./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product47.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 6b5699aa Calling Ultimate with: /usr/lib/jvm/java-8-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/data/config -Xmx12G -Xms1G -jar /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/data -tc /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product47.cil.c -s /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash d3ebf7e0857ea2577a0261191567e6475555f928 ........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................ Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.1.24-6b5699a [2019-11-25 08:58:24,006 INFO L177 SettingsManager]: Resetting all preferences to default values... [2019-11-25 08:58:24,007 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2019-11-25 08:58:24,021 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2019-11-25 08:58:24,022 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2019-11-25 08:58:24,023 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2019-11-25 08:58:24,025 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2019-11-25 08:58:24,033 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2019-11-25 08:58:24,037 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2019-11-25 08:58:24,041 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2019-11-25 08:58:24,042 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2019-11-25 08:58:24,043 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2019-11-25 08:58:24,043 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2019-11-25 08:58:24,045 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2019-11-25 08:58:24,047 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2019-11-25 08:58:24,048 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2019-11-25 08:58:24,048 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2019-11-25 08:58:24,049 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2019-11-25 08:58:24,051 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2019-11-25 08:58:24,055 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2019-11-25 08:58:24,059 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2019-11-25 08:58:24,062 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2019-11-25 08:58:24,064 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2019-11-25 08:58:24,065 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2019-11-25 08:58:24,067 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2019-11-25 08:58:24,067 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2019-11-25 08:58:24,067 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2019-11-25 08:58:24,069 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2019-11-25 08:58:24,069 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2019-11-25 08:58:24,070 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2019-11-25 08:58:24,070 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2019-11-25 08:58:24,071 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2019-11-25 08:58:24,072 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2019-11-25 08:58:24,072 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2019-11-25 08:58:24,073 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2019-11-25 08:58:24,073 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2019-11-25 08:58:24,074 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2019-11-25 08:58:24,074 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2019-11-25 08:58:24,074 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2019-11-25 08:58:24,075 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2019-11-25 08:58:24,076 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2019-11-25 08:58:24,077 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2019-11-25 08:58:24,100 INFO L113 SettingsManager]: Loading preferences was successful [2019-11-25 08:58:24,110 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2019-11-25 08:58:24,111 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2019-11-25 08:58:24,111 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2019-11-25 08:58:24,111 INFO L138 SettingsManager]: * Use SBE=true [2019-11-25 08:58:24,111 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2019-11-25 08:58:24,112 INFO L138 SettingsManager]: * sizeof long=4 [2019-11-25 08:58:24,112 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2019-11-25 08:58:24,112 INFO L138 SettingsManager]: * sizeof POINTER=4 [2019-11-25 08:58:24,112 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2019-11-25 08:58:24,112 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2019-11-25 08:58:24,112 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2019-11-25 08:58:24,112 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2019-11-25 08:58:24,113 INFO L138 SettingsManager]: * sizeof long double=12 [2019-11-25 08:58:24,113 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2019-11-25 08:58:24,113 INFO L138 SettingsManager]: * Use constant arrays=true [2019-11-25 08:58:24,113 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2019-11-25 08:58:24,113 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2019-11-25 08:58:24,114 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2019-11-25 08:58:24,114 INFO L138 SettingsManager]: * To the following directory=./dump/ [2019-11-25 08:58:24,114 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2019-11-25 08:58:24,114 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-25 08:58:24,114 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2019-11-25 08:58:24,115 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2019-11-25 08:58:24,115 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2019-11-25 08:58:24,115 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2019-11-25 08:58:24,115 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2019-11-25 08:58:24,115 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2019-11-25 08:58:24,115 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> d3ebf7e0857ea2577a0261191567e6475555f928 [2019-11-25 08:58:24,255 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2019-11-25 08:58:24,265 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2019-11-25 08:58:24,268 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2019-11-25 08:58:24,269 INFO L271 PluginConnector]: Initializing CDTParser... [2019-11-25 08:58:24,270 INFO L275 PluginConnector]: CDTParser initialized [2019-11-25 08:58:24,270 INFO L428 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/../../sv-benchmarks/c/product-lines/minepump_spec2_product47.cil.c [2019-11-25 08:58:24,319 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/data/b47e7fe91/4f72af420f574daba8d4d9516827a44b/FLAGd4d9c266e [2019-11-25 08:58:24,776 INFO L306 CDTParser]: Found 1 translation units. [2019-11-25 08:58:24,778 INFO L160 CDTParser]: Scanning /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/sv-benchmarks/c/product-lines/minepump_spec2_product47.cil.c [2019-11-25 08:58:24,791 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/data/b47e7fe91/4f72af420f574daba8d4d9516827a44b/FLAGd4d9c266e [2019-11-25 08:58:24,811 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/data/b47e7fe91/4f72af420f574daba8d4d9516827a44b [2019-11-25 08:58:24,814 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2019-11-25 08:58:24,816 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2019-11-25 08:58:24,818 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2019-11-25 08:58:24,819 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2019-11-25 08:58:24,822 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2019-11-25 08:58:24,823 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.11 08:58:24" (1/1) ... [2019-11-25 08:58:24,826 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@32ccfaa5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:24, skipping insertion in model container [2019-11-25 08:58:24,826 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.11 08:58:24" (1/1) ... [2019-11-25 08:58:24,834 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2019-11-25 08:58:24,891 INFO L179 MainTranslator]: Built tables and reachable declarations [2019-11-25 08:58:25,287 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-25 08:58:25,305 INFO L201 MainTranslator]: Completed pre-run [2019-11-25 08:58:25,401 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-25 08:58:25,433 INFO L205 MainTranslator]: Completed translation [2019-11-25 08:58:25,433 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25 WrapperNode [2019-11-25 08:58:25,433 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2019-11-25 08:58:25,434 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2019-11-25 08:58:25,434 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2019-11-25 08:58:25,434 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2019-11-25 08:58:25,442 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,458 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,507 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2019-11-25 08:58:25,508 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2019-11-25 08:58:25,508 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2019-11-25 08:58:25,508 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2019-11-25 08:58:25,517 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,517 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,523 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,523 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,538 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,546 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,550 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... [2019-11-25 08:58:25,556 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2019-11-25 08:58:25,557 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2019-11-25 08:58:25,557 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2019-11-25 08:58:25,557 INFO L275 PluginConnector]: RCFGBuilder initialized [2019-11-25 08:58:25,558 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (1/1) ... No working directory specified, using /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-25 08:58:25,619 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2019-11-25 08:58:25,620 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2019-11-25 08:58:25,620 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2019-11-25 08:58:25,620 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2019-11-25 08:58:26,398 INFO L279 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2019-11-25 08:58:26,398 INFO L284 CfgBuilder]: Removed 198 assume(true) statements. [2019-11-25 08:58:26,399 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.11 08:58:26 BoogieIcfgContainer [2019-11-25 08:58:26,399 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2019-11-25 08:58:26,400 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2019-11-25 08:58:26,400 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2019-11-25 08:58:26,402 INFO L275 PluginConnector]: TraceAbstraction initialized [2019-11-25 08:58:26,402 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 25.11 08:58:24" (1/3) ... [2019-11-25 08:58:26,403 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@d946292 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.11 08:58:26, skipping insertion in model container [2019-11-25 08:58:26,403 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 08:58:25" (2/3) ... [2019-11-25 08:58:26,403 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@d946292 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.11 08:58:26, skipping insertion in model container [2019-11-25 08:58:26,403 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.11 08:58:26" (3/3) ... [2019-11-25 08:58:26,405 INFO L109 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product47.cil.c [2019-11-25 08:58:26,413 INFO L153 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2019-11-25 08:58:26,420 INFO L165 ceAbstractionStarter]: Appying trace abstraction to program that has 3 error locations. [2019-11-25 08:58:26,430 INFO L249 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2019-11-25 08:58:26,461 INFO L373 AbstractCegarLoop]: Interprodecural is true [2019-11-25 08:58:26,461 INFO L374 AbstractCegarLoop]: Hoare is true [2019-11-25 08:58:26,461 INFO L375 AbstractCegarLoop]: Compute interpolants for FPandBP [2019-11-25 08:58:26,461 INFO L376 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2019-11-25 08:58:26,461 INFO L377 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2019-11-25 08:58:26,461 INFO L378 AbstractCegarLoop]: Difference is false [2019-11-25 08:58:26,462 INFO L379 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2019-11-25 08:58:26,462 INFO L383 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2019-11-25 08:58:26,478 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states. [2019-11-25 08:58:26,484 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2019-11-25 08:58:26,484 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:26,484 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:26,485 INFO L410 AbstractCegarLoop]: === Iteration 1 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:26,490 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:26,493 INFO L82 PathProgramCache]: Analyzing trace with hash -986925596, now seen corresponding path program 1 times [2019-11-25 08:58:26,499 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:26,499 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1546492398] [2019-11-25 08:58:26,500 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:26,636 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:26,746 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:26,747 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1546492398] [2019-11-25 08:58:26,748 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:26,748 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-25 08:58:26,749 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2103593218] [2019-11-25 08:58:26,752 INFO L442 AbstractCegarLoop]: Interpolant automaton has 2 states [2019-11-25 08:58:26,753 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:26,762 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2019-11-25 08:58:26,763 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-25 08:58:26,764 INFO L87 Difference]: Start difference. First operand 135 states. Second operand 2 states. [2019-11-25 08:58:26,795 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:26,795 INFO L93 Difference]: Finished difference Result 263 states and 396 transitions. [2019-11-25 08:58:26,795 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2019-11-25 08:58:26,803 INFO L78 Accepts]: Start accepts. Automaton has 2 states. Word has length 18 [2019-11-25 08:58:26,803 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:26,813 INFO L225 Difference]: With dead ends: 263 [2019-11-25 08:58:26,813 INFO L226 Difference]: Without dead ends: 131 [2019-11-25 08:58:26,816 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-25 08:58:26,832 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2019-11-25 08:58:26,856 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 131. [2019-11-25 08:58:26,857 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 131 states. [2019-11-25 08:58:26,860 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 131 states to 131 states and 190 transitions. [2019-11-25 08:58:26,863 INFO L78 Accepts]: Start accepts. Automaton has 131 states and 190 transitions. Word has length 18 [2019-11-25 08:58:26,863 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:26,863 INFO L462 AbstractCegarLoop]: Abstraction has 131 states and 190 transitions. [2019-11-25 08:58:26,863 INFO L463 AbstractCegarLoop]: Interpolant automaton has 2 states. [2019-11-25 08:58:26,864 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states and 190 transitions. [2019-11-25 08:58:26,865 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2019-11-25 08:58:26,865 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:26,865 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:26,865 INFO L410 AbstractCegarLoop]: === Iteration 2 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:26,866 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:26,866 INFO L82 PathProgramCache]: Analyzing trace with hash -1205761565, now seen corresponding path program 1 times [2019-11-25 08:58:26,866 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:26,866 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [43430385] [2019-11-25 08:58:26,868 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:26,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:26,981 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:26,982 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [43430385] [2019-11-25 08:58:26,982 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:26,982 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-25 08:58:26,982 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1772227984] [2019-11-25 08:58:26,984 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-25 08:58:26,984 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:26,984 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-25 08:58:26,984 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:26,985 INFO L87 Difference]: Start difference. First operand 131 states and 190 transitions. Second operand 3 states. [2019-11-25 08:58:26,997 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:26,997 INFO L93 Difference]: Finished difference Result 131 states and 190 transitions. [2019-11-25 08:58:26,998 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-25 08:58:26,998 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 19 [2019-11-25 08:58:26,998 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:26,999 INFO L225 Difference]: With dead ends: 131 [2019-11-25 08:58:26,999 INFO L226 Difference]: Without dead ends: 55 [2019-11-25 08:58:27,000 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:27,001 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2019-11-25 08:58:27,006 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2019-11-25 08:58:27,007 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 55 states. [2019-11-25 08:58:27,008 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 79 transitions. [2019-11-25 08:58:27,008 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 79 transitions. Word has length 19 [2019-11-25 08:58:27,008 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:27,008 INFO L462 AbstractCegarLoop]: Abstraction has 55 states and 79 transitions. [2019-11-25 08:58:27,008 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-25 08:58:27,009 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 79 transitions. [2019-11-25 08:58:27,009 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2019-11-25 08:58:27,010 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:27,010 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:27,010 INFO L410 AbstractCegarLoop]: === Iteration 3 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:27,010 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:27,010 INFO L82 PathProgramCache]: Analyzing trace with hash 462208575, now seen corresponding path program 1 times [2019-11-25 08:58:27,011 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:27,011 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [841299556] [2019-11-25 08:58:27,011 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:27,038 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:27,093 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:27,094 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [841299556] [2019-11-25 08:58:27,094 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:27,094 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-25 08:58:27,094 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [29074474] [2019-11-25 08:58:27,095 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-25 08:58:27,095 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:27,095 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-25 08:58:27,095 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:27,095 INFO L87 Difference]: Start difference. First operand 55 states and 79 transitions. Second operand 3 states. [2019-11-25 08:58:27,131 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:27,132 INFO L93 Difference]: Finished difference Result 151 states and 223 transitions. [2019-11-25 08:58:27,137 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-25 08:58:27,137 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 24 [2019-11-25 08:58:27,137 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:27,139 INFO L225 Difference]: With dead ends: 151 [2019-11-25 08:58:27,139 INFO L226 Difference]: Without dead ends: 103 [2019-11-25 08:58:27,140 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:27,141 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 103 states. [2019-11-25 08:58:27,160 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 103 to 99. [2019-11-25 08:58:27,161 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 99 states. [2019-11-25 08:58:27,162 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 99 states to 99 states and 146 transitions. [2019-11-25 08:58:27,162 INFO L78 Accepts]: Start accepts. Automaton has 99 states and 146 transitions. Word has length 24 [2019-11-25 08:58:27,163 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:27,163 INFO L462 AbstractCegarLoop]: Abstraction has 99 states and 146 transitions. [2019-11-25 08:58:27,163 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-25 08:58:27,163 INFO L276 IsEmpty]: Start isEmpty. Operand 99 states and 146 transitions. [2019-11-25 08:58:27,164 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2019-11-25 08:58:27,164 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:27,164 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:27,165 INFO L410 AbstractCegarLoop]: === Iteration 4 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:27,165 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:27,165 INFO L82 PathProgramCache]: Analyzing trace with hash 1540791297, now seen corresponding path program 1 times [2019-11-25 08:58:27,165 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:27,166 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1298166314] [2019-11-25 08:58:27,166 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:27,189 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:27,226 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:27,227 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1298166314] [2019-11-25 08:58:27,227 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:27,227 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-25 08:58:27,227 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1008596082] [2019-11-25 08:58:27,228 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-25 08:58:27,228 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:27,228 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-25 08:58:27,228 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:27,229 INFO L87 Difference]: Start difference. First operand 99 states and 146 transitions. Second operand 3 states. [2019-11-25 08:58:27,304 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:27,304 INFO L93 Difference]: Finished difference Result 234 states and 351 transitions. [2019-11-25 08:58:27,305 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-25 08:58:27,305 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 26 [2019-11-25 08:58:27,306 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:27,307 INFO L225 Difference]: With dead ends: 234 [2019-11-25 08:58:27,307 INFO L226 Difference]: Without dead ends: 142 [2019-11-25 08:58:27,308 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:27,309 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 142 states. [2019-11-25 08:58:27,327 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 142 to 140. [2019-11-25 08:58:27,327 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 140 states. [2019-11-25 08:58:27,332 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 140 states to 140 states and 204 transitions. [2019-11-25 08:58:27,332 INFO L78 Accepts]: Start accepts. Automaton has 140 states and 204 transitions. Word has length 26 [2019-11-25 08:58:27,333 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:27,333 INFO L462 AbstractCegarLoop]: Abstraction has 140 states and 204 transitions. [2019-11-25 08:58:27,333 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-25 08:58:27,333 INFO L276 IsEmpty]: Start isEmpty. Operand 140 states and 204 transitions. [2019-11-25 08:58:27,337 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2019-11-25 08:58:27,337 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:27,337 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:27,338 INFO L410 AbstractCegarLoop]: === Iteration 5 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:27,338 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:27,338 INFO L82 PathProgramCache]: Analyzing trace with hash 783716552, now seen corresponding path program 1 times [2019-11-25 08:58:27,338 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:27,338 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [258091908] [2019-11-25 08:58:27,339 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:27,383 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:27,453 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:27,453 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [258091908] [2019-11-25 08:58:27,453 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:27,453 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-25 08:58:27,454 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [810086699] [2019-11-25 08:58:27,454 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-25 08:58:27,454 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:27,454 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-25 08:58:27,455 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-25 08:58:27,455 INFO L87 Difference]: Start difference. First operand 140 states and 204 transitions. Second operand 5 states. [2019-11-25 08:58:27,620 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:27,621 INFO L93 Difference]: Finished difference Result 685 states and 1010 transitions. [2019-11-25 08:58:27,621 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2019-11-25 08:58:27,621 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 27 [2019-11-25 08:58:27,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:27,625 INFO L225 Difference]: With dead ends: 685 [2019-11-25 08:58:27,626 INFO L226 Difference]: Without dead ends: 552 [2019-11-25 08:58:27,627 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-25 08:58:27,629 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 552 states. [2019-11-25 08:58:27,671 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 552 to 259. [2019-11-25 08:58:27,672 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 259 states. [2019-11-25 08:58:27,673 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 259 states to 259 states and 372 transitions. [2019-11-25 08:58:27,674 INFO L78 Accepts]: Start accepts. Automaton has 259 states and 372 transitions. Word has length 27 [2019-11-25 08:58:27,674 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:27,674 INFO L462 AbstractCegarLoop]: Abstraction has 259 states and 372 transitions. [2019-11-25 08:58:27,674 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-25 08:58:27,674 INFO L276 IsEmpty]: Start isEmpty. Operand 259 states and 372 transitions. [2019-11-25 08:58:27,677 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2019-11-25 08:58:27,678 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:27,678 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:27,678 INFO L410 AbstractCegarLoop]: === Iteration 6 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:27,679 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:27,679 INFO L82 PathProgramCache]: Analyzing trace with hash -650428608, now seen corresponding path program 1 times [2019-11-25 08:58:27,679 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:27,679 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2098612817] [2019-11-25 08:58:27,680 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:27,702 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:27,746 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:27,746 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2098612817] [2019-11-25 08:58:27,747 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:27,747 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-25 08:58:27,747 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1697925758] [2019-11-25 08:58:27,748 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-25 08:58:27,748 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:27,748 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-25 08:58:27,748 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-25 08:58:27,749 INFO L87 Difference]: Start difference. First operand 259 states and 372 transitions. Second operand 5 states. [2019-11-25 08:58:27,923 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:27,923 INFO L93 Difference]: Finished difference Result 997 states and 1435 transitions. [2019-11-25 08:58:27,924 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2019-11-25 08:58:27,924 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 28 [2019-11-25 08:58:27,924 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:27,929 INFO L225 Difference]: With dead ends: 997 [2019-11-25 08:58:27,929 INFO L226 Difference]: Without dead ends: 745 [2019-11-25 08:58:27,930 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-25 08:58:27,931 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 745 states. [2019-11-25 08:58:27,952 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 745 to 257. [2019-11-25 08:58:27,952 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 257 states. [2019-11-25 08:58:27,954 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 257 states to 257 states and 366 transitions. [2019-11-25 08:58:27,954 INFO L78 Accepts]: Start accepts. Automaton has 257 states and 366 transitions. Word has length 28 [2019-11-25 08:58:27,954 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:27,954 INFO L462 AbstractCegarLoop]: Abstraction has 257 states and 366 transitions. [2019-11-25 08:58:27,955 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-25 08:58:27,955 INFO L276 IsEmpty]: Start isEmpty. Operand 257 states and 366 transitions. [2019-11-25 08:58:27,956 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2019-11-25 08:58:27,956 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:27,956 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:27,956 INFO L410 AbstractCegarLoop]: === Iteration 7 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:27,957 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:27,957 INFO L82 PathProgramCache]: Analyzing trace with hash -862410324, now seen corresponding path program 1 times [2019-11-25 08:58:27,957 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:27,957 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1550754536] [2019-11-25 08:58:27,957 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:27,973 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:28,015 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:28,016 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1550754536] [2019-11-25 08:58:28,016 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:28,016 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2019-11-25 08:58:28,017 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [242175277] [2019-11-25 08:58:28,017 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-25 08:58:28,017 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:28,017 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-25 08:58:28,018 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-25 08:58:28,018 INFO L87 Difference]: Start difference. First operand 257 states and 366 transitions. Second operand 5 states. [2019-11-25 08:58:28,133 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:28,133 INFO L93 Difference]: Finished difference Result 687 states and 965 transitions. [2019-11-25 08:58:28,134 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2019-11-25 08:58:28,134 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 36 [2019-11-25 08:58:28,134 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:28,137 INFO L225 Difference]: With dead ends: 687 [2019-11-25 08:58:28,137 INFO L226 Difference]: Without dead ends: 437 [2019-11-25 08:58:28,137 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2019-11-25 08:58:28,138 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 437 states. [2019-11-25 08:58:28,158 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 437 to 281. [2019-11-25 08:58:28,158 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 281 states. [2019-11-25 08:58:28,159 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 281 states to 281 states and 390 transitions. [2019-11-25 08:58:28,160 INFO L78 Accepts]: Start accepts. Automaton has 281 states and 390 transitions. Word has length 36 [2019-11-25 08:58:28,160 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:28,160 INFO L462 AbstractCegarLoop]: Abstraction has 281 states and 390 transitions. [2019-11-25 08:58:28,160 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-25 08:58:28,160 INFO L276 IsEmpty]: Start isEmpty. Operand 281 states and 390 transitions. [2019-11-25 08:58:28,161 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2019-11-25 08:58:28,161 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:28,161 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:28,162 INFO L410 AbstractCegarLoop]: === Iteration 8 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:28,162 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:28,162 INFO L82 PathProgramCache]: Analyzing trace with hash -1873527574, now seen corresponding path program 1 times [2019-11-25 08:58:28,162 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:28,162 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [631864452] [2019-11-25 08:58:28,163 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:28,181 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:28,217 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:28,217 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [631864452] [2019-11-25 08:58:28,217 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:28,217 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-25 08:58:28,218 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [976965309] [2019-11-25 08:58:28,218 INFO L442 AbstractCegarLoop]: Interpolant automaton has 4 states [2019-11-25 08:58:28,218 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:28,218 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2019-11-25 08:58:28,218 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2019-11-25 08:58:28,219 INFO L87 Difference]: Start difference. First operand 281 states and 390 transitions. Second operand 4 states. [2019-11-25 08:58:28,277 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:28,277 INFO L93 Difference]: Finished difference Result 675 states and 927 transitions. [2019-11-25 08:58:28,280 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2019-11-25 08:58:28,280 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 36 [2019-11-25 08:58:28,280 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:28,282 INFO L225 Difference]: With dead ends: 675 [2019-11-25 08:58:28,283 INFO L226 Difference]: Without dead ends: 401 [2019-11-25 08:58:28,283 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2019-11-25 08:58:28,284 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 401 states. [2019-11-25 08:58:28,303 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 401 to 297. [2019-11-25 08:58:28,303 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 297 states. [2019-11-25 08:58:28,304 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 297 states to 297 states and 406 transitions. [2019-11-25 08:58:28,304 INFO L78 Accepts]: Start accepts. Automaton has 297 states and 406 transitions. Word has length 36 [2019-11-25 08:58:28,305 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:28,305 INFO L462 AbstractCegarLoop]: Abstraction has 297 states and 406 transitions. [2019-11-25 08:58:28,305 INFO L463 AbstractCegarLoop]: Interpolant automaton has 4 states. [2019-11-25 08:58:28,305 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 406 transitions. [2019-11-25 08:58:28,305 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2019-11-25 08:58:28,306 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:28,306 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:28,306 INFO L410 AbstractCegarLoop]: === Iteration 9 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:28,306 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:28,307 INFO L82 PathProgramCache]: Analyzing trace with hash 1400371368, now seen corresponding path program 1 times [2019-11-25 08:58:28,308 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:28,308 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1893094646] [2019-11-25 08:58:28,308 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:28,323 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:28,354 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:28,354 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1893094646] [2019-11-25 08:58:28,354 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:28,354 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-25 08:58:28,355 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [577218722] [2019-11-25 08:58:28,355 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-25 08:58:28,355 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:28,355 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-25 08:58:28,356 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:28,356 INFO L87 Difference]: Start difference. First operand 297 states and 406 transitions. Second operand 3 states. [2019-11-25 08:58:28,402 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:28,402 INFO L93 Difference]: Finished difference Result 691 states and 939 transitions. [2019-11-25 08:58:28,403 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-25 08:58:28,403 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 36 [2019-11-25 08:58:28,403 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:28,405 INFO L225 Difference]: With dead ends: 691 [2019-11-25 08:58:28,405 INFO L226 Difference]: Without dead ends: 401 [2019-11-25 08:58:28,406 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:28,407 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 401 states. [2019-11-25 08:58:28,437 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 401 to 401. [2019-11-25 08:58:28,437 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 401 states. [2019-11-25 08:58:28,439 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 401 states to 401 states and 532 transitions. [2019-11-25 08:58:28,439 INFO L78 Accepts]: Start accepts. Automaton has 401 states and 532 transitions. Word has length 36 [2019-11-25 08:58:28,441 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:28,442 INFO L462 AbstractCegarLoop]: Abstraction has 401 states and 532 transitions. [2019-11-25 08:58:28,442 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-25 08:58:28,442 INFO L276 IsEmpty]: Start isEmpty. Operand 401 states and 532 transitions. [2019-11-25 08:58:28,444 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2019-11-25 08:58:28,444 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:28,445 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:28,446 INFO L410 AbstractCegarLoop]: === Iteration 10 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:28,446 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:28,446 INFO L82 PathProgramCache]: Analyzing trace with hash -74107416, now seen corresponding path program 1 times [2019-11-25 08:58:28,446 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:28,448 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1200237730] [2019-11-25 08:58:28,449 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:28,470 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:28,549 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-25 08:58:28,549 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1200237730] [2019-11-25 08:58:28,550 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:28,550 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2019-11-25 08:58:28,550 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1541864273] [2019-11-25 08:58:28,550 INFO L442 AbstractCegarLoop]: Interpolant automaton has 8 states [2019-11-25 08:58:28,551 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:28,551 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2019-11-25 08:58:28,551 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2019-11-25 08:58:28,551 INFO L87 Difference]: Start difference. First operand 401 states and 532 transitions. Second operand 8 states. [2019-11-25 08:58:29,443 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:29,444 INFO L93 Difference]: Finished difference Result 1686 states and 2224 transitions. [2019-11-25 08:58:29,444 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2019-11-25 08:58:29,444 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 37 [2019-11-25 08:58:29,445 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:29,461 INFO L225 Difference]: With dead ends: 1686 [2019-11-25 08:58:29,462 INFO L226 Difference]: Without dead ends: 1292 [2019-11-25 08:58:29,463 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 33 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 297 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=253, Invalid=869, Unknown=0, NotChecked=0, Total=1122 [2019-11-25 08:58:29,465 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1292 states. [2019-11-25 08:58:29,498 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1292 to 401. [2019-11-25 08:58:29,498 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 401 states. [2019-11-25 08:58:29,499 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 401 states to 401 states and 522 transitions. [2019-11-25 08:58:29,505 INFO L78 Accepts]: Start accepts. Automaton has 401 states and 522 transitions. Word has length 37 [2019-11-25 08:58:29,505 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:29,506 INFO L462 AbstractCegarLoop]: Abstraction has 401 states and 522 transitions. [2019-11-25 08:58:29,506 INFO L463 AbstractCegarLoop]: Interpolant automaton has 8 states. [2019-11-25 08:58:29,506 INFO L276 IsEmpty]: Start isEmpty. Operand 401 states and 522 transitions. [2019-11-25 08:58:29,508 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2019-11-25 08:58:29,509 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:29,509 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:29,510 INFO L410 AbstractCegarLoop]: === Iteration 11 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:29,510 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:29,510 INFO L82 PathProgramCache]: Analyzing trace with hash 805243324, now seen corresponding path program 1 times [2019-11-25 08:58:29,510 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:29,510 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [308402410] [2019-11-25 08:58:29,510 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:29,525 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:29,548 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2019-11-25 08:58:29,548 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [308402410] [2019-11-25 08:58:29,548 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:29,548 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-25 08:58:29,549 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [28037837] [2019-11-25 08:58:29,549 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-25 08:58:29,549 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:29,549 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-25 08:58:29,549 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:29,550 INFO L87 Difference]: Start difference. First operand 401 states and 522 transitions. Second operand 3 states. [2019-11-25 08:58:29,621 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:29,621 INFO L93 Difference]: Finished difference Result 489 states and 635 transitions. [2019-11-25 08:58:29,622 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-25 08:58:29,622 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 54 [2019-11-25 08:58:29,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:29,624 INFO L225 Difference]: With dead ends: 489 [2019-11-25 08:58:29,624 INFO L226 Difference]: Without dead ends: 200 [2019-11-25 08:58:29,625 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-25 08:58:29,625 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 200 states. [2019-11-25 08:58:29,639 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 200 to 200. [2019-11-25 08:58:29,639 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 200 states. [2019-11-25 08:58:29,640 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 200 states to 200 states and 250 transitions. [2019-11-25 08:58:29,640 INFO L78 Accepts]: Start accepts. Automaton has 200 states and 250 transitions. Word has length 54 [2019-11-25 08:58:29,640 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:29,640 INFO L462 AbstractCegarLoop]: Abstraction has 200 states and 250 transitions. [2019-11-25 08:58:29,640 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-25 08:58:29,640 INFO L276 IsEmpty]: Start isEmpty. Operand 200 states and 250 transitions. [2019-11-25 08:58:29,641 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2019-11-25 08:58:29,641 INFO L402 BasicCegarLoop]: Found error trace [2019-11-25 08:58:29,641 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-25 08:58:29,641 INFO L410 AbstractCegarLoop]: === Iteration 12 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-25 08:58:29,642 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-25 08:58:29,642 INFO L82 PathProgramCache]: Analyzing trace with hash -1122601091, now seen corresponding path program 1 times [2019-11-25 08:58:29,642 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-25 08:58:29,642 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [321529744] [2019-11-25 08:58:29,643 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-25 08:58:29,665 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-25 08:58:29,723 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 8 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2019-11-25 08:58:29,723 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [321529744] [2019-11-25 08:58:29,724 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-25 08:58:29,724 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2019-11-25 08:58:29,724 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [181233829] [2019-11-25 08:58:29,724 INFO L442 AbstractCegarLoop]: Interpolant automaton has 6 states [2019-11-25 08:58:29,724 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-25 08:58:29,725 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2019-11-25 08:58:29,725 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2019-11-25 08:58:29,725 INFO L87 Difference]: Start difference. First operand 200 states and 250 transitions. Second operand 6 states. [2019-11-25 08:58:29,942 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-25 08:58:29,942 INFO L93 Difference]: Finished difference Result 499 states and 622 transitions. [2019-11-25 08:58:29,942 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2019-11-25 08:58:29,942 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 56 [2019-11-25 08:58:29,943 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-25 08:58:29,944 INFO L225 Difference]: With dead ends: 499 [2019-11-25 08:58:29,944 INFO L226 Difference]: Without dead ends: 0 [2019-11-25 08:58:29,945 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2019-11-25 08:58:29,945 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2019-11-25 08:58:29,945 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2019-11-25 08:58:29,945 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 0 states. [2019-11-25 08:58:29,945 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2019-11-25 08:58:29,945 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 56 [2019-11-25 08:58:29,945 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-25 08:58:29,946 INFO L462 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2019-11-25 08:58:29,946 INFO L463 AbstractCegarLoop]: Interpolant automaton has 6 states. [2019-11-25 08:58:29,946 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2019-11-25 08:58:29,946 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2019-11-25 08:58:29,950 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2019-11-25 08:58:30,162 WARN L192 SmtUtils]: Spent 104.00 ms on a formula simplification. DAG size of input: 122 DAG size of output: 85 [2019-11-25 08:58:30,438 WARN L192 SmtUtils]: Spent 244.00 ms on a formula simplification. DAG size of input: 181 DAG size of output: 125 [2019-11-25 08:58:30,569 WARN L192 SmtUtils]: Spent 124.00 ms on a formula simplification. DAG size of input: 111 DAG size of output: 66 [2019-11-25 08:58:30,926 WARN L192 SmtUtils]: Spent 262.00 ms on a formula simplification. DAG size of input: 174 DAG size of output: 121 [2019-11-25 08:58:31,166 WARN L192 SmtUtils]: Spent 237.00 ms on a formula simplification. DAG size of input: 183 DAG size of output: 117 [2019-11-25 08:58:31,309 WARN L192 SmtUtils]: Spent 136.00 ms on a formula simplification. DAG size of input: 123 DAG size of output: 73 [2019-11-25 08:58:31,564 WARN L192 SmtUtils]: Spent 253.00 ms on a formula simplification. DAG size of input: 185 DAG size of output: 115 [2019-11-25 08:58:31,888 WARN L192 SmtUtils]: Spent 300.00 ms on a formula simplification. DAG size of input: 118 DAG size of output: 102 [2019-11-25 08:58:32,286 WARN L192 SmtUtils]: Spent 266.00 ms on a formula simplification. DAG size of input: 73 DAG size of output: 26 [2019-11-25 08:58:32,679 WARN L192 SmtUtils]: Spent 372.00 ms on a formula simplification. DAG size of input: 79 DAG size of output: 28 [2019-11-25 08:58:33,366 WARN L192 SmtUtils]: Spent 555.00 ms on a formula simplification. DAG size of input: 122 DAG size of output: 18 [2019-11-25 08:58:33,724 WARN L192 SmtUtils]: Spent 342.00 ms on a formula simplification. DAG size of input: 63 DAG size of output: 15 [2019-11-25 08:58:34,121 WARN L192 SmtUtils]: Spent 360.00 ms on a formula simplification. DAG size of input: 79 DAG size of output: 28 [2019-11-25 08:58:34,628 WARN L192 SmtUtils]: Spent 502.00 ms on a formula simplification. DAG size of input: 117 DAG size of output: 22 [2019-11-25 08:58:35,038 WARN L192 SmtUtils]: Spent 397.00 ms on a formula simplification. DAG size of input: 113 DAG size of output: 18 [2019-11-25 08:58:35,290 WARN L192 SmtUtils]: Spent 242.00 ms on a formula simplification. DAG size of input: 70 DAG size of output: 15 [2019-11-25 08:58:35,695 WARN L192 SmtUtils]: Spent 400.00 ms on a formula simplification. DAG size of input: 112 DAG size of output: 18 [2019-11-25 08:58:36,309 WARN L192 SmtUtils]: Spent 567.00 ms on a formula simplification. DAG size of input: 102 DAG size of output: 6 [2019-11-25 08:58:36,321 INFO L444 ceAbstractionStarter]: For program point L927(lines 927 933) no Hoare annotation was computed. [2019-11-25 08:58:36,321 INFO L440 ceAbstractionStarter]: At program point L927-1(lines 927 933) the Hoare annotation is: (let ((.cse2 (= 1 ~systemActive~0)) (.cse5 (= ULTIMATE.start___utac_acc__Specification2_spec__2_~tmp~3 0)) (.cse3 (= 0 ~methaneLevelCritical~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse6 (= 0 ~systemActive~0))) (or (and (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse2 .cse3 .cse4 .cse5 .cse1) (and .cse2 .cse3 .cse0 .cse1) (and .cse3 .cse4 .cse5 .cse0 .cse1 .cse6) (and (not .cse3) .cse0 (not .cse4) .cse1 .cse6))) [2019-11-25 08:58:36,321 INFO L444 ceAbstractionStarter]: For program point L762(lines 762 779) no Hoare annotation was computed. [2019-11-25 08:58:36,321 INFO L444 ceAbstractionStarter]: For program point L762-1(lines 762 779) no Hoare annotation was computed. [2019-11-25 08:58:36,321 INFO L444 ceAbstractionStarter]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 44) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L762-2(lines 762 779) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L630(lines 630 634) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L895(lines 895 901) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L440 ceAbstractionStarter]: At program point L895-1(lines 895 901) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0)) [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L798(lines 798 804) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L798-2(lines 798 804) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L798-4(lines 798 804) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L798-6(lines 798 804) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L798-8(lines 798 804) no Hoare annotation was computed. [2019-11-25 08:58:36,322 INFO L444 ceAbstractionStarter]: For program point L798-10(lines 798 804) no Hoare annotation was computed. [2019-11-25 08:58:36,323 INFO L440 ceAbstractionStarter]: At program point L832(lines 827 835) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_isPumpRunning_#res| 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~methaneLevelCritical~0 ~systemActive~0) .cse1 .cse2 (= 1 ~methaneLevelCritical~0)) (and (not (= 0 ~methaneLevelCritical~0)) .cse0 .cse1 (not (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) .cse2 (= 0 ~systemActive~0)))) [2019-11-25 08:58:36,323 INFO L440 ceAbstractionStarter]: At program point L832-1(lines 827 835) the Hoare annotation is: false [2019-11-25 08:58:36,323 INFO L444 ceAbstractionStarter]: For program point L766(lines 766 774) no Hoare annotation was computed. [2019-11-25 08:58:36,323 INFO L440 ceAbstractionStarter]: At program point L832-2(lines 827 835) the Hoare annotation is: false [2019-11-25 08:58:36,323 INFO L444 ceAbstractionStarter]: For program point L766-1(lines 766 774) no Hoare annotation was computed. [2019-11-25 08:58:36,323 INFO L444 ceAbstractionStarter]: For program point L766-2(lines 766 774) no Hoare annotation was computed. [2019-11-25 08:58:36,323 INFO L440 ceAbstractionStarter]: At program point L965(lines 916 966) the Hoare annotation is: false [2019-11-25 08:58:36,323 INFO L440 ceAbstractionStarter]: At program point L74(lines 1 972) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0)) [2019-11-25 08:58:36,323 INFO L444 ceAbstractionStarter]: For program point L736(lines 736 753) no Hoare annotation was computed. [2019-11-25 08:58:36,323 INFO L444 ceAbstractionStarter]: For program point L736-1(lines 736 753) no Hoare annotation was computed. [2019-11-25 08:58:36,324 INFO L444 ceAbstractionStarter]: For program point L736-2(lines 736 753) no Hoare annotation was computed. [2019-11-25 08:58:36,324 INFO L444 ceAbstractionStarter]: For program point L736-3(lines 736 753) no Hoare annotation was computed. [2019-11-25 08:58:36,324 INFO L444 ceAbstractionStarter]: For program point L736-4(lines 736 753) no Hoare annotation was computed. [2019-11-25 08:58:36,325 INFO L444 ceAbstractionStarter]: For program point L736-5(lines 736 753) no Hoare annotation was computed. [2019-11-25 08:58:36,325 INFO L444 ceAbstractionStarter]: For program point L472(lines 472 489) no Hoare annotation was computed. [2019-11-25 08:58:36,325 INFO L440 ceAbstractionStarter]: At program point L472-1(lines 1 972) the Hoare annotation is: (let ((.cse2 (= 1 ~systemActive~0)) (.cse5 (= ULTIMATE.start___utac_acc__Specification2_spec__2_~tmp~3 0)) (.cse3 (= 0 ~methaneLevelCritical~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse6 (= 0 ~systemActive~0))) (or (and (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse2 .cse3 .cse4 .cse5 .cse1) (and .cse2 .cse3 .cse0 .cse1) (and .cse3 .cse4 .cse5 .cse0 .cse1 .cse6) (and (not .cse3) .cse0 (not .cse4) .cse1 .cse6))) [2019-11-25 08:58:36,325 INFO L444 ceAbstractionStarter]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 44) no Hoare annotation was computed. [2019-11-25 08:58:36,326 INFO L444 ceAbstractionStarter]: For program point L472-2(lines 472 489) no Hoare annotation was computed. [2019-11-25 08:58:36,326 INFO L440 ceAbstractionStarter]: At program point L472-3(lines 1 972) the Hoare annotation is: false [2019-11-25 08:58:36,326 INFO L444 ceAbstractionStarter]: For program point L472-4(lines 472 489) no Hoare annotation was computed. [2019-11-25 08:58:36,326 INFO L440 ceAbstractionStarter]: At program point L472-5(lines 1 972) the Hoare annotation is: false [2019-11-25 08:58:36,326 INFO L440 ceAbstractionStarter]: At program point L704(lines 703 722) the Hoare annotation is: (let ((.cse0 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and (= ~pumpRunning~0 0) .cse0 (= 0 ~systemActive~0)) (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) .cse0) (and (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 (= 1 ~methaneLevelCritical~0)))) [2019-11-25 08:58:36,326 INFO L444 ceAbstractionStarter]: For program point L704-1(lines 704 710) no Hoare annotation was computed. [2019-11-25 08:58:36,326 INFO L440 ceAbstractionStarter]: At program point L704-2(lines 703 722) the Hoare annotation is: false [2019-11-25 08:58:36,326 INFO L440 ceAbstractionStarter]: At program point L704-3(lines 703 722) the Hoare annotation is: false [2019-11-25 08:58:36,327 INFO L440 ceAbstractionStarter]: At program point L506-2(lines 506 520) the Hoare annotation is: false [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L44(line 44) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L44-1(line 44) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L44-2(line 44) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L606(lines 606 610) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L606-3(lines 606 610) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L507(line 507) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L606-6(lines 606 610) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L444 ceAbstractionStarter]: For program point L937(lines 937 943) no Hoare annotation was computed. [2019-11-25 08:58:36,327 INFO L440 ceAbstractionStarter]: At program point L937-1(lines 937 943) the Hoare annotation is: (let ((.cse0 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and (= ~pumpRunning~0 0) .cse0 (= 0 ~systemActive~0)) (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) .cse0) (and (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 (= 1 ~methaneLevelCritical~0)))) [2019-11-25 08:58:36,328 INFO L444 ceAbstractionStarter]: For program point L740(lines 740 748) no Hoare annotation was computed. [2019-11-25 08:58:36,328 INFO L444 ceAbstractionStarter]: For program point L740-1(lines 740 748) no Hoare annotation was computed. [2019-11-25 08:58:36,329 INFO L444 ceAbstractionStarter]: For program point L740-2(lines 740 748) no Hoare annotation was computed. [2019-11-25 08:58:36,329 INFO L444 ceAbstractionStarter]: For program point L740-3(lines 740 748) no Hoare annotation was computed. [2019-11-25 08:58:36,329 INFO L444 ceAbstractionStarter]: For program point L740-4(lines 740 748) no Hoare annotation was computed. [2019-11-25 08:58:36,329 INFO L444 ceAbstractionStarter]: For program point L740-5(lines 740 748) no Hoare annotation was computed. [2019-11-25 08:58:36,329 INFO L444 ceAbstractionStarter]: For program point L476(lines 476 486) no Hoare annotation was computed. [2019-11-25 08:58:36,329 INFO L444 ceAbstractionStarter]: For program point L476-2(lines 476 486) no Hoare annotation was computed. [2019-11-25 08:58:36,330 INFO L444 ceAbstractionStarter]: For program point L476-4(lines 476 486) no Hoare annotation was computed. [2019-11-25 08:58:36,330 INFO L444 ceAbstractionStarter]: For program point L510(lines 510 514) no Hoare annotation was computed. [2019-11-25 08:58:36,330 INFO L444 ceAbstractionStarter]: For program point L477(lines 477 483) no Hoare annotation was computed. [2019-11-25 08:58:36,330 INFO L444 ceAbstractionStarter]: For program point L510-1(lines 704 710) no Hoare annotation was computed. [2019-11-25 08:58:36,330 INFO L444 ceAbstractionStarter]: For program point L477-2(lines 477 483) no Hoare annotation was computed. [2019-11-25 08:58:36,330 INFO L444 ceAbstractionStarter]: For program point L477-4(lines 477 483) no Hoare annotation was computed. [2019-11-25 08:58:36,331 INFO L440 ceAbstractionStarter]: At program point L643(lines 638 646) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse0 (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1))) [2019-11-25 08:58:36,331 INFO L440 ceAbstractionStarter]: At program point L643-1(lines 638 646) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0)) [2019-11-25 08:58:36,331 INFO L440 ceAbstractionStarter]: At program point L643-2(lines 638 646) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 .cse1 (= 1 ~methaneLevelCritical~0)) (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse0 .cse1))) [2019-11-25 08:58:36,331 INFO L440 ceAbstractionStarter]: At program point L643-3(lines 638 646) the Hoare annotation is: (let ((.cse2 (= 0 ~methaneLevelCritical~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse3 (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse4 (= 0 ~systemActive~0))) (or (and (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse2 .cse3 .cse0 .cse1 .cse4) (and (= 1 ~systemActive~0) .cse2 .cse3 .cse1) (and (not .cse2) .cse0 (not .cse3) .cse1 .cse4))) [2019-11-25 08:58:36,331 INFO L440 ceAbstractionStarter]: At program point L643-4(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,331 INFO L440 ceAbstractionStarter]: At program point L643-5(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,332 INFO L440 ceAbstractionStarter]: At program point L643-6(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,332 INFO L440 ceAbstractionStarter]: At program point L643-7(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,332 INFO L440 ceAbstractionStarter]: At program point L643-8(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,332 INFO L440 ceAbstractionStarter]: At program point L643-9(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,332 INFO L440 ceAbstractionStarter]: At program point L643-10(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,332 INFO L440 ceAbstractionStarter]: At program point L643-11(lines 638 646) the Hoare annotation is: false [2019-11-25 08:58:36,333 INFO L440 ceAbstractionStarter]: At program point L82(lines 77 85) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0)) [2019-11-25 08:58:36,333 INFO L440 ceAbstractionStarter]: At program point L711(lines 711 717) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= 0 ~methaneLevelCritical~0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 .cse1 (= 0 ~systemActive~0)) (and .cse2 .cse3 .cse0 .cse1) (and (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse2 .cse3 (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1))) [2019-11-25 08:58:36,333 INFO L440 ceAbstractionStarter]: At program point L711-1(lines 711 717) the Hoare annotation is: false [2019-11-25 08:58:36,333 INFO L440 ceAbstractionStarter]: At program point L711-2(lines 711 717) the Hoare annotation is: false [2019-11-25 08:58:36,333 INFO L444 ceAbstractionStarter]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2019-11-25 08:58:36,333 INFO L444 ceAbstractionStarter]: For program point L582(lines 582 589) no Hoare annotation was computed. [2019-11-25 08:58:36,334 INFO L447 ceAbstractionStarter]: At program point L582-1(lines 582 589) the Hoare annotation is: true [2019-11-25 08:58:36,334 INFO L444 ceAbstractionStarter]: For program point L947(lines 947 960) no Hoare annotation was computed. [2019-11-25 08:58:36,334 INFO L444 ceAbstractionStarter]: For program point L881(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,334 INFO L444 ceAbstractionStarter]: For program point L881-2(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,334 INFO L444 ceAbstractionStarter]: For program point L881-3(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,334 INFO L444 ceAbstractionStarter]: For program point L881-5(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,334 INFO L444 ceAbstractionStarter]: For program point L683(lines 683 689) no Hoare annotation was computed. [2019-11-25 08:58:36,335 INFO L444 ceAbstractionStarter]: For program point L881-6(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,335 INFO L444 ceAbstractionStarter]: For program point L683-1(lines 683 689) no Hoare annotation was computed. [2019-11-25 08:58:36,335 INFO L444 ceAbstractionStarter]: For program point L683-2(lines 683 689) no Hoare annotation was computed. [2019-11-25 08:58:36,335 INFO L444 ceAbstractionStarter]: For program point L881-8(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,335 INFO L444 ceAbstractionStarter]: For program point L683-3(lines 683 689) no Hoare annotation was computed. [2019-11-25 08:58:36,336 INFO L444 ceAbstractionStarter]: For program point L881-9(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,336 INFO L444 ceAbstractionStarter]: For program point L683-4(lines 683 689) no Hoare annotation was computed. [2019-11-25 08:58:36,336 INFO L444 ceAbstractionStarter]: For program point L881-11(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,336 INFO L444 ceAbstractionStarter]: For program point L683-5(lines 683 689) no Hoare annotation was computed. [2019-11-25 08:58:36,336 INFO L444 ceAbstractionStarter]: For program point L881-12(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,337 INFO L444 ceAbstractionStarter]: For program point L881-14(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,337 INFO L444 ceAbstractionStarter]: For program point L881-15(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,337 INFO L444 ceAbstractionStarter]: For program point L881-17(lines 881 885) no Hoare annotation was computed. [2019-11-25 08:58:36,337 INFO L444 ceAbstractionStarter]: For program point L618(lines 618 622) no Hoare annotation was computed. [2019-11-25 08:58:36,337 INFO L444 ceAbstractionStarter]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2019-11-25 08:58:36,337 INFO L444 ceAbstractionStarter]: For program point L918(lines 917 964) no Hoare annotation was computed. [2019-11-25 08:58:36,337 INFO L444 ceAbstractionStarter]: For program point L919(lines 919 923) no Hoare annotation was computed. [2019-11-25 08:58:36,338 INFO L440 ceAbstractionStarter]: At program point L688(lines 679 692) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0)) [2019-11-25 08:58:36,338 INFO L440 ceAbstractionStarter]: At program point L688-1(lines 679 692) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) .cse0 .cse1) (and (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 .cse1 (= 1 ~methaneLevelCritical~0)))) [2019-11-25 08:58:36,338 INFO L440 ceAbstractionStarter]: At program point L688-2(lines 679 692) the Hoare annotation is: false [2019-11-25 08:58:36,338 INFO L440 ceAbstractionStarter]: At program point L688-3(lines 679 692) the Hoare annotation is: false [2019-11-25 08:58:36,338 INFO L440 ceAbstractionStarter]: At program point L688-4(lines 679 692) the Hoare annotation is: false [2019-11-25 08:58:36,338 INFO L440 ceAbstractionStarter]: At program point L688-5(lines 679 692) the Hoare annotation is: false [2019-11-25 08:58:36,338 INFO L444 ceAbstractionStarter]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2019-11-25 08:58:36,339 INFO L444 ceAbstractionStarter]: For program point L953(lines 953 959) no Hoare annotation was computed. [2019-11-25 08:58:36,339 INFO L440 ceAbstractionStarter]: At program point L953-1(lines 704 710) the Hoare annotation is: (let ((.cse0 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and (= ~pumpRunning~0 0) .cse0 (= 0 ~systemActive~0)) (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) .cse0) (and (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 (= 1 ~methaneLevelCritical~0)))) [2019-11-25 08:58:36,339 INFO L440 ceAbstractionStarter]: At program point L887(lines 872 890) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0)) [2019-11-25 08:58:36,339 INFO L440 ceAbstractionStarter]: At program point L887-1(lines 872 890) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) .cse0 .cse1) (and (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 .cse1 (= 1 ~methaneLevelCritical~0)))) [2019-11-25 08:58:36,339 INFO L440 ceAbstractionStarter]: At program point L887-2(lines 872 890) the Hoare annotation is: false [2019-11-25 08:58:36,339 INFO L440 ceAbstractionStarter]: At program point L887-3(lines 872 890) the Hoare annotation is: false [2019-11-25 08:58:36,340 INFO L440 ceAbstractionStarter]: At program point L887-4(lines 872 890) the Hoare annotation is: false [2019-11-25 08:58:36,340 INFO L440 ceAbstractionStarter]: At program point L887-5(lines 872 890) the Hoare annotation is: false [2019-11-25 08:58:36,340 INFO L440 ceAbstractionStarter]: At program point L557(lines 553 559) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0)) [2019-11-25 08:58:36,340 INFO L447 ceAbstractionStarter]: At program point L591(lines 572 594) the Hoare annotation is: true [2019-11-25 08:58:36,340 INFO L440 ceAbstractionStarter]: At program point L823(lines 816 826) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= 1 |ULTIMATE.start_isMethaneAlarm_#res|) .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse0 (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1))) [2019-11-25 08:58:36,340 INFO L440 ceAbstractionStarter]: At program point L823-1(lines 816 826) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0)) [2019-11-25 08:58:36,341 INFO L440 ceAbstractionStarter]: At program point L823-2(lines 816 826) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse0 .cse1) (and (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= ~methaneLevelCritical~0 ~systemActive~0) .cse0 (= 1 |ULTIMATE.start_isMethaneAlarm_#res|) .cse1 (= 1 ~methaneLevelCritical~0)))) [2019-11-25 08:58:36,341 INFO L440 ceAbstractionStarter]: At program point L823-3(lines 816 826) the Hoare annotation is: false [2019-11-25 08:58:36,341 INFO L440 ceAbstractionStarter]: At program point L823-4(lines 816 826) the Hoare annotation is: false [2019-11-25 08:58:36,341 INFO L440 ceAbstractionStarter]: At program point L823-5(lines 816 826) the Hoare annotation is: false [2019-11-25 08:58:36,341 INFO L440 ceAbstractionStarter]: At program point L823-6(lines 816 826) the Hoare annotation is: false [2019-11-25 08:58:36,341 INFO L440 ceAbstractionStarter]: At program point L823-7(lines 816 826) the Hoare annotation is: false [2019-11-25 08:58:36,342 INFO L440 ceAbstractionStarter]: At program point L823-8(lines 816 826) the Hoare annotation is: false [2019-11-25 08:58:36,342 INFO L440 ceAbstractionStarter]: At program point L461(lines 456 463) the Hoare annotation is: (and (= 1 ~systemActive~0) (= 0 ~methaneLevelCritical~0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0)) [2019-11-25 08:58:36,342 INFO L444 ceAbstractionStarter]: For program point L-1(line -1) no Hoare annotation was computed. [2019-11-25 08:58:36,342 INFO L444 ceAbstractionStarter]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 44) no Hoare annotation was computed. [2019-11-25 08:58:36,387 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 25.11 08:58:36 BoogieIcfgContainer [2019-11-25 08:58:36,392 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2019-11-25 08:58:36,392 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2019-11-25 08:58:36,392 INFO L271 PluginConnector]: Initializing Witness Printer... [2019-11-25 08:58:36,393 INFO L275 PluginConnector]: Witness Printer initialized [2019-11-25 08:58:36,393 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.11 08:58:26" (3/4) ... [2019-11-25 08:58:36,397 INFO L137 WitnessPrinter]: Generating witness for correct program [2019-11-25 08:58:36,427 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 38 nodes and edges [2019-11-25 08:58:36,428 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2019-11-25 08:58:36,429 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 9 nodes and edges [2019-11-25 08:58:36,430 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2019-11-25 08:58:36,431 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2019-11-25 08:58:36,432 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2019-11-25 08:58:36,433 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2019-11-25 08:58:36,465 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && tmp == 0) && 0 == splverifierCounter)) || (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter)) || (((((0 == methaneLevelCritical && 0 == \result) && tmp == 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 == systemActive)) || ((((!(0 == methaneLevelCritical) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) [2019-11-25 08:58:36,466 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && tmp == 0) && 0 == splverifierCounter)) || (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter)) || (((((0 == methaneLevelCritical && 0 == \result) && tmp == 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 == systemActive)) || ((((!(0 == methaneLevelCritical) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) [2019-11-25 08:58:36,467 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0 && 0 == splverifierCounter) && 0 == systemActive) || (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter)) || (((methaneLevelCritical == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter) [2019-11-25 08:58:36,468 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((0 == methaneLevelCritical && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 0 == systemActive)) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter)) || ((((!(0 == methaneLevelCritical) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) [2019-11-25 08:58:36,468 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((1 == systemActive && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter) [2019-11-25 08:58:36,469 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((1 == systemActive && 1 == \result) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter) [2019-11-25 08:58:36,469 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((\result == 0 && 1 == \result) && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((((!(0 == methaneLevelCritical) && \result == 0) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) [2019-11-25 08:58:36,471 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter [2019-11-25 08:58:36,472 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter) [2019-11-25 08:58:36,472 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter [2019-11-25 08:58:36,472 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter) || (((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-25 08:58:36,473 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter [2019-11-25 08:58:36,473 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter [2019-11-25 08:58:36,561 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud-vcloud-master/worker/run_dir_78df9d41-939d-48eb-b26b-95186ec9098c/bin/uautomizer/witness.graphml [2019-11-25 08:58:36,561 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2019-11-25 08:58:36,562 INFO L168 Benchmark]: Toolchain (without parser) took 11746.64 ms. Allocated memory was 1.0 GB in the beginning and 1.3 GB in the end (delta: 239.6 MB). Free memory was 938.0 MB in the beginning and 873.9 MB in the end (delta: 64.1 MB). Peak memory consumption was 303.7 MB. Max. memory is 11.5 GB. [2019-11-25 08:58:36,562 INFO L168 Benchmark]: CDTParser took 0.16 ms. Allocated memory is still 1.0 GB. Free memory is still 962.2 MB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-25 08:58:36,563 INFO L168 Benchmark]: CACSL2BoogieTranslator took 615.55 ms. Allocated memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: 126.4 MB). Free memory was 938.0 MB in the beginning and 1.1 GB in the end (delta: -171.1 MB). Peak memory consumption was 17.9 MB. Max. memory is 11.5 GB. [2019-11-25 08:58:36,563 INFO L168 Benchmark]: Boogie Procedure Inliner took 73.77 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 5.4 MB). Peak memory consumption was 5.4 MB. Max. memory is 11.5 GB. [2019-11-25 08:58:36,563 INFO L168 Benchmark]: Boogie Preprocessor took 48.57 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 5.4 MB). Peak memory consumption was 5.4 MB. Max. memory is 11.5 GB. [2019-11-25 08:58:36,563 INFO L168 Benchmark]: RCFGBuilder took 842.65 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 70.2 MB). Peak memory consumption was 70.2 MB. Max. memory is 11.5 GB. [2019-11-25 08:58:36,564 INFO L168 Benchmark]: TraceAbstraction took 9991.96 ms. Allocated memory was 1.2 GB in the beginning and 1.3 GB in the end (delta: 113.2 MB). Free memory was 1.0 GB in the beginning and 892.5 MB in the end (delta: 135.6 MB). Peak memory consumption was 305.7 MB. Max. memory is 11.5 GB. [2019-11-25 08:58:36,564 INFO L168 Benchmark]: Witness Printer took 168.62 ms. Allocated memory is still 1.3 GB. Free memory was 892.5 MB in the beginning and 873.9 MB in the end (delta: 18.6 MB). Peak memory consumption was 18.6 MB. Max. memory is 11.5 GB. [2019-11-25 08:58:36,566 INFO L335 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.16 ms. Allocated memory is still 1.0 GB. Free memory is still 962.2 MB. There was no memory consumed. Max. memory is 11.5 GB. * CACSL2BoogieTranslator took 615.55 ms. Allocated memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: 126.4 MB). Free memory was 938.0 MB in the beginning and 1.1 GB in the end (delta: -171.1 MB). Peak memory consumption was 17.9 MB. Max. memory is 11.5 GB. * Boogie Procedure Inliner took 73.77 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 5.4 MB). Peak memory consumption was 5.4 MB. Max. memory is 11.5 GB. * Boogie Preprocessor took 48.57 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 5.4 MB). Peak memory consumption was 5.4 MB. Max. memory is 11.5 GB. * RCFGBuilder took 842.65 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 70.2 MB). Peak memory consumption was 70.2 MB. Max. memory is 11.5 GB. * TraceAbstraction took 9991.96 ms. Allocated memory was 1.2 GB in the beginning and 1.3 GB in the end (delta: 113.2 MB). Free memory was 1.0 GB in the beginning and 892.5 MB in the end (delta: 135.6 MB). Peak memory consumption was 305.7 MB. Max. memory is 11.5 GB. * Witness Printer took 168.62 ms. Allocated memory is still 1.3 GB. Free memory was 892.5 MB in the beginning and 873.9 MB in the end (delta: 18.6 MB). Peak memory consumption was 18.6 MB. Max. memory is 11.5 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - PositiveResult [Line: 44]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - PositiveResult [Line: 44]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - PositiveResult [Line: 44]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: (((1 == systemActive && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter) - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: ((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter) - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: ((((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((0 == methaneLevelCritical && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 0 == systemActive)) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter)) || ((((!(0 == methaneLevelCritical) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 916]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 679]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 456]: Loop Invariant Derived loop invariant: ((1 == systemActive && 0 == methaneLevelCritical) && 1 == waterLevel) && pumpRunning == 0 - InvariantResult [Line: 679]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: ((((1 == systemActive && 1 == \result) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && tmp == 0) && 0 == splverifierCounter)) || (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter)) || (((((0 == methaneLevelCritical && 0 == \result) && tmp == 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 == systemActive)) || ((((!(0 == methaneLevelCritical) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) - InvariantResult [Line: 679]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter - InvariantResult [Line: 679]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter) || (((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 937]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && 0 == splverifierCounter) && 0 == systemActive) || ((1 == systemActive && 0 == methaneLevelCritical) && 0 == splverifierCounter)) || ((methaneLevelCritical == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 679]: Loop Invariant Derived loop invariant: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter - InvariantResult [Line: 582]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 679]: Loop Invariant Derived loop invariant: (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter) || (((methaneLevelCritical == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 506]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 553]: Loop Invariant Derived loop invariant: ((1 == systemActive && 0 == methaneLevelCritical) && 1 == waterLevel) && pumpRunning == 0 - InvariantResult [Line: 77]: Loop Invariant Derived loop invariant: ((1 == systemActive && 0 == methaneLevelCritical) && 1 == waterLevel) && pumpRunning == 0 - InvariantResult [Line: 872]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((1 == systemActive && 0 == methaneLevelCritical) && 1 == waterLevel) && pumpRunning == 0 - InvariantResult [Line: 703]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 927]: Loop Invariant Derived loop invariant: (((((((1 == \result && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || ((((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && tmp == 0) && 0 == splverifierCounter)) || (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter)) || (((((0 == methaneLevelCritical && 0 == \result) && tmp == 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 == systemActive)) || ((((!(0 == methaneLevelCritical) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) - InvariantResult [Line: 827]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 872]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 703]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 872]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 711]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && 0 == splverifierCounter) && 0 == systemActive) || (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter)) || (((methaneLevelCritical == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && 0 == splverifierCounter) - InvariantResult [Line: 711]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 711]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 704]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && 0 == splverifierCounter) && 0 == systemActive) || ((1 == systemActive && 0 == methaneLevelCritical) && 0 == splverifierCounter)) || ((methaneLevelCritical == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 872]: Loop Invariant Derived loop invariant: (((1 == systemActive && 0 == methaneLevelCritical) && 0 == \result) && pumpRunning == 0) && 0 == splverifierCounter - InvariantResult [Line: 872]: Loop Invariant Derived loop invariant: (((1 == systemActive && 0 == methaneLevelCritical) && pumpRunning == 0) && 0 == splverifierCounter) || (((methaneLevelCritical == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 703]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && 0 == splverifierCounter) && 0 == systemActive) || ((1 == systemActive && 0 == methaneLevelCritical) && 0 == splverifierCounter)) || ((methaneLevelCritical == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 827]: Loop Invariant Derived loop invariant: (((((\result == 0 && 1 == \result) && methaneLevelCritical == systemActive) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((((!(0 == methaneLevelCritical) && \result == 0) && pumpRunning == 0) && !(0 == \result)) && 0 == splverifierCounter) && 0 == systemActive) - InvariantResult [Line: 872]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 827]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 895]: Loop Invariant Derived loop invariant: pumpRunning == 0 && 0 == splverifierCounter - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 572]: Loop Invariant Derived loop invariant: 1 - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 135 locations, 3 error locations. Result: SAFE, OverallTime: 9.8s, OverallIterations: 12, TraceHistogramMax: 2, AutomataDifference: 2.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 6.3s, HoareTripleCheckerStatistics: 1482 SDtfs, 1945 SDslu, 3174 SDs, 0 SdLazy, 515 SolverSat, 88 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.6s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 96 GetRequests, 27 SyntacticMatches, 0 SemanticMatches, 69 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 319 ImplicationChecksByTransitivity, 0.7s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=401occurred in iteration=9, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 12 MinimizatonAttempts, 1938 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 57 LocationsWithAnnotation, 57 PreInvPairs, 241 NumberOfFragments, 751 HoareAnnotationTreeSize, 57 FomulaSimplifications, 641773 FormulaSimplificationTreeSizeReduction, 1.9s HoareSimplificationTime, 57 FomulaSimplificationsInter, 97057 FormulaSimplificationTreeSizeReductionInter, 4.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 0.6s InterpolantComputationTime, 397 NumberOfCodeBlocks, 397 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 385 ConstructedInterpolants, 0 QuantifiedInterpolants, 23615 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 27/27 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be correct! Received shutdown request...