./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 5fbdf5bf Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 7823238d9993e50be60fbd89a7a2539069d00257 ............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-wip.dd.seqcomp-5fbdf5b [2021-08-29 16:15:40,836 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-08-29 16:15:40,838 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-08-29 16:15:40,863 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-08-29 16:15:40,864 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-08-29 16:15:40,867 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-08-29 16:15:40,869 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-08-29 16:15:40,874 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-08-29 16:15:40,877 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-08-29 16:15:40,881 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-08-29 16:15:40,889 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-08-29 16:15:40,890 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-08-29 16:15:40,890 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-08-29 16:15:40,891 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-08-29 16:15:40,892 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-08-29 16:15:40,893 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-08-29 16:15:40,893 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-08-29 16:15:40,894 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-08-29 16:15:40,895 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-08-29 16:15:40,897 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-08-29 16:15:40,898 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-08-29 16:15:40,902 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-08-29 16:15:40,904 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-08-29 16:15:40,905 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-08-29 16:15:40,915 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-08-29 16:15:40,915 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-08-29 16:15:40,915 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-08-29 16:15:40,917 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-08-29 16:15:40,917 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-08-29 16:15:40,918 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-08-29 16:15:40,919 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-08-29 16:15:40,919 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-08-29 16:15:40,921 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-08-29 16:15:40,922 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-08-29 16:15:40,923 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-08-29 16:15:40,923 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-08-29 16:15:40,924 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-08-29 16:15:40,924 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-08-29 16:15:40,924 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-08-29 16:15:40,926 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-08-29 16:15:40,926 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-08-29 16:15:40,931 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-08-29 16:15:40,971 INFO L113 SettingsManager]: Loading preferences was successful [2021-08-29 16:15:40,971 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-08-29 16:15:40,972 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-08-29 16:15:40,973 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-08-29 16:15:40,974 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-08-29 16:15:40,974 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-08-29 16:15:40,975 INFO L138 SettingsManager]: * Use SBE=true [2021-08-29 16:15:40,975 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-08-29 16:15:40,975 INFO L138 SettingsManager]: * sizeof long=4 [2021-08-29 16:15:40,975 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-08-29 16:15:40,976 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-08-29 16:15:40,976 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-08-29 16:15:40,977 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-08-29 16:15:40,977 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-08-29 16:15:40,977 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-08-29 16:15:40,977 INFO L138 SettingsManager]: * sizeof long double=12 [2021-08-29 16:15:40,977 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-08-29 16:15:40,978 INFO L138 SettingsManager]: * Use constant arrays=true [2021-08-29 16:15:40,978 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-08-29 16:15:40,978 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-08-29 16:15:40,978 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-08-29 16:15:40,979 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-08-29 16:15:40,979 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-08-29 16:15:40,979 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-08-29 16:15:40,979 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-08-29 16:15:40,979 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-08-29 16:15:40,980 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-08-29 16:15:40,980 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-08-29 16:15:40,980 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-08-29 16:15:40,980 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-08-29 16:15:40,980 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 7823238d9993e50be60fbd89a7a2539069d00257 [2021-08-29 16:15:41,286 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-08-29 16:15:41,314 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-08-29 16:15:41,317 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-08-29 16:15:41,319 INFO L271 PluginConnector]: Initializing CDTParser... [2021-08-29 16:15:41,319 INFO L275 PluginConnector]: CDTParser initialized [2021-08-29 16:15:41,321 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c [2021-08-29 16:15:41,388 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/6632066b5/0a52c047bb634a95a33ea39dd63296ff/FLAG299c275d5 [2021-08-29 16:15:41,936 INFO L306 CDTParser]: Found 1 translation units. [2021-08-29 16:15:41,937 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c [2021-08-29 16:15:41,947 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/6632066b5/0a52c047bb634a95a33ea39dd63296ff/FLAG299c275d5 [2021-08-29 16:15:42,369 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/6632066b5/0a52c047bb634a95a33ea39dd63296ff [2021-08-29 16:15:42,378 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-08-29 16:15:42,381 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-08-29 16:15:42,385 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-08-29 16:15:42,385 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-08-29 16:15:42,388 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-08-29 16:15:42,388 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,389 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@3a66ea1f and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42, skipping insertion in model container [2021-08-29 16:15:42,390 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,397 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-08-29 16:15:42,436 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-08-29 16:15:42,701 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c[15098,15111] [2021-08-29 16:15:42,725 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-08-29 16:15:42,738 INFO L203 MainTranslator]: Completed pre-run [2021-08-29 16:15:42,818 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c[15098,15111] [2021-08-29 16:15:42,836 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-08-29 16:15:42,850 INFO L208 MainTranslator]: Completed translation [2021-08-29 16:15:42,851 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42 WrapperNode [2021-08-29 16:15:42,851 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-08-29 16:15:42,852 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-08-29 16:15:42,852 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-08-29 16:15:42,853 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-08-29 16:15:42,859 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,888 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,945 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-08-29 16:15:42,946 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-08-29 16:15:42,946 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-08-29 16:15:42,946 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-08-29 16:15:42,953 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,953 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,968 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,972 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,982 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:42,988 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:43,006 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:43,010 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-08-29 16:15:43,011 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-08-29 16:15:43,011 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-08-29 16:15:43,011 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-08-29 16:15:43,012 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (1/1) ... [2021-08-29 16:15:43,029 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-08-29 16:15:43,039 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-08-29 16:15:43,055 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-08-29 16:15:43,080 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-08-29 16:15:43,097 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-08-29 16:15:43,097 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-08-29 16:15:43,098 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-08-29 16:15:43,098 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-08-29 16:15:43,685 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-08-29 16:15:43,686 INFO L299 CfgBuilder]: Removed 164 assume(true) statements. [2021-08-29 16:15:43,688 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.08 04:15:43 BoogieIcfgContainer [2021-08-29 16:15:43,688 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-08-29 16:15:43,691 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-08-29 16:15:43,691 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-08-29 16:15:43,694 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-08-29 16:15:43,694 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 29.08 04:15:42" (1/3) ... [2021-08-29 16:15:43,695 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@481f3639 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.08 04:15:43, skipping insertion in model container [2021-08-29 16:15:43,695 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.08 04:15:42" (2/3) ... [2021-08-29 16:15:43,696 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@481f3639 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.08 04:15:43, skipping insertion in model container [2021-08-29 16:15:43,696 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.08 04:15:43" (3/3) ... [2021-08-29 16:15:43,698 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product38.cil.c [2021-08-29 16:15:43,703 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-08-29 16:15:43,704 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-08-29 16:15:43,762 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-08-29 16:15:43,769 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-08-29 16:15:43,769 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-08-29 16:15:43,788 INFO L276 IsEmpty]: Start isEmpty. Operand has 117 states, 113 states have (on average 1.5663716814159292) internal successors, (177), 116 states have internal predecessors, (177), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:43,799 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-08-29 16:15:43,799 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:43,800 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:43,801 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:43,806 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:43,807 INFO L82 PathProgramCache]: Analyzing trace with hash -1400987872, now seen corresponding path program 1 times [2021-08-29 16:15:43,815 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:43,815 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [182360728] [2021-08-29 16:15:43,815 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:43,816 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:43,984 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:44,069 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:44,070 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:44,070 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [182360728] [2021-08-29 16:15:44,071 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [182360728] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:44,071 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:44,071 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-08-29 16:15:44,073 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1188633890] [2021-08-29 16:15:44,077 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-08-29 16:15:44,077 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:44,098 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-08-29 16:15:44,099 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-08-29 16:15:44,101 INFO L87 Difference]: Start difference. First operand has 117 states, 113 states have (on average 1.5663716814159292) internal successors, (177), 116 states have internal predecessors, (177), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,397 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:44,397 INFO L93 Difference]: Finished difference Result 228 states and 347 transitions. [2021-08-29 16:15:44,399 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-08-29 16:15:44,400 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-08-29 16:15:44,401 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:44,410 INFO L225 Difference]: With dead ends: 228 [2021-08-29 16:15:44,410 INFO L226 Difference]: Without dead ends: 113 [2021-08-29 16:15:44,413 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.03ms TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-08-29 16:15:44,417 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 170 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 182.04ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 170 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 2.40ms SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 170 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 237.86ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:44,419 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 0 Invalid, 170 Unknown, 0 Unchecked, 2.40ms Time], IncrementalHoareTripleChecker [0 Valid, 170 Invalid, 0 Unknown, 0 Unchecked, 237.86ms Time] [2021-08-29 16:15:44,432 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 113 states. [2021-08-29 16:15:44,464 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 113 to 113. [2021-08-29 16:15:44,467 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 113 states, 110 states have (on average 1.5) internal successors, (165), 112 states have internal predecessors, (165), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,473 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 113 states to 113 states and 165 transitions. [2021-08-29 16:15:44,475 INFO L78 Accepts]: Start accepts. Automaton has 113 states and 165 transitions. Word has length 18 [2021-08-29 16:15:44,475 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:44,476 INFO L470 AbstractCegarLoop]: Abstraction has 113 states and 165 transitions. [2021-08-29 16:15:44,476 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,477 INFO L276 IsEmpty]: Start isEmpty. Operand 113 states and 165 transitions. [2021-08-29 16:15:44,480 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-08-29 16:15:44,480 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:44,480 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:44,481 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-08-29 16:15:44,481 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:44,483 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:44,483 INFO L82 PathProgramCache]: Analyzing trace with hash 1982948671, now seen corresponding path program 1 times [2021-08-29 16:15:44,483 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:44,483 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1264165075] [2021-08-29 16:15:44,483 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:44,484 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:44,544 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:44,591 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:44,591 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:44,592 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1264165075] [2021-08-29 16:15:44,592 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1264165075] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:44,593 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:44,593 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-08-29 16:15:44,593 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [126953781] [2021-08-29 16:15:44,595 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-29 16:15:44,595 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:44,596 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-29 16:15:44,596 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-29 16:15:44,597 INFO L87 Difference]: Start difference. First operand 113 states and 165 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,713 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:44,713 INFO L93 Difference]: Finished difference Result 113 states and 165 transitions. [2021-08-29 16:15:44,714 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-29 16:15:44,714 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-08-29 16:15:44,714 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:44,715 INFO L225 Difference]: With dead ends: 113 [2021-08-29 16:15:44,715 INFO L226 Difference]: Without dead ends: 47 [2021-08-29 16:15:44,725 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 3.17ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-29 16:15:44,727 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 61 mSDsluCounter, 5 mSDsCounter, 0 mSdLazyCounter, 73 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 80.46ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 73 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.84ms SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 73 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 105.00ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:44,728 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [61 Valid, 0 Invalid, 73 Unknown, 0 Unchecked, 0.84ms Time], IncrementalHoareTripleChecker [0 Valid, 73 Invalid, 0 Unknown, 0 Unchecked, 105.00ms Time] [2021-08-29 16:15:44,730 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 47 states. [2021-08-29 16:15:44,736 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 47 to 47. [2021-08-29 16:15:44,737 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 47 states, 46 states have (on average 1.4782608695652173) internal successors, (68), 46 states have internal predecessors, (68), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,737 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 47 states to 47 states and 68 transitions. [2021-08-29 16:15:44,738 INFO L78 Accepts]: Start accepts. Automaton has 47 states and 68 transitions. Word has length 19 [2021-08-29 16:15:44,738 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:44,739 INFO L470 AbstractCegarLoop]: Abstraction has 47 states and 68 transitions. [2021-08-29 16:15:44,739 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,739 INFO L276 IsEmpty]: Start isEmpty. Operand 47 states and 68 transitions. [2021-08-29 16:15:44,740 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-08-29 16:15:44,740 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:44,741 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:44,741 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-08-29 16:15:44,741 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:44,742 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:44,742 INFO L82 PathProgramCache]: Analyzing trace with hash 131818950, now seen corresponding path program 1 times [2021-08-29 16:15:44,743 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:44,743 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1151219050] [2021-08-29 16:15:44,743 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:44,743 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:44,784 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:44,813 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:44,814 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:44,814 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1151219050] [2021-08-29 16:15:44,814 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1151219050] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:44,814 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:44,815 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-08-29 16:15:44,815 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1459012543] [2021-08-29 16:15:44,815 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-29 16:15:44,815 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:44,816 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-29 16:15:44,816 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-29 16:15:44,816 INFO L87 Difference]: Start difference. First operand 47 states and 68 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,911 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:44,911 INFO L93 Difference]: Finished difference Result 88 states and 130 transitions. [2021-08-29 16:15:44,912 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-29 16:15:44,912 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-08-29 16:15:44,912 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:44,913 INFO L225 Difference]: With dead ends: 88 [2021-08-29 16:15:44,913 INFO L226 Difference]: Without dead ends: 47 [2021-08-29 16:15:44,913 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 1.90ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-29 16:15:44,914 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 64 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 67 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 66.64ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 68 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.63ms SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 67 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 85.60ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:44,915 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [64 Valid, 0 Invalid, 68 Unknown, 0 Unchecked, 0.63ms Time], IncrementalHoareTripleChecker [1 Valid, 67 Invalid, 0 Unknown, 0 Unchecked, 85.60ms Time] [2021-08-29 16:15:44,916 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 47 states. [2021-08-29 16:15:44,919 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 47 to 47. [2021-08-29 16:15:44,919 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 47 states, 46 states have (on average 1.4565217391304348) internal successors, (67), 46 states have internal predecessors, (67), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,919 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 47 states to 47 states and 67 transitions. [2021-08-29 16:15:44,919 INFO L78 Accepts]: Start accepts. Automaton has 47 states and 67 transitions. Word has length 24 [2021-08-29 16:15:44,919 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:44,919 INFO L470 AbstractCegarLoop]: Abstraction has 47 states and 67 transitions. [2021-08-29 16:15:44,920 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:44,920 INFO L276 IsEmpty]: Start isEmpty. Operand 47 states and 67 transitions. [2021-08-29 16:15:44,920 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-08-29 16:15:44,920 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:44,920 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:44,921 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-08-29 16:15:44,921 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:44,921 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:44,921 INFO L82 PathProgramCache]: Analyzing trace with hash -1351542097, now seen corresponding path program 1 times [2021-08-29 16:15:44,922 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:44,922 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1402451054] [2021-08-29 16:15:44,922 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:44,922 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:44,957 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:45,010 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:45,011 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:45,011 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1402451054] [2021-08-29 16:15:45,011 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1402451054] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:45,012 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:45,012 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-08-29 16:15:45,012 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [978330807] [2021-08-29 16:15:45,013 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-08-29 16:15:45,013 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:45,014 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-08-29 16:15:45,014 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-29 16:15:45,014 INFO L87 Difference]: Start difference. First operand 47 states and 67 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:45,169 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:45,169 INFO L93 Difference]: Finished difference Result 111 states and 161 transitions. [2021-08-29 16:15:45,170 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-08-29 16:15:45,170 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-08-29 16:15:45,171 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:45,172 INFO L225 Difference]: With dead ends: 111 [2021-08-29 16:15:45,172 INFO L226 Difference]: Without dead ends: 70 [2021-08-29 16:15:45,175 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 1.96ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-08-29 16:15:45,179 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 37 mSDsluCounter, 33 mSDsCounter, 0 mSdLazyCounter, 116 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 110.26ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 122 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 1.50ms SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 116 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 143.15ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:45,182 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [37 Valid, 0 Invalid, 122 Unknown, 0 Unchecked, 1.50ms Time], IncrementalHoareTripleChecker [6 Valid, 116 Invalid, 0 Unknown, 0 Unchecked, 143.15ms Time] [2021-08-29 16:15:45,183 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 70 states. [2021-08-29 16:15:45,189 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 70 to 68. [2021-08-29 16:15:45,191 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 67 states have (on average 1.4328358208955223) internal successors, (96), 67 states have internal predecessors, (96), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:45,192 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 96 transitions. [2021-08-29 16:15:45,193 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 96 transitions. Word has length 26 [2021-08-29 16:15:45,193 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:45,193 INFO L470 AbstractCegarLoop]: Abstraction has 68 states and 96 transitions. [2021-08-29 16:15:45,194 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:45,194 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 96 transitions. [2021-08-29 16:15:45,198 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-08-29 16:15:45,198 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:45,198 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:45,199 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-08-29 16:15:45,199 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:45,200 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:45,200 INFO L82 PathProgramCache]: Analyzing trace with hash 201355136, now seen corresponding path program 1 times [2021-08-29 16:15:45,200 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:45,200 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1030718655] [2021-08-29 16:15:45,201 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:45,201 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:45,229 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:45,285 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:45,286 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:45,286 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1030718655] [2021-08-29 16:15:45,286 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1030718655] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:45,286 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:45,286 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-29 16:15:45,286 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1276662121] [2021-08-29 16:15:45,287 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-29 16:15:45,287 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:45,288 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-29 16:15:45,289 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:45,289 INFO L87 Difference]: Start difference. First operand 68 states and 96 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:45,618 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:45,618 INFO L93 Difference]: Finished difference Result 183 states and 257 transitions. [2021-08-29 16:15:45,619 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-08-29 16:15:45,619 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-08-29 16:15:45,619 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:45,620 INFO L225 Difference]: With dead ends: 183 [2021-08-29 16:15:45,620 INFO L226 Difference]: Without dead ends: 121 [2021-08-29 16:15:45,621 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 19.05ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-08-29 16:15:45,621 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 133 mSDsluCounter, 238 mSDsCounter, 0 mSdLazyCounter, 351 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 236.71ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 133 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 357 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 3.03ms SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 351 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 299.11ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:45,622 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [133 Valid, 0 Invalid, 357 Unknown, 0 Unchecked, 3.03ms Time], IncrementalHoareTripleChecker [6 Valid, 351 Invalid, 0 Unknown, 0 Unchecked, 299.11ms Time] [2021-08-29 16:15:45,622 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2021-08-29 16:15:45,628 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 74. [2021-08-29 16:15:45,629 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 73 states have (on average 1.3972602739726028) internal successors, (102), 73 states have internal predecessors, (102), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:45,629 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 102 transitions. [2021-08-29 16:15:45,629 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 102 transitions. Word has length 32 [2021-08-29 16:15:45,630 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:45,630 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 102 transitions. [2021-08-29 16:15:45,630 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:45,630 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 102 transitions. [2021-08-29 16:15:45,630 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-08-29 16:15:45,630 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:45,631 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:45,631 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-08-29 16:15:45,631 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:45,633 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:45,633 INFO L82 PathProgramCache]: Analyzing trace with hash -926040957, now seen corresponding path program 1 times [2021-08-29 16:15:45,633 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:45,633 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1328722879] [2021-08-29 16:15:45,634 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:45,634 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:45,661 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:45,711 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:45,711 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:45,711 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1328722879] [2021-08-29 16:15:45,712 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1328722879] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:45,712 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:45,712 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-08-29 16:15:45,712 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2125185470] [2021-08-29 16:15:45,712 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-29 16:15:45,712 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:45,713 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-29 16:15:45,713 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:45,713 INFO L87 Difference]: Start difference. First operand 74 states and 102 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,138 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:46,138 INFO L93 Difference]: Finished difference Result 373 states and 530 transitions. [2021-08-29 16:15:46,139 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-08-29 16:15:46,139 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-08-29 16:15:46,139 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:46,140 INFO L225 Difference]: With dead ends: 373 [2021-08-29 16:15:46,140 INFO L226 Difference]: Without dead ends: 305 [2021-08-29 16:15:46,141 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 27.07ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-08-29 16:15:46,142 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 210 mSDsluCounter, 295 mSDsCounter, 0 mSdLazyCounter, 456 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 294.86ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 210 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 463 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 3.07ms SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 456 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 372.68ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:46,142 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [210 Valid, 0 Invalid, 463 Unknown, 0 Unchecked, 3.07ms Time], IncrementalHoareTripleChecker [7 Valid, 456 Invalid, 0 Unknown, 0 Unchecked, 372.68ms Time] [2021-08-29 16:15:46,143 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 305 states. [2021-08-29 16:15:46,153 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 305 to 121. [2021-08-29 16:15:46,154 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 120 states have (on average 1.3666666666666667) internal successors, (164), 120 states have internal predecessors, (164), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,154 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 164 transitions. [2021-08-29 16:15:46,154 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 164 transitions. Word has length 32 [2021-08-29 16:15:46,155 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:46,155 INFO L470 AbstractCegarLoop]: Abstraction has 121 states and 164 transitions. [2021-08-29 16:15:46,155 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,155 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 164 transitions. [2021-08-29 16:15:46,156 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-08-29 16:15:46,156 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:46,156 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:46,157 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-08-29 16:15:46,157 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:46,157 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:46,157 INFO L82 PathProgramCache]: Analyzing trace with hash -1997087487, now seen corresponding path program 1 times [2021-08-29 16:15:46,157 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:46,158 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [947118183] [2021-08-29 16:15:46,158 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:46,158 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:46,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:46,197 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:46,198 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:46,198 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [947118183] [2021-08-29 16:15:46,198 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [947118183] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:46,198 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:46,198 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-08-29 16:15:46,198 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [223880618] [2021-08-29 16:15:46,199 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-08-29 16:15:46,199 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:46,199 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-08-29 16:15:46,200 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-08-29 16:15:46,200 INFO L87 Difference]: Start difference. First operand 121 states and 164 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,410 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:46,410 INFO L93 Difference]: Finished difference Result 250 states and 345 transitions. [2021-08-29 16:15:46,410 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-08-29 16:15:46,410 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-08-29 16:15:46,411 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:46,411 INFO L225 Difference]: With dead ends: 250 [2021-08-29 16:15:46,411 INFO L226 Difference]: Without dead ends: 182 [2021-08-29 16:15:46,412 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 4.05ms TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-08-29 16:15:46,412 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 69 mSDsluCounter, 114 mSDsCounter, 0 mSdLazyCounter, 239 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 136.40ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 69 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 244 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.75ms SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 239 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 182.37ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:46,413 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [69 Valid, 0 Invalid, 244 Unknown, 0 Unchecked, 0.75ms Time], IncrementalHoareTripleChecker [5 Valid, 239 Invalid, 0 Unknown, 0 Unchecked, 182.37ms Time] [2021-08-29 16:15:46,413 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2021-08-29 16:15:46,426 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 179. [2021-08-29 16:15:46,433 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3651685393258426) internal successors, (243), 178 states have internal predecessors, (243), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,434 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 243 transitions. [2021-08-29 16:15:46,434 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 243 transitions. Word has length 33 [2021-08-29 16:15:46,434 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:46,434 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 243 transitions. [2021-08-29 16:15:46,435 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,435 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 243 transitions. [2021-08-29 16:15:46,436 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-08-29 16:15:46,436 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:46,437 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:46,437 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-08-29 16:15:46,437 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:46,438 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:46,438 INFO L82 PathProgramCache]: Analyzing trace with hash 1286762559, now seen corresponding path program 1 times [2021-08-29 16:15:46,438 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:46,439 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [158543621] [2021-08-29 16:15:46,439 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:46,439 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:46,460 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:46,488 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:46,488 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:46,488 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [158543621] [2021-08-29 16:15:46,489 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [158543621] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:46,489 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:46,489 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-08-29 16:15:46,489 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1070346455] [2021-08-29 16:15:46,490 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-08-29 16:15:46,490 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:46,490 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-08-29 16:15:46,490 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-08-29 16:15:46,491 INFO L87 Difference]: Start difference. First operand 179 states and 243 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,764 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:46,764 INFO L93 Difference]: Finished difference Result 422 states and 584 transitions. [2021-08-29 16:15:46,765 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-08-29 16:15:46,765 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-08-29 16:15:46,765 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:46,767 INFO L225 Difference]: With dead ends: 422 [2021-08-29 16:15:46,767 INFO L226 Difference]: Without dead ends: 295 [2021-08-29 16:15:46,767 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 7.76ms TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:46,768 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 106 mSDsluCounter, 133 mSDsCounter, 0 mSdLazyCounter, 294 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 173.60ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 106 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 299 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 1.42ms SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 294 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 240.72ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:46,768 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [106 Valid, 0 Invalid, 299 Unknown, 0 Unchecked, 1.42ms Time], IncrementalHoareTripleChecker [5 Valid, 294 Invalid, 0 Unknown, 0 Unchecked, 240.72ms Time] [2021-08-29 16:15:46,769 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 295 states. [2021-08-29 16:15:46,781 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 295 to 173. [2021-08-29 16:15:46,782 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 173 states, 172 states have (on average 1.3662790697674418) internal successors, (235), 172 states have internal predecessors, (235), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,782 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 173 states to 173 states and 235 transitions. [2021-08-29 16:15:46,783 INFO L78 Accepts]: Start accepts. Automaton has 173 states and 235 transitions. Word has length 33 [2021-08-29 16:15:46,783 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:46,783 INFO L470 AbstractCegarLoop]: Abstraction has 173 states and 235 transitions. [2021-08-29 16:15:46,783 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:46,783 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 235 transitions. [2021-08-29 16:15:46,784 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-08-29 16:15:46,784 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:46,793 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:46,793 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-08-29 16:15:46,794 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:46,794 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:46,794 INFO L82 PathProgramCache]: Analyzing trace with hash -1622643206, now seen corresponding path program 1 times [2021-08-29 16:15:46,794 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:46,795 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2028915166] [2021-08-29 16:15:46,796 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:46,798 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:46,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:46,865 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:46,865 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:46,865 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2028915166] [2021-08-29 16:15:46,865 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2028915166] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:46,866 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:46,866 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-29 16:15:46,866 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1385643111] [2021-08-29 16:15:46,866 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-29 16:15:46,866 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:46,867 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-29 16:15:46,867 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:46,867 INFO L87 Difference]: Start difference. First operand 173 states and 235 transitions. Second operand has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,218 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:47,218 INFO L93 Difference]: Finished difference Result 457 states and 634 transitions. [2021-08-29 16:15:47,218 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-08-29 16:15:47,219 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-08-29 16:15:47,219 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:47,220 INFO L225 Difference]: With dead ends: 457 [2021-08-29 16:15:47,220 INFO L226 Difference]: Without dead ends: 290 [2021-08-29 16:15:47,220 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 20.88ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-08-29 16:15:47,221 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 133 mSDsluCounter, 282 mSDsCounter, 0 mSdLazyCounter, 447 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 232.24ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 133 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 450 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 1.69ms SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 447 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 306.21ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:47,221 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [133 Valid, 0 Invalid, 450 Unknown, 0 Unchecked, 1.69ms Time], IncrementalHoareTripleChecker [3 Valid, 447 Invalid, 0 Unknown, 0 Unchecked, 306.21ms Time] [2021-08-29 16:15:47,222 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 290 states. [2021-08-29 16:15:47,241 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 290 to 152. [2021-08-29 16:15:47,242 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 152 states, 151 states have (on average 1.3178807947019868) internal successors, (199), 151 states have internal predecessors, (199), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,242 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 152 states to 152 states and 199 transitions. [2021-08-29 16:15:47,243 INFO L78 Accepts]: Start accepts. Automaton has 152 states and 199 transitions. Word has length 33 [2021-08-29 16:15:47,243 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:47,243 INFO L470 AbstractCegarLoop]: Abstraction has 152 states and 199 transitions. [2021-08-29 16:15:47,243 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,244 INFO L276 IsEmpty]: Start isEmpty. Operand 152 states and 199 transitions. [2021-08-29 16:15:47,244 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-08-29 16:15:47,244 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:47,244 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:47,245 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-08-29 16:15:47,245 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:47,245 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:47,245 INFO L82 PathProgramCache]: Analyzing trace with hash 1544927997, now seen corresponding path program 1 times [2021-08-29 16:15:47,246 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:47,246 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1885741284] [2021-08-29 16:15:47,246 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:47,246 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:47,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:47,289 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:47,289 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:47,289 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1885741284] [2021-08-29 16:15:47,290 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1885741284] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:47,290 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:47,290 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-29 16:15:47,290 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1072655485] [2021-08-29 16:15:47,291 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-29 16:15:47,292 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:47,292 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-29 16:15:47,292 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:47,292 INFO L87 Difference]: Start difference. First operand 152 states and 199 transitions. Second operand has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,542 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:47,542 INFO L93 Difference]: Finished difference Result 385 states and 513 transitions. [2021-08-29 16:15:47,542 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-08-29 16:15:47,543 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-08-29 16:15:47,543 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:47,544 INFO L225 Difference]: With dead ends: 385 [2021-08-29 16:15:47,544 INFO L226 Difference]: Without dead ends: 239 [2021-08-29 16:15:47,544 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 17.59ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-08-29 16:15:47,545 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 199 mSDsluCounter, 161 mSDsCounter, 0 mSdLazyCounter, 260 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 165.29ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 199 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 260 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 1.26ms SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 260 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 212.51ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:47,545 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [199 Valid, 0 Invalid, 260 Unknown, 0 Unchecked, 1.26ms Time], IncrementalHoareTripleChecker [0 Valid, 260 Invalid, 0 Unknown, 0 Unchecked, 212.51ms Time] [2021-08-29 16:15:47,546 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 239 states. [2021-08-29 16:15:47,555 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 239 to 140. [2021-08-29 16:15:47,556 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 140 states, 139 states have (on average 1.2949640287769784) internal successors, (180), 139 states have internal predecessors, (180), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,556 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 140 states to 140 states and 180 transitions. [2021-08-29 16:15:47,557 INFO L78 Accepts]: Start accepts. Automaton has 140 states and 180 transitions. Word has length 33 [2021-08-29 16:15:47,557 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:47,557 INFO L470 AbstractCegarLoop]: Abstraction has 140 states and 180 transitions. [2021-08-29 16:15:47,557 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,557 INFO L276 IsEmpty]: Start isEmpty. Operand 140 states and 180 transitions. [2021-08-29 16:15:47,558 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2021-08-29 16:15:47,558 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:47,558 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:47,559 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-08-29 16:15:47,559 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:47,559 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:47,559 INFO L82 PathProgramCache]: Analyzing trace with hash 1506342504, now seen corresponding path program 1 times [2021-08-29 16:15:47,559 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:47,560 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [913426399] [2021-08-29 16:15:47,560 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:47,560 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:47,571 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:47,599 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-08-29 16:15:47,600 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:47,600 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [913426399] [2021-08-29 16:15:47,600 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [913426399] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:47,600 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:47,600 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-29 16:15:47,600 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2087284697] [2021-08-29 16:15:47,601 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-29 16:15:47,601 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:47,601 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-29 16:15:47,601 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:47,602 INFO L87 Difference]: Start difference. First operand 140 states and 180 transitions. Second operand has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,791 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:47,791 INFO L93 Difference]: Finished difference Result 281 states and 369 transitions. [2021-08-29 16:15:47,792 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-08-29 16:15:47,792 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 50 [2021-08-29 16:15:47,792 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:47,793 INFO L225 Difference]: With dead ends: 281 [2021-08-29 16:15:47,793 INFO L226 Difference]: Without dead ends: 173 [2021-08-29 16:15:47,794 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 15.89ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-08-29 16:15:47,795 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 133 mSDsluCounter, 99 mSDsCounter, 0 mSdLazyCounter, 191 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 119.87ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 133 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 192 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.85ms SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 191 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 155.56ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:47,795 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [133 Valid, 0 Invalid, 192 Unknown, 0 Unchecked, 0.85ms Time], IncrementalHoareTripleChecker [1 Valid, 191 Invalid, 0 Unknown, 0 Unchecked, 155.56ms Time] [2021-08-29 16:15:47,795 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 173 states. [2021-08-29 16:15:47,804 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 173 to 124. [2021-08-29 16:15:47,805 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 124 states, 123 states have (on average 1.3008130081300813) internal successors, (160), 123 states have internal predecessors, (160), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,805 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 124 states to 124 states and 160 transitions. [2021-08-29 16:15:47,806 INFO L78 Accepts]: Start accepts. Automaton has 124 states and 160 transitions. Word has length 50 [2021-08-29 16:15:47,806 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:47,806 INFO L470 AbstractCegarLoop]: Abstraction has 124 states and 160 transitions. [2021-08-29 16:15:47,806 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:47,806 INFO L276 IsEmpty]: Start isEmpty. Operand 124 states and 160 transitions. [2021-08-29 16:15:47,807 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2021-08-29 16:15:47,807 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:47,808 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:47,809 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-08-29 16:15:47,809 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:47,810 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:47,810 INFO L82 PathProgramCache]: Analyzing trace with hash 1478931236, now seen corresponding path program 1 times [2021-08-29 16:15:47,810 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:47,810 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [981741833] [2021-08-29 16:15:47,810 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:47,810 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:47,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:47,875 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-08-29 16:15:47,875 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:47,875 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [981741833] [2021-08-29 16:15:47,876 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [981741833] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:47,876 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:47,876 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-08-29 16:15:47,876 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [495034615] [2021-08-29 16:15:47,879 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-29 16:15:47,879 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:47,880 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-29 16:15:47,880 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:47,880 INFO L87 Difference]: Start difference. First operand 124 states and 160 transitions. Second operand has 5 states, 5 states have (on average 10.2) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:48,250 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:48,250 INFO L93 Difference]: Finished difference Result 633 states and 812 transitions. [2021-08-29 16:15:48,251 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-08-29 16:15:48,251 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 51 [2021-08-29 16:15:48,252 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:48,254 INFO L225 Difference]: With dead ends: 633 [2021-08-29 16:15:48,254 INFO L226 Difference]: Without dead ends: 515 [2021-08-29 16:15:48,255 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 34.43ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-08-29 16:15:48,255 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 214 mSDsluCounter, 246 mSDsCounter, 0 mSdLazyCounter, 369 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 214.52ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 214 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 378 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 2.11ms SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 369 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 276.51ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:48,256 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [214 Valid, 0 Invalid, 378 Unknown, 0 Unchecked, 2.11ms Time], IncrementalHoareTripleChecker [9 Valid, 369 Invalid, 0 Unknown, 0 Unchecked, 276.51ms Time] [2021-08-29 16:15:48,256 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 515 states. [2021-08-29 16:15:48,274 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 515 to 240. [2021-08-29 16:15:48,275 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2719665271966527) internal successors, (304), 239 states have internal predecessors, (304), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:48,276 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 304 transitions. [2021-08-29 16:15:48,276 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 304 transitions. Word has length 51 [2021-08-29 16:15:48,277 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:48,277 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 304 transitions. [2021-08-29 16:15:48,277 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:48,277 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 304 transitions. [2021-08-29 16:15:48,278 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2021-08-29 16:15:48,278 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:48,278 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:48,279 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-08-29 16:15:48,279 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:48,279 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:48,279 INFO L82 PathProgramCache]: Analyzing trace with hash -1296612962, now seen corresponding path program 1 times [2021-08-29 16:15:48,280 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:48,280 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1123743041] [2021-08-29 16:15:48,280 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:48,280 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:48,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:48,331 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2021-08-29 16:15:48,332 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:48,332 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1123743041] [2021-08-29 16:15:48,332 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1123743041] provided 0 perfect and 1 imperfect interpolant sequences [2021-08-29 16:15:48,332 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1060638384] [2021-08-29 16:15:48,332 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:48,333 INFO L170 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-08-29 16:15:48,333 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-08-29 16:15:48,337 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-08-29 16:15:48,346 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-08-29 16:15:48,457 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:48,461 INFO L263 TraceCheckSpWp]: Trace formula consists of 434 conjuncts, 5 conjunts are in the unsatisfiable core [2021-08-29 16:15:48,466 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-08-29 16:15:48,668 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2021-08-29 16:15:48,669 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-08-29 16:15:48,793 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 6 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2021-08-29 16:15:48,793 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1060638384] provided 0 perfect and 2 imperfect interpolant sequences [2021-08-29 16:15:48,794 INFO L186 FreeRefinementEngine]: Constructing automaton from 0 perfect and 3 imperfect interpolant sequences. [2021-08-29 16:15:48,794 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 8 [2021-08-29 16:15:48,794 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1805094756] [2021-08-29 16:15:48,794 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-08-29 16:15:48,794 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:48,795 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-08-29 16:15:48,795 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2021-08-29 16:15:48,795 INFO L87 Difference]: Start difference. First operand 240 states and 304 transitions. Second operand has 8 states, 8 states have (on average 10.0) internal successors, (80), 8 states have internal predecessors, (80), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:49,249 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:49,250 INFO L93 Difference]: Finished difference Result 580 states and 730 transitions. [2021-08-29 16:15:49,250 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-08-29 16:15:49,251 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 10.0) internal successors, (80), 8 states have internal predecessors, (80), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 52 [2021-08-29 16:15:49,251 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:49,252 INFO L225 Difference]: With dead ends: 580 [2021-08-29 16:15:49,252 INFO L226 Difference]: Without dead ends: 346 [2021-08-29 16:15:49,253 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 111 GetRequests, 101 SyntacticMatches, 1 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 46.44ms TimeCoverageRelationStatistics Valid=38, Invalid=72, Unknown=0, NotChecked=0, Total=110 [2021-08-29 16:15:49,254 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 288 mSDsluCounter, 226 mSDsCounter, 0 mSdLazyCounter, 352 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 279.63ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 288 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 363 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 1.96ms SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 352 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 388.62ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:49,254 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [288 Valid, 0 Invalid, 363 Unknown, 0 Unchecked, 1.96ms Time], IncrementalHoareTripleChecker [11 Valid, 352 Invalid, 0 Unknown, 0 Unchecked, 388.62ms Time] [2021-08-29 16:15:49,255 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 346 states. [2021-08-29 16:15:49,273 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 346 to 226. [2021-08-29 16:15:49,274 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 226 states, 225 states have (on average 1.231111111111111) internal successors, (277), 225 states have internal predecessors, (277), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:49,274 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 226 states to 226 states and 277 transitions. [2021-08-29 16:15:49,274 INFO L78 Accepts]: Start accepts. Automaton has 226 states and 277 transitions. Word has length 52 [2021-08-29 16:15:49,275 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:49,275 INFO L470 AbstractCegarLoop]: Abstraction has 226 states and 277 transitions. [2021-08-29 16:15:49,275 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 10.0) internal successors, (80), 8 states have internal predecessors, (80), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:49,275 INFO L276 IsEmpty]: Start isEmpty. Operand 226 states and 277 transitions. [2021-08-29 16:15:49,276 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-08-29 16:15:49,276 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:49,276 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:49,312 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-08-29 16:15:49,512 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2021-08-29 16:15:49,513 INFO L402 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:49,513 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:49,513 INFO L82 PathProgramCache]: Analyzing trace with hash -1589885263, now seen corresponding path program 1 times [2021-08-29 16:15:49,513 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:49,513 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1808734213] [2021-08-29 16:15:49,514 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:49,514 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:49,527 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:49,560 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-08-29 16:15:49,560 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:49,561 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1808734213] [2021-08-29 16:15:49,561 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1808734213] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:49,562 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:49,562 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-29 16:15:49,562 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1426262960] [2021-08-29 16:15:49,562 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-08-29 16:15:49,563 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:49,563 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-08-29 16:15:49,563 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-08-29 16:15:49,563 INFO L87 Difference]: Start difference. First operand 226 states and 277 transitions. Second operand has 6 states, 6 states have (on average 7.5) internal successors, (45), 5 states have internal predecessors, (45), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:50,031 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:50,032 INFO L93 Difference]: Finished difference Result 547 states and 678 transitions. [2021-08-29 16:15:50,032 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-08-29 16:15:50,033 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.5) internal successors, (45), 5 states have internal predecessors, (45), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-08-29 16:15:50,033 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:50,034 INFO L225 Difference]: With dead ends: 547 [2021-08-29 16:15:50,034 INFO L226 Difference]: Without dead ends: 377 [2021-08-29 16:15:50,035 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 44.93ms TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-08-29 16:15:50,036 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 151 mSDsluCounter, 348 mSDsCounter, 0 mSdLazyCounter, 544 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 287.67ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 151 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 552 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 2.94ms SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 544 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 375.56ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:50,036 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [151 Valid, 0 Invalid, 552 Unknown, 0 Unchecked, 2.94ms Time], IncrementalHoareTripleChecker [8 Valid, 544 Invalid, 0 Unknown, 0 Unchecked, 375.56ms Time] [2021-08-29 16:15:50,037 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 377 states. [2021-08-29 16:15:50,055 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 377 to 226. [2021-08-29 16:15:50,056 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 226 states, 225 states have (on average 1.2266666666666666) internal successors, (276), 225 states have internal predecessors, (276), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:50,056 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 226 states to 226 states and 276 transitions. [2021-08-29 16:15:50,057 INFO L78 Accepts]: Start accepts. Automaton has 226 states and 276 transitions. Word has length 53 [2021-08-29 16:15:50,057 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:50,057 INFO L470 AbstractCegarLoop]: Abstraction has 226 states and 276 transitions. [2021-08-29 16:15:50,057 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.5) internal successors, (45), 5 states have internal predecessors, (45), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:50,057 INFO L276 IsEmpty]: Start isEmpty. Operand 226 states and 276 transitions. [2021-08-29 16:15:50,058 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 75 [2021-08-29 16:15:50,058 INFO L505 BasicCegarLoop]: Found error trace [2021-08-29 16:15:50,059 INFO L513 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-08-29 16:15:50,059 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2021-08-29 16:15:50,059 INFO L402 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-08-29 16:15:50,059 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-08-29 16:15:50,059 INFO L82 PathProgramCache]: Analyzing trace with hash -929354426, now seen corresponding path program 1 times [2021-08-29 16:15:50,060 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-08-29 16:15:50,060 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1422775120] [2021-08-29 16:15:50,060 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-08-29 16:15:50,060 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-08-29 16:15:50,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-08-29 16:15:50,105 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2021-08-29 16:15:50,106 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-08-29 16:15:50,106 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1422775120] [2021-08-29 16:15:50,106 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1422775120] provided 1 perfect and 0 imperfect interpolant sequences [2021-08-29 16:15:50,106 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-08-29 16:15:50,106 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-08-29 16:15:50,106 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [973417796] [2021-08-29 16:15:50,107 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-08-29 16:15:50,107 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-08-29 16:15:50,107 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-08-29 16:15:50,107 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-08-29 16:15:50,108 INFO L87 Difference]: Start difference. First operand 226 states and 276 transitions. Second operand has 5 states, 5 states have (on average 10.4) internal successors, (52), 5 states have internal predecessors, (52), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:50,531 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-08-29 16:15:50,531 INFO L93 Difference]: Finished difference Result 863 states and 1072 transitions. [2021-08-29 16:15:50,532 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-08-29 16:15:50,532 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.4) internal successors, (52), 5 states have internal predecessors, (52), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 74 [2021-08-29 16:15:50,532 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-08-29 16:15:50,532 INFO L225 Difference]: With dead ends: 863 [2021-08-29 16:15:50,532 INFO L226 Difference]: Without dead ends: 0 [2021-08-29 16:15:50,534 INFO L927 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 31.58ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-08-29 16:15:50,534 INFO L928 BasicCegarLoop]: 0 mSDtfsCounter, 211 mSDsluCounter, 236 mSDsCounter, 0 mSdLazyCounter, 383 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 243.18ms Time, 0 mProtectedPredicate, 0 mProtectedAction, 211 SdHoareTripleChecker+Valid, 0 SdHoareTripleChecker+Invalid, 392 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 2.22ms SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 383 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 320.54ms IncrementalHoareTripleChecker+Time [2021-08-29 16:15:50,534 INFO L929 BasicCegarLoop]: SdHoareTripleChecker [211 Valid, 0 Invalid, 392 Unknown, 0 Unchecked, 2.22ms Time], IncrementalHoareTripleChecker [9 Valid, 383 Invalid, 0 Unknown, 0 Unchecked, 320.54ms Time] [2021-08-29 16:15:50,535 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-08-29 16:15:50,535 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-08-29 16:15:50,535 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:50,535 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-08-29 16:15:50,536 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 74 [2021-08-29 16:15:50,536 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-08-29 16:15:50,536 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-08-29 16:15:50,536 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.4) internal successors, (52), 5 states have internal predecessors, (52), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-08-29 16:15:50,536 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-08-29 16:15:50,536 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-08-29 16:15:50,539 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION (2 of 3 remaining) [2021-08-29 16:15:50,539 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION (1 of 3 remaining) [2021-08-29 16:15:50,540 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION (0 of 3 remaining) [2021-08-29 16:15:50,540 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2021-08-29 16:15:50,542 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-08-29 16:15:50,546 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:50,897 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:50,898 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,252 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,325 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,409 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,410 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,485 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,487 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,487 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,516 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,517 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,518 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,547 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,547 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,548 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,549 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,550 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,550 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,551 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,551 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,551 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,555 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,556 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,557 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:51,558 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,010 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,011 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,011 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,498 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,636 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,638 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,638 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,642 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,643 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,643 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,643 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,644 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,644 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,645 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,645 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,645 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,661 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,662 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,662 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:52,663 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-08-29 16:15:57,388 INFO L854 garLoopResultBuilder]: At program point L894(lines 889 897) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse8 (= ~pumpRunning~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse4 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse6 (= 1 ~systemActive~0)) (.cse7 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~1 1) (<= 2 ~waterLevel~0) .cse6 .cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 (= ULTIMATE.start_processEnvironment_~tmp~2 0) .cse7 (= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse8) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 (= ~pumpRunning~0 0) .cse4 .cse5 (<= ~waterLevel~0 1) .cse6 .cse7))) [2021-08-29 16:15:57,388 INFO L854 garLoopResultBuilder]: At program point L894-1(lines 889 897) the Hoare annotation is: false [2021-08-29 16:15:57,390 INFO L854 garLoopResultBuilder]: At program point L894-2(lines 889 897) the Hoare annotation is: false [2021-08-29 16:15:57,390 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 717) no Hoare annotation was computed. [2021-08-29 16:15:57,390 INFO L854 garLoopResultBuilder]: At program point L168(lines 167 186) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse6 (= ~pumpRunning~0 1)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse8 (= ~pumpRunning~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= ~methaneLevelCritical~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse7 .cse4 .cse6) (and .cse1 .cse8 .cse7 .cse4) (and .cse1 .cse8 .cse4 .cse5))) [2021-08-29 16:15:57,390 INFO L858 garLoopResultBuilder]: For program point L168-1(lines 168 174) no Hoare annotation was computed. [2021-08-29 16:15:57,390 INFO L854 garLoopResultBuilder]: At program point L168-2(lines 167 186) the Hoare annotation is: false [2021-08-29 16:15:57,391 INFO L854 garLoopResultBuilder]: At program point L168-3(lines 167 186) the Hoare annotation is: false [2021-08-29 16:15:57,391 INFO L858 garLoopResultBuilder]: For program point L928(lines 928 941) no Hoare annotation was computed. [2021-08-29 16:15:57,391 INFO L854 garLoopResultBuilder]: At program point L928-1(lines 1 945) the Hoare annotation is: (let ((.cse6 (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~1 1)) (.cse7 (<= 2 ~waterLevel~0)) (.cse10 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse4 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse9 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 0)) (.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse16 (= ULTIMATE.start_processEnvironment_~tmp~2 0)) (.cse11 (= ~pumpRunning~0 1)) (.cse13 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1)) (.cse14 (= ~methaneLevelCritical~0 1)) (.cse15 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse12 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse8 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 .cse12 .cse4 .cse5 (<= ~waterLevel~0 1) .cse8 .cse9 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~2 1)) (and .cse0 .cse1 .cse2 .cse3 .cse6 .cse7 .cse13 .cse8 .cse14 .cse10 .cse15 .cse11) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse8 .cse16 .cse9 (= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse11) (and .cse0 .cse1 .cse2 .cse3 .cse13 .cse8 .cse14 .cse16 .cse15 .cse11) (and .cse1 .cse12 .cse13 .cse8 .cse14 .cse15) (and .cse1 .cse12 .cse5 .cse8 (= ~waterLevel~0 1)))) [2021-08-29 16:15:57,391 INFO L854 garLoopResultBuilder]: At program point L862(lines 857 865) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse5))) [2021-08-29 16:15:57,391 INFO L858 garLoopResultBuilder]: For program point L928-2(lines 928 941) no Hoare annotation was computed. [2021-08-29 16:15:57,392 INFO L854 garLoopResultBuilder]: At program point L862-1(lines 857 865) the Hoare annotation is: (let ((.cse8 (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~1 1)) (.cse9 (<= 2 ~waterLevel~0)) (.cse11 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse5 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse6 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse7 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse14 (= ULTIMATE.start_processEnvironment_~tmp~2 0)) (.cse13 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse10 (= ~methaneLevelCritical~0 1)) (.cse12 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) .cse4) (and .cse5 .cse0 .cse6 .cse7 .cse8 .cse9 .cse4 .cse10 .cse11 .cse12 .cse13) (and .cse5 .cse0 .cse6 .cse7 .cse2 .cse3 .cse8 .cse9 .cse4 .cse11 .cse13) (and .cse5 .cse0 .cse6 .cse7 .cse2 .cse3 .cse4 .cse14 (= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse13) (and .cse5 .cse0 .cse6 .cse7 .cse4 .cse10 .cse14 .cse12 .cse13) (and .cse0 .cse1 .cse4 .cse10 .cse12))) [2021-08-29 16:15:57,392 INFO L854 garLoopResultBuilder]: At program point L928-3(lines 1 945) the Hoare annotation is: false [2021-08-29 16:15:57,392 INFO L854 garLoopResultBuilder]: At program point L862-2(lines 857 865) the Hoare annotation is: false [2021-08-29 16:15:57,392 INFO L858 garLoopResultBuilder]: For program point L928-4(lines 928 941) no Hoare annotation was computed. [2021-08-29 16:15:57,392 INFO L854 garLoopResultBuilder]: At program point L862-3(lines 857 865) the Hoare annotation is: false [2021-08-29 16:15:57,392 INFO L854 garLoopResultBuilder]: At program point L928-5(lines 1 945) the Hoare annotation is: false [2021-08-29 16:15:57,393 INFO L854 garLoopResultBuilder]: At program point L862-4(lines 857 865) the Hoare annotation is: false [2021-08-29 16:15:57,393 INFO L854 garLoopResultBuilder]: At program point L862-5(lines 857 865) the Hoare annotation is: false [2021-08-29 16:15:57,393 INFO L854 garLoopResultBuilder]: At program point L334(lines 319 337) the Hoare annotation is: false [2021-08-29 16:15:57,393 INFO L854 garLoopResultBuilder]: At program point L334-1(lines 319 337) the Hoare annotation is: (let ((.cse9 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse14 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (let ((.cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse11 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse12 (<= 2 ~waterLevel~0)) (.cse0 (not .cse14)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse3 (= ~pumpRunning~0 0)) (.cse5 (<= ~waterLevel~0 1)) (.cse6 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse7 (= 1 ~systemActive~0)) (.cse13 (= ~methaneLevelCritical~0 1)) (.cse8 (not .cse9))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse9 .cse1 .cse3 .cse10 .cse11 .cse12 .cse7 .cse13 .cse14) (and .cse9 .cse1 .cse3 .cse10 .cse11 .cse4 .cse12 .cse7 .cse14) (and .cse0 .cse1 .cse2 .cse3 .cse5 .cse6 .cse7 .cse13 .cse8)))) [2021-08-29 16:15:57,393 INFO L854 garLoopResultBuilder]: At program point L334-2(lines 319 337) the Hoare annotation is: false [2021-08-29 16:15:57,393 INFO L854 garLoopResultBuilder]: At program point L334-3(lines 319 337) the Hoare annotation is: false [2021-08-29 16:15:57,393 INFO L854 garLoopResultBuilder]: At program point L334-4(lines 319 337) the Hoare annotation is: false [2021-08-29 16:15:57,394 INFO L854 garLoopResultBuilder]: At program point L334-5(lines 319 337) the Hoare annotation is: false [2021-08-29 16:15:57,394 INFO L854 garLoopResultBuilder]: At program point L270(lines 263 273) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse5) (and .cse0 .cse1 .cse2 .cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse4 (= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse5))) [2021-08-29 16:15:57,394 INFO L854 garLoopResultBuilder]: At program point L270-1(lines 263 273) the Hoare annotation is: false [2021-08-29 16:15:57,394 INFO L858 garLoopResultBuilder]: For program point L204(lines 204 212) no Hoare annotation was computed. [2021-08-29 16:15:57,394 INFO L854 garLoopResultBuilder]: At program point L270-2(lines 263 273) the Hoare annotation is: false [2021-08-29 16:15:57,394 INFO L858 garLoopResultBuilder]: For program point L204-1(lines 204 212) no Hoare annotation was computed. [2021-08-29 16:15:57,395 INFO L858 garLoopResultBuilder]: For program point L204-2(lines 204 212) no Hoare annotation was computed. [2021-08-29 16:15:57,395 INFO L858 garLoopResultBuilder]: For program point L105(lines 105 111) no Hoare annotation was computed. [2021-08-29 16:15:57,395 INFO L858 garLoopResultBuilder]: For program point L204-3(lines 204 212) no Hoare annotation was computed. [2021-08-29 16:15:57,395 INFO L854 garLoopResultBuilder]: At program point L105-1(lines 105 111) the Hoare annotation is: (let ((.cse15 (= ~waterLevel~0 1)) (.cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse8 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse16 (<= 2 ~waterLevel~0)) (.cse4 (= 1 ~systemActive~0)) (.cse13 (= ~pumpRunning~0 1))) (let ((.cse11 (= ULTIMATE.start_processEnvironment_~tmp~2 0)) (.cse3 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse6 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse14 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse1 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse9 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse10 (= ~methaneLevelCritical~0 0)) (.cse2 (or (and .cse7 .cse8 .cse15 .cse13) (and .cse7 .cse8 .cse16 .cse4 .cse13))) (.cse12 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse7 .cse8 .cse0 .cse1 .cse9 .cse10 .cse4 .cse11 .cse12 (= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse13) (and .cse7 .cse8 .cse0 .cse1 .cse3 .cse4 .cse5 .cse11 .cse6 .cse13) (and .cse8 .cse14 .cse3 .cse4 .cse5 .cse6) (and .cse8 .cse14 .cse10 .cse4 .cse15) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse8 .cse14 .cse9 .cse10 .cse4 .cse12 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~2 1)) (and .cse8 .cse14 .cse10 .cse16 .cse4) (and .cse0 .cse1 .cse9 .cse10 .cse2 .cse4 .cse12)))) [2021-08-29 16:15:57,395 INFO L858 garLoopResultBuilder]: For program point L204-4(lines 204 212) no Hoare annotation was computed. [2021-08-29 16:15:57,395 INFO L858 garLoopResultBuilder]: For program point L204-5(lines 204 212) no Hoare annotation was computed. [2021-08-29 16:15:57,396 INFO L854 garLoopResultBuilder]: At program point L733-2(lines 733 747) the Hoare annotation is: false [2021-08-29 16:15:57,396 INFO L858 garLoopResultBuilder]: For program point L932(lines 932 938) no Hoare annotation was computed. [2021-08-29 16:15:57,396 INFO L858 garLoopResultBuilder]: For program point L932-2(lines 932 938) no Hoare annotation was computed. [2021-08-29 16:15:57,396 INFO L858 garLoopResultBuilder]: For program point L932-4(lines 932 938) no Hoare annotation was computed. [2021-08-29 16:15:57,396 INFO L858 garLoopResultBuilder]: For program point L734(line 734) no Hoare annotation was computed. [2021-08-29 16:15:57,396 INFO L854 garLoopResultBuilder]: At program point L75(lines 70 78) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-08-29 16:15:57,397 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 717) no Hoare annotation was computed. [2021-08-29 16:15:57,397 INFO L854 garLoopResultBuilder]: At program point L175(lines 175 181) the Hoare annotation is: (let ((.cse10 (= ULTIMATE.start_processEnvironment_~tmp~2 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse5 (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~1 1)) (.cse6 (<= 2 ~waterLevel~0)) (.cse8 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse9 (= ~pumpRunning~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse12 (= ~pumpRunning~0 0)) (.cse7 (= 1 ~systemActive~0)) (.cse11 (= ~methaneLevelCritical~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9) (and .cse0 .cse1 .cse2 .cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse4 .cse7 .cse10 (= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse9) (and .cse0 .cse1 .cse2 .cse3 .cse7 .cse11 .cse10 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse9) (and .cse1 .cse12 .cse4 (<= ~waterLevel~0 1) .cse7) (and .cse0 .cse1 .cse2 .cse3 .cse5 .cse6 .cse7 .cse11 .cse8 .cse9) (and .cse1 .cse12 .cse7 .cse11))) [2021-08-29 16:15:57,397 INFO L854 garLoopResultBuilder]: At program point L175-1(lines 175 181) the Hoare annotation is: false [2021-08-29 16:15:57,397 INFO L854 garLoopResultBuilder]: At program point L175-2(lines 175 181) the Hoare annotation is: false [2021-08-29 16:15:57,397 INFO L858 garLoopResultBuilder]: For program point L902(lines 902 908) no Hoare annotation was computed. [2021-08-29 16:15:57,397 INFO L858 garLoopResultBuilder]: For program point L902-1(lines 902 908) no Hoare annotation was computed. [2021-08-29 16:15:57,398 INFO L858 garLoopResultBuilder]: For program point L902-2(lines 902 908) no Hoare annotation was computed. [2021-08-29 16:15:57,398 INFO L858 garLoopResultBuilder]: For program point L902-3(lines 902 908) no Hoare annotation was computed. [2021-08-29 16:15:57,398 INFO L858 garLoopResultBuilder]: For program point L902-4(lines 902 908) no Hoare annotation was computed. [2021-08-29 16:15:57,398 INFO L858 garLoopResultBuilder]: For program point L737(lines 737 741) no Hoare annotation was computed. [2021-08-29 16:15:57,398 INFO L858 garLoopResultBuilder]: For program point L902-5(lines 902 908) no Hoare annotation was computed. [2021-08-29 16:15:57,398 INFO L858 garLoopResultBuilder]: For program point L737-1(lines 168 174) no Hoare annotation was computed. [2021-08-29 16:15:57,398 INFO L854 garLoopResultBuilder]: At program point L143(lines 94 144) the Hoare annotation is: false [2021-08-29 16:15:57,399 INFO L858 garLoopResultBuilder]: For program point L837(lines 837 841) no Hoare annotation was computed. [2021-08-29 16:15:57,399 INFO L858 garLoopResultBuilder]: For program point L804(lines 804 811) no Hoare annotation was computed. [2021-08-29 16:15:57,399 INFO L861 garLoopResultBuilder]: At program point L804-1(lines 804 811) the Hoare annotation is: true [2021-08-29 16:15:57,399 INFO L854 garLoopResultBuilder]: At program point L279(lines 274 282) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse6 (= 1 ~systemActive~0)) (.cse7 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 0)) (.cse8 (= |ULTIMATE.start_isPumpRunning_#res| 1)) (.cse9 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~1 1) (<= 2 ~waterLevel~0) .cse6 .cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 (= ULTIMATE.start_processEnvironment_~tmp~2 0) .cse7 (= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse8 .cse9))) [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L279-1(lines 274 282) the Hoare annotation is: false [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L279-2(lines 274 282) the Hoare annotation is: false [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L907(lines 898 911) the Hoare annotation is: false [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L907-1(lines 898 911) the Hoare annotation is: (let ((.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (let ((.cse2 (<= 2 ~waterLevel~0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse7 (not .cse5)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse8 (<= ~waterLevel~0 1)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~methaneLevelCritical~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse6 .cse2 .cse3 .cse5) (and .cse7 .cse0 .cse1 .cse6 .cse8 .cse3) (and .cse7 .cse0 .cse1 .cse8 .cse3 .cse4)))) [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L907-2(lines 898 911) the Hoare annotation is: false [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L907-3(lines 898 911) the Hoare annotation is: false [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L907-4(lines 898 911) the Hoare annotation is: false [2021-08-29 16:15:57,400 INFO L854 garLoopResultBuilder]: At program point L907-5(lines 898 911) the Hoare annotation is: false [2021-08-29 16:15:57,400 INFO L858 garLoopResultBuilder]: For program point L115(lines 115 121) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L854 garLoopResultBuilder]: At program point L115-1(lines 115 121) the Hoare annotation is: (let ((.cse5 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse6 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse9 (= ~pumpRunning~0 1))) (let ((.cse8 (= ULTIMATE.start_processEnvironment_~tmp~2 0)) (.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse1 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse2 (or (and .cse5 .cse6 (= ~waterLevel~0 1) .cse9) (and .cse5 .cse6 (<= 2 ~waterLevel~0) .cse3 .cse9))) (.cse10 (= ~pumpRunning~0 0)) (.cse4 (= ~methaneLevelCritical~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse6 .cse0 .cse1 .cse7 .cse3 .cse8 .cse9) (and .cse6 .cse10 .cse7 .cse3) (and .cse5 .cse6 .cse0 .cse1 .cse3 .cse4 .cse8 .cse9) (and .cse0 .cse1 .cse7 .cse2 .cse3) (and .cse6 .cse10 .cse3 .cse4)))) [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L861 garLoopResultBuilder]: At program point L813(lines 794 816) the Hoare annotation is: true [2021-08-29 16:15:57,401 INFO L854 garLoopResultBuilder]: At program point L781(lines 777 783) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L849(lines 849 853) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L717(line 717) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L717-1(line 717) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L717-2(line 717) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L125(lines 125 138) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L226(lines 226 243) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L226-1(lines 226 243) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L226-2(lines 226 243) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L96(lines 95 142) no Hoare annotation was computed. [2021-08-29 16:15:57,401 INFO L858 garLoopResultBuilder]: For program point L922(lines 922 942) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L922-2(lines 922 942) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L922-4(lines 922 942) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-2(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-3(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-5(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-6(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L97(lines 97 101) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-8(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-9(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-11(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-12(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-14(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-15(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L328-17(lines 328 332) no Hoare annotation was computed. [2021-08-29 16:15:57,402 INFO L858 garLoopResultBuilder]: For program point L230(lines 230 238) no Hoare annotation was computed. [2021-08-29 16:15:57,403 INFO L858 garLoopResultBuilder]: For program point L230-1(lines 230 238) no Hoare annotation was computed. [2021-08-29 16:15:57,403 INFO L858 garLoopResultBuilder]: For program point L230-2(lines 230 238) no Hoare annotation was computed. [2021-08-29 16:15:57,403 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-08-29 16:15:57,403 INFO L858 garLoopResultBuilder]: For program point L825(lines 825 829) no Hoare annotation was computed. [2021-08-29 16:15:57,403 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 717) no Hoare annotation was computed. [2021-08-29 16:15:57,406 INFO L858 garLoopResultBuilder]: For program point L825-3(lines 825 829) no Hoare annotation was computed. [2021-08-29 16:15:57,406 INFO L858 garLoopResultBuilder]: For program point L825-6(lines 825 829) no Hoare annotation was computed. [2021-08-29 16:15:57,406 INFO L858 garLoopResultBuilder]: For program point L133(lines 133 137) no Hoare annotation was computed. [2021-08-29 16:15:57,407 INFO L854 garLoopResultBuilder]: At program point L67(lines 1 945) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-08-29 16:15:57,407 INFO L854 garLoopResultBuilder]: At program point L133-2(lines 168 174) the Hoare annotation is: (let ((.cse5 (= ULTIMATE.start_isHighWaterLevel_~tmp~3 0)) (.cse6 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse9 (= ~pumpRunning~0 1))) (let ((.cse8 (= ULTIMATE.start_processEnvironment_~tmp~2 0)) (.cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse1 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse2 (or (and .cse5 .cse6 (= ~waterLevel~0 1) .cse9) (and .cse5 .cse6 (<= 2 ~waterLevel~0) .cse3 .cse9))) (.cse10 (= ~pumpRunning~0 0)) (.cse4 (= ~methaneLevelCritical~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse6 .cse0 .cse1 .cse7 .cse3 .cse8 .cse9) (and .cse6 .cse10 .cse7 .cse3) (and .cse5 .cse6 .cse0 .cse1 .cse3 .cse4 .cse8 .cse9) (and .cse0 .cse1 .cse7 .cse2 .cse3) (and .cse6 .cse10 .cse3 .cse4)))) [2021-08-29 16:15:57,407 INFO L858 garLoopResultBuilder]: For program point L200(lines 200 217) no Hoare annotation was computed. [2021-08-29 16:15:57,407 INFO L858 garLoopResultBuilder]: For program point L200-1(lines 200 217) no Hoare annotation was computed. [2021-08-29 16:15:57,407 INFO L858 garLoopResultBuilder]: For program point L200-2(lines 200 217) no Hoare annotation was computed. [2021-08-29 16:15:57,407 INFO L858 garLoopResultBuilder]: For program point L200-3(lines 200 217) no Hoare annotation was computed. [2021-08-29 16:15:57,408 INFO L858 garLoopResultBuilder]: For program point L200-4(lines 200 217) no Hoare annotation was computed. [2021-08-29 16:15:57,408 INFO L858 garLoopResultBuilder]: For program point L200-5(lines 200 217) no Hoare annotation was computed. [2021-08-29 16:15:57,414 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-08-29 16:15:57,450 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 29.08 04:15:57 BoogieIcfgContainer [2021-08-29 16:15:57,450 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-08-29 16:15:57,451 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-08-29 16:15:57,451 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-08-29 16:15:57,451 INFO L275 PluginConnector]: Witness Printer initialized [2021-08-29 16:15:57,452 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.08 04:15:43" (3/4) ... [2021-08-29 16:15:57,454 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-08-29 16:15:57,476 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-08-29 16:15:57,477 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-08-29 16:15:57,478 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-08-29 16:15:57,478 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-08-29 16:15:57,479 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-08-29 16:15:57,480 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-08-29 16:15:57,480 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-08-29 16:15:57,501 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1) || ((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && tmp == 0) && tmp___0 <= 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) && \result == 1) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) [2021-08-29 16:15:57,502 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((tmp___0 == 1 && \result == 1) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || (((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp___0 <= 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((((tmp___0 == 1 && \result == 1) && \result == 0) && methaneLevelCritical == 0) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive) && tmp == 0) [2021-08-29 16:15:57,503 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp___0 == 1 && \result == 1) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive) && methaneLevelCritical == 1) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && pumpRunning == 1)) || ((((tmp___0 == 1 && \result == 1) && methaneLevelCritical == 0) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) [2021-08-29 16:15:57,504 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp___0 == 1 && \result == 1) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive) && methaneLevelCritical == 1) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && pumpRunning == 1)) || ((((tmp___0 == 1 && \result == 1) && methaneLevelCritical == 0) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) [2021-08-29 16:15:57,504 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 1 == systemActive) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) [2021-08-29 16:15:57,504 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) && pumpRunning == 1) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) [2021-08-29 16:15:57,506 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) && \result == 1) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) [2021-08-29 16:15:57,506 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) && pumpRunning == 1) [2021-08-29 16:15:57,507 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && \result == 0) && pumpRunning == 1) [2021-08-29 16:15:57,509 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) || (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive)) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && 1 == systemActive) && methaneLevelCritical == 1) [2021-08-29 16:15:57,511 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && pumpRunning == 1)) || (((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && tmp == 0) [2021-08-29 16:15:57,513 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((!(\result == 0) && splverifierCounter == 0) && tmp___0 == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 0) && 1 == systemActive) && !(tmp == 0)) || ((((((((tmp == 0 && splverifierCounter == 0) && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0)) || ((((((((tmp == 0 && splverifierCounter == 0) && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || ((((((((!(\result == 0) && splverifierCounter == 0) && tmp___0 == 0) && pumpRunning == 0) && waterLevel <= 1) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && !(tmp == 0)) [2021-08-29 16:15:57,513 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || (((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) [2021-08-29 16:15:57,562 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-08-29 16:15:57,563 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-08-29 16:15:57,563 INFO L158 Benchmark]: Toolchain (without parser) took 15182.68ms. Allocated memory was 56.6MB in the beginning and 161.5MB in the end (delta: 104.9MB). Free memory was 40.3MB in the beginning and 126.6MB in the end (delta: -86.3MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2021-08-29 16:15:57,564 INFO L158 Benchmark]: CDTParser took 0.21ms. Allocated memory is still 46.1MB. Free memory was 28.5MB in the beginning and 28.5MB in the end (delta: 31.8kB). There was no memory consumed. Max. memory is 16.1GB. [2021-08-29 16:15:57,565 INFO L158 Benchmark]: CACSL2BoogieTranslator took 466.82ms. Allocated memory is still 56.6MB. Free memory was 40.2MB in the beginning and 33.3MB in the end (delta: 6.9MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2021-08-29 16:15:57,565 INFO L158 Benchmark]: Boogie Procedure Inliner took 92.85ms. Allocated memory is still 56.6MB. Free memory was 33.3MB in the beginning and 29.4MB in the end (delta: 3.9MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2021-08-29 16:15:57,565 INFO L158 Benchmark]: Boogie Preprocessor took 64.49ms. Allocated memory is still 56.6MB. Free memory was 29.4MB in the beginning and 26.8MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-08-29 16:15:57,566 INFO L158 Benchmark]: RCFGBuilder took 677.77ms. Allocated memory was 56.6MB in the beginning and 73.4MB in the end (delta: 16.8MB). Free memory was 26.8MB in the beginning and 52.7MB in the end (delta: -26.0MB). Peak memory consumption was 14.1MB. Max. memory is 16.1GB. [2021-08-29 16:15:57,566 INFO L158 Benchmark]: TraceAbstraction took 13759.62ms. Allocated memory was 73.4MB in the beginning and 161.5MB in the end (delta: 88.1MB). Free memory was 51.9MB in the beginning and 137.1MB in the end (delta: -85.2MB). Peak memory consumption was 98.5MB. Max. memory is 16.1GB. [2021-08-29 16:15:57,566 INFO L158 Benchmark]: Witness Printer took 112.09ms. Allocated memory is still 161.5MB. Free memory was 137.1MB in the beginning and 126.6MB in the end (delta: 10.5MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-08-29 16:15:57,571 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21ms. Allocated memory is still 46.1MB. Free memory was 28.5MB in the beginning and 28.5MB in the end (delta: 31.8kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 466.82ms. Allocated memory is still 56.6MB. Free memory was 40.2MB in the beginning and 33.3MB in the end (delta: 6.9MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 92.85ms. Allocated memory is still 56.6MB. Free memory was 33.3MB in the beginning and 29.4MB in the end (delta: 3.9MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Preprocessor took 64.49ms. Allocated memory is still 56.6MB. Free memory was 29.4MB in the beginning and 26.8MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 677.77ms. Allocated memory was 56.6MB in the beginning and 73.4MB in the end (delta: 16.8MB). Free memory was 26.8MB in the beginning and 52.7MB in the end (delta: -26.0MB). Peak memory consumption was 14.1MB. Max. memory is 16.1GB. * TraceAbstraction took 13759.62ms. Allocated memory was 73.4MB in the beginning and 161.5MB in the end (delta: 88.1MB). Free memory was 51.9MB in the beginning and 137.1MB in the end (delta: -85.2MB). Peak memory consumption was 98.5MB. Max. memory is 16.1GB. * Witness Printer took 112.09ms. Allocated memory is still 161.5MB. Free memory was 137.1MB in the beginning and 126.6MB in the end (delta: 10.5MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.00ms ErrorAutomatonConstructionTimeTotal, 0.00ms FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.00ms ErrorAutomatonConstructionTimeAvg, 0.00ms ErrorAutomatonDifferenceTimeAvg, 0.00ms ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 717]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 717]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 717]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 117 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 13653.21ms, OverallIterations: 15, TraceHistogramMax: 3, EmptinessCheckTime: 33.99ms, AutomataDifference: 4546.66ms, DeadEndRemovalTime: 0.00ms, HoareAnnotationTime: 6847.21ms, InitialAbstractionConstructionTime: 13.71ms, PartialOrderReductionTime: 0.00ms, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2009 SdHoareTripleChecker+Valid, 3701.98ms IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2009 mSDsluCounter, 0 SdHoareTripleChecker+Invalid, 2823.36ms Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2416 mSDsCounter, 71 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 4312 IncrementalHoareTripleChecker+Invalid, 4383 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 71 mSolverCounterUnsat, 0 mSDtfsCounter, 4312 mSolverCounterSat, 26.66ms SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 204 GetRequests, 136 SyntacticMatches, 1 SemanticMatches, 67 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 31 ImplicationChecksByTransitivity, 276.71ms Time, 0.00ms BasicInterpolantAutomatonTime, BiggestAbstraction: size=240occurred in iteration=12, InterpolantAutomatonStates: 83, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.00ms DumpTime, AutomataMinimizationStatistics: 223.76ms AutomataMinimizationTime, 15 MinimizatonAttempts, 1190 StatesRemovedByMinimization, 11 NontrivialMinimizations, HoareAnnotationStatistics: 0.00ms HoareAnnotationTime, 46 LocationsWithAnnotation, 46 PreInvPairs, 328 NumberOfFragments, 1699 HoareAnnotationTreeSize, 46 FomulaSimplifications, 4376041 FormulaSimplificationTreeSizeReduction, 2160.73ms HoareSimplificationTime, 46 FomulaSimplificationsInter, 1399915 FormulaSimplificationTreeSizeReductionInter, 4669.85ms HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 85.17ms SsaConstructionTime, 419.75ms SatisfiabilityAnalysisTime, 921.31ms InterpolantComputationTime, 615 NumberOfCodeBlocks, 615 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 650 ConstructedInterpolants, 0 QuantifiedInterpolants, 1186 SizeOfPredicates, 3 NumberOfNonLiveVariables, 434 ConjunctsInSsa, 5 ConjunctsInUnsatCore, 17 InterpolantComputations, 14 PerfectInterpolantSequences, 130/136 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 175]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) && pumpRunning == 1) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) - InvariantResult [Line: 857]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 167]: Loop Invariant Derived loop invariant: ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 1 == systemActive) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) - InvariantResult [Line: 319]: Loop Invariant Derived loop invariant: ((((((((((!(\result == 0) && splverifierCounter == 0) && tmp___0 == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 0) && 1 == systemActive) && !(tmp == 0)) || ((((((((tmp == 0 && splverifierCounter == 0) && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0)) || ((((((((tmp == 0 && splverifierCounter == 0) && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || ((((((((!(\result == 0) && splverifierCounter == 0) && tmp___0 == 0) && pumpRunning == 0) && waterLevel <= 1) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && !(tmp == 0)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1) || ((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && tmp == 0) && tmp___0 <= 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) && \result == 1) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 175]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) || (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive)) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && 1 == systemActive) && methaneLevelCritical == 1) - InvariantResult [Line: 167]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 319]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 263]: Loop Invariant Derived loop invariant: (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 167]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 794]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 857]: Loop Invariant Derived loop invariant: (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 857]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 263]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 889]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 857]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 319]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 175]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 274]: Loop Invariant Derived loop invariant: ((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || (((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 274]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 889]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 168]: Loop Invariant Derived loop invariant: ((((((((tmp___0 == 1 && \result == 1) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive) && methaneLevelCritical == 1) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && pumpRunning == 1)) || ((((tmp___0 == 1 && \result == 1) && methaneLevelCritical == 0) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 115]: Loop Invariant Derived loop invariant: ((((((((tmp___0 == 1 && \result == 1) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive) && methaneLevelCritical == 1) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && pumpRunning == 1)) || ((((tmp___0 == 1 && \result == 1) && methaneLevelCritical == 0) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 70]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 105]: Loop Invariant Derived loop invariant: ((((((((((((tmp___0 == 1 && \result == 1) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || (((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp___0 <= 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((((tmp___0 == 1 && \result == 1) && \result == 0) && methaneLevelCritical == 0) && ((((tmp == 0 && splverifierCounter == 0) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && 1 == systemActive) && tmp == 0) - InvariantResult [Line: 777]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 319]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 804]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 94]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 319]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 263]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 889]: Loop Invariant Derived loop invariant: ((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && tmp == 0) && \result == 0) && pumpRunning == 1)) || (((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && tmp == 0) - InvariantResult [Line: 274]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 733]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 857]: Loop Invariant Derived loop invariant: (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 0) && \result == 1) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 1) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp == 0) && \result == 1) && pumpRunning == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) - InvariantResult [Line: 857]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 319]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-08-29 16:15:57,639 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...