrorAutomatonConstructionTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 185]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 185]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 185]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 137 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 8175.7ms, OverallIterations: 13, TraceHistogramMax: 2, EmptinessCheckTime: 21.0ms, AutomataDifference: 1073.1ms, DeadEndRemovalTime: 0.0ms, HoareAnnotationTime: 5824.7ms, InitialAbstractionConstructionTime: 10.7ms, PartialOrderReductionTime: 0.0ms, HoareTripleCheckerStatistics: 1545 SDtfs, 2185 SDslu, 2768 SDs, 0 SdLazy, 330 SolverSat, 82 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 302.5ms Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 92 GetRequests, 36 SyntacticMatches, 0 SemanticMatches, 56 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 42 ImplicationChecksByTransitivity, 243.7ms Time, 0.0ms BasicInterpolantAutomatonTime, BiggestAbstraction: size=516occurred in iteration=9, InterpolantAutomatonStates: 75, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0ms DumpTime, AutomataMinimizationStatistics: 220.5ms AutomataMinimizationTime, 13 MinimizatonAttempts, 2488 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0ms HoareAnnotationTime, 56 LocationsWithAnnotation, 56 PreInvPairs, 231 NumberOfFragments, 1056 HoareAnnotationTreeSize, 56 FomulaSimplifications, 1156004 FormulaSimplificationTreeSizeReduction, 1225.6ms HoareSimplificationTime, 56 FomulaSimplificationsInter, 189323 FormulaSimplificationTreeSizeReductionInter, 4581.3ms HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 46.2ms SsaConstructionTime, 220.8ms SatisfiabilityAnalysisTime, 557.3ms InterpolantComputationTime, 431 NumberOfCodeBlocks, 431 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 418 ConstructedInterpolants, 0 QuantifiedInterpolants, 760 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 13 InterpolantComputations, 13 PerfectInterpolantSequences, 41/41 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 458]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 223]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 269]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) - InvariantResult [Line: 908]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 394]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 202]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 270]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 458]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 143]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) || (((((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1)) || ((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 269]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 1) && methaneLevelCritical == 1) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: (((((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 143]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 969]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 143]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 481]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) || ((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) - InvariantResult [Line: 979]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 887]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 213]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && !(tmp == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && 1 <= waterLevel) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 394]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 458]: Loop Invariant Derived loop invariant: (((((((((\result == 1 && splverifierCounter == 0) && 0 < tmp + 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) || (((((((((\result == 1 && splverifierCounter == 0) && methaneLevelCritical == 0) && 0 < tmp + 1) && 1 == systemActive) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 952]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 269]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 394]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1) RESULT: Ultimate proved your program to be correct! [2021-08-26 08:43:14,007 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...