./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 30f4e4ab Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx12G -Xms1G -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash ef0694c6828fdd41a19c9b426d075f4f4dde925f .................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.1.24-30f4e4a [2019-11-28 00:20:20,298 INFO L177 SettingsManager]: Resetting all preferences to default values... [2019-11-28 00:20:20,301 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2019-11-28 00:20:20,313 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2019-11-28 00:20:20,313 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2019-11-28 00:20:20,315 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2019-11-28 00:20:20,316 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2019-11-28 00:20:20,318 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2019-11-28 00:20:20,320 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2019-11-28 00:20:20,321 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2019-11-28 00:20:20,322 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2019-11-28 00:20:20,324 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2019-11-28 00:20:20,324 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2019-11-28 00:20:20,325 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2019-11-28 00:20:20,326 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2019-11-28 00:20:20,328 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2019-11-28 00:20:20,329 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2019-11-28 00:20:20,330 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2019-11-28 00:20:20,332 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2019-11-28 00:20:20,334 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2019-11-28 00:20:20,337 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2019-11-28 00:20:20,340 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2019-11-28 00:20:20,343 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2019-11-28 00:20:20,345 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2019-11-28 00:20:20,348 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2019-11-28 00:20:20,352 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2019-11-28 00:20:20,352 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2019-11-28 00:20:20,353 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2019-11-28 00:20:20,355 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2019-11-28 00:20:20,357 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2019-11-28 00:20:20,358 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2019-11-28 00:20:20,359 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2019-11-28 00:20:20,360 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2019-11-28 00:20:20,361 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2019-11-28 00:20:20,364 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2019-11-28 00:20:20,365 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2019-11-28 00:20:20,366 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2019-11-28 00:20:20,366 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2019-11-28 00:20:20,367 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2019-11-28 00:20:20,368 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2019-11-28 00:20:20,370 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2019-11-28 00:20:20,372 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2019-11-28 00:20:20,397 INFO L113 SettingsManager]: Loading preferences was successful [2019-11-28 00:20:20,397 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2019-11-28 00:20:20,402 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2019-11-28 00:20:20,402 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2019-11-28 00:20:20,402 INFO L138 SettingsManager]: * Use SBE=true [2019-11-28 00:20:20,403 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2019-11-28 00:20:20,403 INFO L138 SettingsManager]: * sizeof long=4 [2019-11-28 00:20:20,403 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2019-11-28 00:20:20,404 INFO L138 SettingsManager]: * sizeof POINTER=4 [2019-11-28 00:20:20,404 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2019-11-28 00:20:20,405 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2019-11-28 00:20:20,406 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2019-11-28 00:20:20,406 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2019-11-28 00:20:20,406 INFO L138 SettingsManager]: * sizeof long double=12 [2019-11-28 00:20:20,407 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2019-11-28 00:20:20,407 INFO L138 SettingsManager]: * Use constant arrays=true [2019-11-28 00:20:20,407 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2019-11-28 00:20:20,408 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2019-11-28 00:20:20,408 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2019-11-28 00:20:20,408 INFO L138 SettingsManager]: * To the following directory=./dump/ [2019-11-28 00:20:20,409 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2019-11-28 00:20:20,410 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 00:20:20,410 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2019-11-28 00:20:20,410 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2019-11-28 00:20:20,411 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2019-11-28 00:20:20,411 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2019-11-28 00:20:20,411 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2019-11-28 00:20:20,412 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2019-11-28 00:20:20,412 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> ef0694c6828fdd41a19c9b426d075f4f4dde925f [2019-11-28 00:20:20,720 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2019-11-28 00:20:20,734 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2019-11-28 00:20:20,738 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2019-11-28 00:20:20,740 INFO L271 PluginConnector]: Initializing CDTParser... [2019-11-28 00:20:20,740 INFO L275 PluginConnector]: CDTParser initialized [2019-11-28 00:20:20,741 INFO L428 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c [2019-11-28 00:20:20,803 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f712958b7/7608d43678684d8bbba4dbb507878016/FLAG5cc13841d [2019-11-28 00:20:21,316 INFO L306 CDTParser]: Found 1 translation units. [2019-11-28 00:20:21,317 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c [2019-11-28 00:20:21,331 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f712958b7/7608d43678684d8bbba4dbb507878016/FLAG5cc13841d [2019-11-28 00:20:21,641 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f712958b7/7608d43678684d8bbba4dbb507878016 [2019-11-28 00:20:21,644 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2019-11-28 00:20:21,645 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2019-11-28 00:20:21,646 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2019-11-28 00:20:21,647 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2019-11-28 00:20:21,650 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2019-11-28 00:20:21,651 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 12:20:21" (1/1) ... [2019-11-28 00:20:21,654 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@5cce8044 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:21, skipping insertion in model container [2019-11-28 00:20:21,654 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 12:20:21" (1/1) ... [2019-11-28 00:20:21,662 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2019-11-28 00:20:21,727 INFO L178 MainTranslator]: Built tables and reachable declarations [2019-11-28 00:20:22,133 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 00:20:22,150 INFO L203 MainTranslator]: Completed pre-run [2019-11-28 00:20:22,257 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 00:20:22,296 INFO L208 MainTranslator]: Completed translation [2019-11-28 00:20:22,296 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22 WrapperNode [2019-11-28 00:20:22,296 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2019-11-28 00:20:22,297 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2019-11-28 00:20:22,298 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2019-11-28 00:20:22,298 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2019-11-28 00:20:22,306 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,325 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,380 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2019-11-28 00:20:22,381 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2019-11-28 00:20:22,381 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2019-11-28 00:20:22,381 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2019-11-28 00:20:22,391 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,391 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,398 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,398 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,413 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,424 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,428 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... [2019-11-28 00:20:22,434 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2019-11-28 00:20:22,435 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2019-11-28 00:20:22,435 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2019-11-28 00:20:22,435 INFO L275 PluginConnector]: RCFGBuilder initialized [2019-11-28 00:20:22,436 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 00:20:22,513 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2019-11-28 00:20:22,514 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2019-11-28 00:20:22,514 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2019-11-28 00:20:22,514 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2019-11-28 00:20:23,466 INFO L292 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2019-11-28 00:20:23,467 INFO L297 CfgBuilder]: Removed 196 assume(true) statements. [2019-11-28 00:20:23,468 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 12:20:23 BoogieIcfgContainer [2019-11-28 00:20:23,469 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2019-11-28 00:20:23,470 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2019-11-28 00:20:23,470 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2019-11-28 00:20:23,474 INFO L275 PluginConnector]: TraceAbstraction initialized [2019-11-28 00:20:23,474 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.11 12:20:21" (1/3) ... [2019-11-28 00:20:23,475 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7016f46 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 12:20:23, skipping insertion in model container [2019-11-28 00:20:23,475 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:20:22" (2/3) ... [2019-11-28 00:20:23,476 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7016f46 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 12:20:23, skipping insertion in model container [2019-11-28 00:20:23,476 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 12:20:23" (3/3) ... [2019-11-28 00:20:23,478 INFO L109 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product47.cil.c [2019-11-28 00:20:23,498 INFO L156 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2019-11-28 00:20:23,506 INFO L168 ceAbstractionStarter]: Appying trace abstraction to program that has 3 error locations. [2019-11-28 00:20:23,519 INFO L249 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2019-11-28 00:20:23,551 INFO L373 AbstractCegarLoop]: Interprodecural is true [2019-11-28 00:20:23,552 INFO L374 AbstractCegarLoop]: Hoare is true [2019-11-28 00:20:23,552 INFO L375 AbstractCegarLoop]: Compute interpolants for FPandBP [2019-11-28 00:20:23,552 INFO L376 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2019-11-28 00:20:23,552 INFO L377 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2019-11-28 00:20:23,553 INFO L378 AbstractCegarLoop]: Difference is false [2019-11-28 00:20:23,553 INFO L379 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2019-11-28 00:20:23,553 INFO L383 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2019-11-28 00:20:23,573 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states. [2019-11-28 00:20:23,581 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2019-11-28 00:20:23,581 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:23,582 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:23,583 INFO L410 AbstractCegarLoop]: === Iteration 1 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:23,589 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:23,590 INFO L82 PathProgramCache]: Analyzing trace with hash -330245923, now seen corresponding path program 1 times [2019-11-28 00:20:23,600 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:23,600 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1107277759] [2019-11-28 00:20:23,601 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:23,753 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:23,853 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:23,854 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1107277759] [2019-11-28 00:20:23,855 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:23,855 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 00:20:23,856 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1644628618] [2019-11-28 00:20:23,861 INFO L442 AbstractCegarLoop]: Interpolant automaton has 2 states [2019-11-28 00:20:23,861 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:23,873 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2019-11-28 00:20:23,874 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 00:20:23,876 INFO L87 Difference]: Start difference. First operand 131 states. Second operand 2 states. [2019-11-28 00:20:23,914 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:23,914 INFO L93 Difference]: Finished difference Result 256 states and 383 transitions. [2019-11-28 00:20:23,914 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2019-11-28 00:20:23,916 INFO L78 Accepts]: Start accepts. Automaton has 2 states. Word has length 16 [2019-11-28 00:20:23,916 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:23,930 INFO L225 Difference]: With dead ends: 256 [2019-11-28 00:20:23,930 INFO L226 Difference]: Without dead ends: 127 [2019-11-28 00:20:23,935 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 00:20:23,954 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 127 states. [2019-11-28 00:20:23,982 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 127 to 127. [2019-11-28 00:20:23,983 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 127 states. [2019-11-28 00:20:23,986 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 127 states to 127 states and 183 transitions. [2019-11-28 00:20:23,988 INFO L78 Accepts]: Start accepts. Automaton has 127 states and 183 transitions. Word has length 16 [2019-11-28 00:20:23,988 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:23,989 INFO L462 AbstractCegarLoop]: Abstraction has 127 states and 183 transitions. [2019-11-28 00:20:23,989 INFO L463 AbstractCegarLoop]: Interpolant automaton has 2 states. [2019-11-28 00:20:23,989 INFO L276 IsEmpty]: Start isEmpty. Operand 127 states and 183 transitions. [2019-11-28 00:20:23,990 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2019-11-28 00:20:23,990 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:23,990 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:23,991 INFO L410 AbstractCegarLoop]: === Iteration 2 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:23,991 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:23,991 INFO L82 PathProgramCache]: Analyzing trace with hash 450073546, now seen corresponding path program 1 times [2019-11-28 00:20:23,992 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:23,992 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [198233217] [2019-11-28 00:20:23,992 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:24,033 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:24,130 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:24,130 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [198233217] [2019-11-28 00:20:24,131 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:24,131 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 00:20:24,131 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [214928163] [2019-11-28 00:20:24,133 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:20:24,133 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:24,134 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:20:24,134 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:24,134 INFO L87 Difference]: Start difference. First operand 127 states and 183 transitions. Second operand 3 states. [2019-11-28 00:20:24,153 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:24,153 INFO L93 Difference]: Finished difference Result 127 states and 183 transitions. [2019-11-28 00:20:24,154 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:20:24,154 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 17 [2019-11-28 00:20:24,154 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:24,155 INFO L225 Difference]: With dead ends: 127 [2019-11-28 00:20:24,156 INFO L226 Difference]: Without dead ends: 53 [2019-11-28 00:20:24,157 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:24,157 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2019-11-28 00:20:24,166 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2019-11-28 00:20:24,167 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 53 states. [2019-11-28 00:20:24,168 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 76 transitions. [2019-11-28 00:20:24,172 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 76 transitions. Word has length 17 [2019-11-28 00:20:24,172 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:24,173 INFO L462 AbstractCegarLoop]: Abstraction has 53 states and 76 transitions. [2019-11-28 00:20:24,173 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:20:24,173 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 76 transitions. [2019-11-28 00:20:24,174 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2019-11-28 00:20:24,174 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:24,174 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:24,175 INFO L410 AbstractCegarLoop]: === Iteration 3 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:24,175 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:24,175 INFO L82 PathProgramCache]: Analyzing trace with hash 445162074, now seen corresponding path program 1 times [2019-11-28 00:20:24,176 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:24,176 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [997668210] [2019-11-28 00:20:24,176 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:24,214 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:24,312 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:24,317 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [997668210] [2019-11-28 00:20:24,317 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:24,317 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 00:20:24,318 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [261620327] [2019-11-28 00:20:24,318 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:20:24,319 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:24,319 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:20:24,319 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:24,319 INFO L87 Difference]: Start difference. First operand 53 states and 76 transitions. Second operand 3 states. [2019-11-28 00:20:24,354 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:24,354 INFO L93 Difference]: Finished difference Result 147 states and 216 transitions. [2019-11-28 00:20:24,355 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:20:24,355 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 22 [2019-11-28 00:20:24,356 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:24,357 INFO L225 Difference]: With dead ends: 147 [2019-11-28 00:20:24,358 INFO L226 Difference]: Without dead ends: 100 [2019-11-28 00:20:24,358 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:24,359 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2019-11-28 00:20:24,372 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 96. [2019-11-28 00:20:24,372 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 96 states. [2019-11-28 00:20:24,374 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 141 transitions. [2019-11-28 00:20:24,374 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 141 transitions. Word has length 22 [2019-11-28 00:20:24,374 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:24,375 INFO L462 AbstractCegarLoop]: Abstraction has 96 states and 141 transitions. [2019-11-28 00:20:24,375 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:20:24,375 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 141 transitions. [2019-11-28 00:20:24,376 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2019-11-28 00:20:24,377 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:24,377 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:24,377 INFO L410 AbstractCegarLoop]: === Iteration 4 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:24,378 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:24,378 INFO L82 PathProgramCache]: Analyzing trace with hash 96758808, now seen corresponding path program 1 times [2019-11-28 00:20:24,378 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:24,379 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [836095091] [2019-11-28 00:20:24,379 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:24,407 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:24,469 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:24,469 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [836095091] [2019-11-28 00:20:24,471 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:24,471 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 00:20:24,471 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1857529952] [2019-11-28 00:20:24,472 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:20:24,472 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:24,473 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:20:24,473 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:24,473 INFO L87 Difference]: Start difference. First operand 96 states and 141 transitions. Second operand 3 states. [2019-11-28 00:20:24,528 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:24,528 INFO L93 Difference]: Finished difference Result 227 states and 338 transitions. [2019-11-28 00:20:24,529 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:20:24,529 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 24 [2019-11-28 00:20:24,529 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:24,531 INFO L225 Difference]: With dead ends: 227 [2019-11-28 00:20:24,531 INFO L226 Difference]: Without dead ends: 137 [2019-11-28 00:20:24,532 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:24,533 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 137 states. [2019-11-28 00:20:24,557 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 137 to 135. [2019-11-28 00:20:24,557 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 135 states. [2019-11-28 00:20:24,559 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 195 transitions. [2019-11-28 00:20:24,563 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 195 transitions. Word has length 24 [2019-11-28 00:20:24,563 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:24,564 INFO L462 AbstractCegarLoop]: Abstraction has 135 states and 195 transitions. [2019-11-28 00:20:24,565 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:20:24,565 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 195 transitions. [2019-11-28 00:20:24,567 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2019-11-28 00:20:24,568 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:24,568 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:24,570 INFO L410 AbstractCegarLoop]: === Iteration 5 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:24,571 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:24,571 INFO L82 PathProgramCache]: Analyzing trace with hash -732744145, now seen corresponding path program 1 times [2019-11-28 00:20:24,571 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:24,572 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [325672475] [2019-11-28 00:20:24,572 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:24,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:24,693 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:24,693 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [325672475] [2019-11-28 00:20:24,693 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:24,694 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 00:20:24,694 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2139068668] [2019-11-28 00:20:24,694 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 00:20:24,695 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:24,695 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 00:20:24,695 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:20:24,695 INFO L87 Difference]: Start difference. First operand 135 states and 195 transitions. Second operand 5 states. [2019-11-28 00:20:24,866 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:24,866 INFO L93 Difference]: Finished difference Result 397 states and 575 transitions. [2019-11-28 00:20:24,867 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2019-11-28 00:20:24,867 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 25 [2019-11-28 00:20:24,868 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:24,872 INFO L225 Difference]: With dead ends: 397 [2019-11-28 00:20:24,874 INFO L226 Difference]: Without dead ends: 395 [2019-11-28 00:20:24,876 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 00:20:24,877 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 395 states. [2019-11-28 00:20:24,910 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 395 to 135. [2019-11-28 00:20:24,910 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 135 states. [2019-11-28 00:20:24,911 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 193 transitions. [2019-11-28 00:20:24,911 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 193 transitions. Word has length 25 [2019-11-28 00:20:24,911 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:24,912 INFO L462 AbstractCegarLoop]: Abstraction has 135 states and 193 transitions. [2019-11-28 00:20:24,912 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 00:20:24,912 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 193 transitions. [2019-11-28 00:20:24,913 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2019-11-28 00:20:24,913 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:24,913 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:24,914 INFO L410 AbstractCegarLoop]: === Iteration 6 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:24,914 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:24,914 INFO L82 PathProgramCache]: Analyzing trace with hash 1902005189, now seen corresponding path program 1 times [2019-11-28 00:20:24,914 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:24,915 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1674772753] [2019-11-28 00:20:24,915 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:24,937 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:24,972 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:24,972 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1674772753] [2019-11-28 00:20:24,973 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:24,973 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 00:20:24,973 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2084486176] [2019-11-28 00:20:24,973 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:20:24,975 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:24,975 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:20:24,976 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:24,976 INFO L87 Difference]: Start difference. First operand 135 states and 193 transitions. Second operand 3 states. [2019-11-28 00:20:25,016 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:25,017 INFO L93 Difference]: Finished difference Result 363 states and 522 transitions. [2019-11-28 00:20:25,018 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:20:25,018 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 33 [2019-11-28 00:20:25,018 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:25,020 INFO L225 Difference]: With dead ends: 363 [2019-11-28 00:20:25,020 INFO L226 Difference]: Without dead ends: 234 [2019-11-28 00:20:25,022 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:25,023 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 234 states. [2019-11-28 00:20:25,041 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 234 to 232. [2019-11-28 00:20:25,042 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 232 states. [2019-11-28 00:20:25,043 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 232 states to 232 states and 326 transitions. [2019-11-28 00:20:25,044 INFO L78 Accepts]: Start accepts. Automaton has 232 states and 326 transitions. Word has length 33 [2019-11-28 00:20:25,044 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:25,044 INFO L462 AbstractCegarLoop]: Abstraction has 232 states and 326 transitions. [2019-11-28 00:20:25,045 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:20:25,045 INFO L276 IsEmpty]: Start isEmpty. Operand 232 states and 326 transitions. [2019-11-28 00:20:25,046 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2019-11-28 00:20:25,047 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:25,047 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:25,048 INFO L410 AbstractCegarLoop]: === Iteration 7 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:25,048 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:25,048 INFO L82 PathProgramCache]: Analyzing trace with hash -1113098429, now seen corresponding path program 1 times [2019-11-28 00:20:25,049 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:25,049 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [468198109] [2019-11-28 00:20:25,049 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:25,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:25,125 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:25,126 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [468198109] [2019-11-28 00:20:25,126 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:25,126 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2019-11-28 00:20:25,127 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [374463769] [2019-11-28 00:20:25,127 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 00:20:25,127 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:25,128 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 00:20:25,128 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:20:25,128 INFO L87 Difference]: Start difference. First operand 232 states and 326 transitions. Second operand 5 states. [2019-11-28 00:20:25,228 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:25,229 INFO L93 Difference]: Finished difference Result 640 states and 890 transitions. [2019-11-28 00:20:25,230 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2019-11-28 00:20:25,230 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 33 [2019-11-28 00:20:25,230 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:25,233 INFO L225 Difference]: With dead ends: 640 [2019-11-28 00:20:25,234 INFO L226 Difference]: Without dead ends: 414 [2019-11-28 00:20:25,236 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2019-11-28 00:20:25,237 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 414 states. [2019-11-28 00:20:25,258 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 414 to 250. [2019-11-28 00:20:25,258 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 250 states. [2019-11-28 00:20:25,260 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 250 states to 250 states and 344 transitions. [2019-11-28 00:20:25,260 INFO L78 Accepts]: Start accepts. Automaton has 250 states and 344 transitions. Word has length 33 [2019-11-28 00:20:25,262 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:25,262 INFO L462 AbstractCegarLoop]: Abstraction has 250 states and 344 transitions. [2019-11-28 00:20:25,262 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 00:20:25,262 INFO L276 IsEmpty]: Start isEmpty. Operand 250 states and 344 transitions. [2019-11-28 00:20:25,263 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2019-11-28 00:20:25,264 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:25,264 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:25,264 INFO L410 AbstractCegarLoop]: === Iteration 8 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:25,264 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:25,265 INFO L82 PathProgramCache]: Analyzing trace with hash -1699904443, now seen corresponding path program 1 times [2019-11-28 00:20:25,265 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:25,265 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1105400194] [2019-11-28 00:20:25,265 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:25,284 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:25,317 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:25,317 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1105400194] [2019-11-28 00:20:25,317 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:25,318 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 00:20:25,318 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1644444086] [2019-11-28 00:20:25,318 INFO L442 AbstractCegarLoop]: Interpolant automaton has 4 states [2019-11-28 00:20:25,319 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:25,319 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2019-11-28 00:20:25,319 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2019-11-28 00:20:25,319 INFO L87 Difference]: Start difference. First operand 250 states and 344 transitions. Second operand 4 states. [2019-11-28 00:20:25,378 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:25,378 INFO L93 Difference]: Finished difference Result 544 states and 742 transitions. [2019-11-28 00:20:25,379 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2019-11-28 00:20:25,379 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 33 [2019-11-28 00:20:25,379 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:25,381 INFO L225 Difference]: With dead ends: 544 [2019-11-28 00:20:25,381 INFO L226 Difference]: Without dead ends: 300 [2019-11-28 00:20:25,382 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:20:25,383 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 300 states. [2019-11-28 00:20:25,396 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 300 to 209. [2019-11-28 00:20:25,396 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 209 states. [2019-11-28 00:20:25,397 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 209 states to 209 states and 280 transitions. [2019-11-28 00:20:25,397 INFO L78 Accepts]: Start accepts. Automaton has 209 states and 280 transitions. Word has length 33 [2019-11-28 00:20:25,398 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:25,398 INFO L462 AbstractCegarLoop]: Abstraction has 209 states and 280 transitions. [2019-11-28 00:20:25,398 INFO L463 AbstractCegarLoop]: Interpolant automaton has 4 states. [2019-11-28 00:20:25,398 INFO L276 IsEmpty]: Start isEmpty. Operand 209 states and 280 transitions. [2019-11-28 00:20:25,399 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2019-11-28 00:20:25,399 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:25,399 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:25,399 INFO L410 AbstractCegarLoop]: === Iteration 9 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:25,399 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:25,400 INFO L82 PathProgramCache]: Analyzing trace with hash -1822472183, now seen corresponding path program 1 times [2019-11-28 00:20:25,400 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:25,400 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1529239240] [2019-11-28 00:20:25,400 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:25,442 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:25,525 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:25,526 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1529239240] [2019-11-28 00:20:25,526 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:25,527 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 00:20:25,527 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [403343296] [2019-11-28 00:20:25,528 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 00:20:25,528 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:25,528 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 00:20:25,529 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:20:25,529 INFO L87 Difference]: Start difference. First operand 209 states and 280 transitions. Second operand 5 states. [2019-11-28 00:20:25,886 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:25,887 INFO L93 Difference]: Finished difference Result 1093 states and 1472 transitions. [2019-11-28 00:20:25,887 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2019-11-28 00:20:25,887 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 34 [2019-11-28 00:20:25,887 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:25,892 INFO L225 Difference]: With dead ends: 1093 [2019-11-28 00:20:25,893 INFO L226 Difference]: Without dead ends: 890 [2019-11-28 00:20:25,894 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 00:20:25,895 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 890 states. [2019-11-28 00:20:25,944 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 890 to 398. [2019-11-28 00:20:25,944 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 398 states. [2019-11-28 00:20:25,945 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 398 states to 398 states and 527 transitions. [2019-11-28 00:20:25,946 INFO L78 Accepts]: Start accepts. Automaton has 398 states and 527 transitions. Word has length 34 [2019-11-28 00:20:25,946 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:25,946 INFO L462 AbstractCegarLoop]: Abstraction has 398 states and 527 transitions. [2019-11-28 00:20:25,946 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 00:20:25,946 INFO L276 IsEmpty]: Start isEmpty. Operand 398 states and 527 transitions. [2019-11-28 00:20:25,949 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2019-11-28 00:20:25,949 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:25,950 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:25,950 INFO L410 AbstractCegarLoop]: === Iteration 10 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:25,950 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:25,950 INFO L82 PathProgramCache]: Analyzing trace with hash 939478607, now seen corresponding path program 1 times [2019-11-28 00:20:25,951 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:25,951 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1723787371] [2019-11-28 00:20:25,951 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:25,982 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:26,060 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:20:26,060 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1723787371] [2019-11-28 00:20:26,060 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:26,061 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2019-11-28 00:20:26,061 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1887457637] [2019-11-28 00:20:26,061 INFO L442 AbstractCegarLoop]: Interpolant automaton has 6 states [2019-11-28 00:20:26,061 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:26,062 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2019-11-28 00:20:26,062 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2019-11-28 00:20:26,062 INFO L87 Difference]: Start difference. First operand 398 states and 527 transitions. Second operand 6 states. [2019-11-28 00:20:26,394 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:26,395 INFO L93 Difference]: Finished difference Result 1430 states and 1900 transitions. [2019-11-28 00:20:26,395 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2019-11-28 00:20:26,395 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 35 [2019-11-28 00:20:26,396 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:26,401 INFO L225 Difference]: With dead ends: 1430 [2019-11-28 00:20:26,402 INFO L226 Difference]: Without dead ends: 1038 [2019-11-28 00:20:26,403 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 26 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=60, Invalid=122, Unknown=0, NotChecked=0, Total=182 [2019-11-28 00:20:26,405 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1038 states. [2019-11-28 00:20:26,459 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1038 to 398. [2019-11-28 00:20:26,459 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 398 states. [2019-11-28 00:20:26,461 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 398 states to 398 states and 517 transitions. [2019-11-28 00:20:26,462 INFO L78 Accepts]: Start accepts. Automaton has 398 states and 517 transitions. Word has length 35 [2019-11-28 00:20:26,462 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:26,462 INFO L462 AbstractCegarLoop]: Abstraction has 398 states and 517 transitions. [2019-11-28 00:20:26,463 INFO L463 AbstractCegarLoop]: Interpolant automaton has 6 states. [2019-11-28 00:20:26,463 INFO L276 IsEmpty]: Start isEmpty. Operand 398 states and 517 transitions. [2019-11-28 00:20:26,464 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2019-11-28 00:20:26,465 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:26,465 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:26,466 INFO L410 AbstractCegarLoop]: === Iteration 11 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:26,466 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:26,466 INFO L82 PathProgramCache]: Analyzing trace with hash 1806093559, now seen corresponding path program 1 times [2019-11-28 00:20:26,467 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:26,467 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [66452114] [2019-11-28 00:20:26,467 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:26,485 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:26,513 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2019-11-28 00:20:26,514 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [66452114] [2019-11-28 00:20:26,514 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:26,514 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 00:20:26,514 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1637635146] [2019-11-28 00:20:26,515 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:20:26,515 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:26,516 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:20:26,516 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:26,516 INFO L87 Difference]: Start difference. First operand 398 states and 517 transitions. Second operand 3 states. [2019-11-28 00:20:26,584 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:26,585 INFO L93 Difference]: Finished difference Result 486 states and 630 transitions. [2019-11-28 00:20:26,585 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:20:26,586 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 52 [2019-11-28 00:20:26,586 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:26,587 INFO L225 Difference]: With dead ends: 486 [2019-11-28 00:20:26,587 INFO L226 Difference]: Without dead ends: 198 [2019-11-28 00:20:26,588 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:20:26,589 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 198 states. [2019-11-28 00:20:26,609 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 198 to 198. [2019-11-28 00:20:26,610 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 198 states. [2019-11-28 00:20:26,611 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 198 states to 198 states and 247 transitions. [2019-11-28 00:20:26,611 INFO L78 Accepts]: Start accepts. Automaton has 198 states and 247 transitions. Word has length 52 [2019-11-28 00:20:26,611 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:26,611 INFO L462 AbstractCegarLoop]: Abstraction has 198 states and 247 transitions. [2019-11-28 00:20:26,612 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:20:26,612 INFO L276 IsEmpty]: Start isEmpty. Operand 198 states and 247 transitions. [2019-11-28 00:20:26,612 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2019-11-28 00:20:26,613 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:20:26,613 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:20:26,613 INFO L410 AbstractCegarLoop]: === Iteration 12 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:20:26,614 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:20:26,614 INFO L82 PathProgramCache]: Analyzing trace with hash 1267756066, now seen corresponding path program 1 times [2019-11-28 00:20:26,614 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:20:26,614 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [629908376] [2019-11-28 00:20:26,615 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:20:26,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:20:26,677 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 8 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2019-11-28 00:20:26,677 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [629908376] [2019-11-28 00:20:26,677 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:20:26,677 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2019-11-28 00:20:26,678 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [448830709] [2019-11-28 00:20:26,678 INFO L442 AbstractCegarLoop]: Interpolant automaton has 6 states [2019-11-28 00:20:26,678 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:20:26,678 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2019-11-28 00:20:26,679 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2019-11-28 00:20:26,679 INFO L87 Difference]: Start difference. First operand 198 states and 247 transitions. Second operand 6 states. [2019-11-28 00:20:26,915 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:20:26,915 INFO L93 Difference]: Finished difference Result 497 states and 619 transitions. [2019-11-28 00:20:26,915 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2019-11-28 00:20:26,915 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 54 [2019-11-28 00:20:26,916 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:20:26,916 INFO L225 Difference]: With dead ends: 497 [2019-11-28 00:20:26,916 INFO L226 Difference]: Without dead ends: 0 [2019-11-28 00:20:26,918 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2019-11-28 00:20:26,918 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2019-11-28 00:20:26,918 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2019-11-28 00:20:26,919 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 0 states. [2019-11-28 00:20:26,919 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2019-11-28 00:20:26,919 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 54 [2019-11-28 00:20:26,919 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:20:26,919 INFO L462 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2019-11-28 00:20:26,920 INFO L463 AbstractCegarLoop]: Interpolant automaton has 6 states. [2019-11-28 00:20:26,920 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2019-11-28 00:20:26,920 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2019-11-28 00:20:26,923 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2019-11-28 00:20:27,063 WARN L192 SmtUtils]: Spent 117.00 ms on a formula simplification. DAG size of input: 114 DAG size of output: 95 [2019-11-28 00:20:27,591 WARN L192 SmtUtils]: Spent 407.00 ms on a formula simplification. DAG size of input: 170 DAG size of output: 140 [2019-11-28 00:20:27,825 WARN L192 SmtUtils]: Spent 230.00 ms on a formula simplification. DAG size of input: 109 DAG size of output: 66 [2019-11-28 00:20:28,250 WARN L192 SmtUtils]: Spent 412.00 ms on a formula simplification. DAG size of input: 163 DAG size of output: 128 [2019-11-28 00:20:28,439 WARN L192 SmtUtils]: Spent 177.00 ms on a formula simplification. DAG size of input: 117 DAG size of output: 77 [2019-11-28 00:20:28,814 WARN L192 SmtUtils]: Spent 372.00 ms on a formula simplification. DAG size of input: 172 DAG size of output: 139 [2019-11-28 00:20:28,922 WARN L192 SmtUtils]: Spent 107.00 ms on a formula simplification. DAG size of input: 116 DAG size of output: 96 [2019-11-28 00:20:29,049 WARN L192 SmtUtils]: Spent 125.00 ms on a formula simplification. DAG size of input: 96 DAG size of output: 84 [2019-11-28 00:20:29,392 WARN L192 SmtUtils]: Spent 339.00 ms on a formula simplification. DAG size of input: 171 DAG size of output: 135 [2019-11-28 00:20:29,885 WARN L192 SmtUtils]: Spent 446.00 ms on a formula simplification. DAG size of input: 94 DAG size of output: 34 [2019-11-28 00:20:30,314 WARN L192 SmtUtils]: Spent 275.00 ms on a formula simplification. DAG size of input: 68 DAG size of output: 24 [2019-11-28 00:20:31,184 WARN L192 SmtUtils]: Spent 737.00 ms on a formula simplification. DAG size of input: 139 DAG size of output: 22 [2019-11-28 00:20:31,443 WARN L192 SmtUtils]: Spent 256.00 ms on a formula simplification. DAG size of input: 64 DAG size of output: 16 [2019-11-28 00:20:32,184 WARN L192 SmtUtils]: Spent 713.00 ms on a formula simplification. DAG size of input: 126 DAG size of output: 26 [2019-11-28 00:20:32,379 WARN L192 SmtUtils]: Spent 178.00 ms on a formula simplification. DAG size of input: 74 DAG size of output: 16 [2019-11-28 00:20:33,109 WARN L192 SmtUtils]: Spent 728.00 ms on a formula simplification. DAG size of input: 138 DAG size of output: 22 [2019-11-28 00:20:33,562 WARN L192 SmtUtils]: Spent 449.00 ms on a formula simplification. DAG size of input: 95 DAG size of output: 31 [2019-11-28 00:20:33,979 WARN L192 SmtUtils]: Spent 414.00 ms on a formula simplification. DAG size of input: 84 DAG size of output: 14 [2019-11-28 00:20:34,648 WARN L192 SmtUtils]: Spent 658.00 ms on a formula simplification. DAG size of input: 134 DAG size of output: 22 [2019-11-28 00:20:34,661 INFO L246 CegarLoopResult]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 73) no Hoare annotation was computed. [2019-11-28 00:20:34,662 INFO L242 CegarLoopResult]: At program point L235(lines 235 241) the Hoare annotation is: (let ((.cse1 (<= ~methaneLevelCritical~0 0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse5 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse1 .cse4 .cse2 .cse3) (and .cse1 .cse4 .cse2 .cse3 .cse6) (and .cse0 .cse4 .cse2 .cse5))) [2019-11-28 00:20:34,662 INFO L242 CegarLoopResult]: At program point L235-1(lines 235 241) the Hoare annotation is: false [2019-11-28 00:20:34,662 INFO L242 CegarLoopResult]: At program point L235-2(lines 235 241) the Hoare annotation is: false [2019-11-28 00:20:34,663 INFO L242 CegarLoopResult]: At program point L103(lines 1 959) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 00:20:34,663 INFO L246 CegarLoopResult]: For program point L205(lines 205 211) no Hoare annotation was computed. [2019-11-28 00:20:34,663 INFO L246 CegarLoopResult]: For program point L205-1(lines 205 211) no Hoare annotation was computed. [2019-11-28 00:20:34,663 INFO L246 CegarLoopResult]: For program point L205-2(lines 205 211) no Hoare annotation was computed. [2019-11-28 00:20:34,663 INFO L246 CegarLoopResult]: For program point L205-3(lines 205 211) no Hoare annotation was computed. [2019-11-28 00:20:34,663 INFO L246 CegarLoopResult]: For program point L73(line 73) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L205-4(lines 205 211) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L73-1(line 73) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L205-5(lines 205 211) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L73-2(line 73) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L140(lines 140 144) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L405(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L405-2(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,664 INFO L246 CegarLoopResult]: For program point L405-3(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-5(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-6(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-8(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-9(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-11(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-12(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-14(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-15(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,665 INFO L246 CegarLoopResult]: For program point L405-17(lines 405 409) no Hoare annotation was computed. [2019-11-28 00:20:34,666 INFO L246 CegarLoopResult]: For program point L472(lines 472 485) no Hoare annotation was computed. [2019-11-28 00:20:34,666 INFO L246 CegarLoopResult]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 73) no Hoare annotation was computed. [2019-11-28 00:20:34,666 INFO L242 CegarLoopResult]: At program point L210(lines 201 214) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 00:20:34,666 INFO L242 CegarLoopResult]: At program point L210-1(lines 201 214) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 .cse1 .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 00:20:34,666 INFO L242 CegarLoopResult]: At program point L210-2(lines 201 214) the Hoare annotation is: false [2019-11-28 00:20:34,666 INFO L242 CegarLoopResult]: At program point L111(lines 106 114) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 00:20:34,666 INFO L242 CegarLoopResult]: At program point L210-3(lines 201 214) the Hoare annotation is: false [2019-11-28 00:20:34,667 INFO L242 CegarLoopResult]: At program point L210-4(lines 201 214) the Hoare annotation is: false [2019-11-28 00:20:34,667 INFO L242 CegarLoopResult]: At program point L210-5(lines 201 214) the Hoare annotation is: false [2019-11-28 00:20:34,667 INFO L246 CegarLoopResult]: For program point L443(lines 442 489) no Hoare annotation was computed. [2019-11-28 00:20:34,667 INFO L246 CegarLoopResult]: For program point L444(lines 444 448) no Hoare annotation was computed. [2019-11-28 00:20:34,667 INFO L242 CegarLoopResult]: At program point L411(lines 396 414) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 00:20:34,667 INFO L242 CegarLoopResult]: At program point L411-1(lines 396 414) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 .cse1 .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 00:20:34,667 INFO L242 CegarLoopResult]: At program point L411-2(lines 396 414) the Hoare annotation is: false [2019-11-28 00:20:34,667 INFO L242 CegarLoopResult]: At program point L411-3(lines 396 414) the Hoare annotation is: false [2019-11-28 00:20:34,668 INFO L242 CegarLoopResult]: At program point L411-4(lines 396 414) the Hoare annotation is: false [2019-11-28 00:20:34,668 INFO L242 CegarLoopResult]: At program point L411-5(lines 396 414) the Hoare annotation is: false [2019-11-28 00:20:34,668 INFO L246 CegarLoopResult]: For program point L478(lines 478 484) no Hoare annotation was computed. [2019-11-28 00:20:34,668 INFO L242 CegarLoopResult]: At program point L478-1(lines 228 234) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse5 (= 1 ~methaneLevelCritical~0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse2 .cse5) (and .cse1 .cse4 .cse2 .cse3 .cse6))) [2019-11-28 00:20:34,668 INFO L242 CegarLoopResult]: At program point L347(lines 340 350) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= 1 |ULTIMATE.start_isMethaneAlarm_#res|) .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 (<= 0 ~methaneLevelCritical~0)))) [2019-11-28 00:20:34,668 INFO L242 CegarLoopResult]: At program point L347-1(lines 340 350) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L347-2(lines 340 350) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1 (= 1 |ULTIMATE.start_isMethaneAlarm_#res|) .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L347-3(lines 340 350) the Hoare annotation is: false [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L347-4(lines 340 350) the Hoare annotation is: false [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L347-5(lines 340 350) the Hoare annotation is: false [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L347-6(lines 340 350) the Hoare annotation is: false [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L347-7(lines 340 350) the Hoare annotation is: false [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L347-8(lines 340 350) the Hoare annotation is: false [2019-11-28 00:20:34,669 INFO L242 CegarLoopResult]: At program point L876-2(lines 876 890) the Hoare annotation is: false [2019-11-28 00:20:34,669 INFO L246 CegarLoopResult]: For program point L51(lines 51 64) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L242 CegarLoopResult]: At program point L51-1(lines 1 959) the Hoare annotation is: (let ((.cse1 (<= ~methaneLevelCritical~0 0)) (.cse2 (< 0 (+ ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 1))) (.cse3 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse4 (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (<= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse7 (<= 0 ~methaneLevelCritical~0)) (.cse9 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse10 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse8 (= ~pumpRunning~0 0)) (.cse6 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse11 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 (= 1 ~waterLevel~0) .cse8 .cse6 .cse7) (and .cse1 .cse2 .cse3 .cse4 .cse8 .cse5 .cse6 .cse7 .cse9) (and .cse10 .cse8 .cse6 .cse11 .cse9) (and .cse0 .cse10 .cse8 .cse6 .cse11))) [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point L51-2(lines 51 64) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L242 CegarLoopResult]: At program point L51-3(lines 1 959) the Hoare annotation is: false [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point L51-4(lines 51 64) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L242 CegarLoopResult]: At program point L51-5(lines 1 959) the Hoare annotation is: false [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point L877(line 877) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point L152(lines 152 156) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point L880(lines 880 884) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point L880-1(lines 228 234) no Hoare annotation was computed. [2019-11-28 00:20:34,670 INFO L246 CegarLoopResult]: For program point L286(lines 286 303) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L246 CegarLoopResult]: For program point L286-1(lines 286 303) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L246 CegarLoopResult]: For program point L286-2(lines 286 303) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L246 CegarLoopResult]: For program point L55(lines 55 61) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L246 CegarLoopResult]: For program point L55-2(lines 55 61) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L246 CegarLoopResult]: For program point L947(lines 947 954) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L246 CegarLoopResult]: For program point L55-4(lines 55 61) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L249 CegarLoopResult]: At program point L947-1(lines 947 954) the Hoare annotation is: true [2019-11-28 00:20:34,671 INFO L246 CegarLoopResult]: For program point L452(lines 452 458) no Hoare annotation was computed. [2019-11-28 00:20:34,671 INFO L242 CegarLoopResult]: At program point L452-1(lines 452 458) the Hoare annotation is: (let ((.cse2 (< 0 (+ ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 1))) (.cse3 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse4 (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (<= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse7 (<= 0 ~methaneLevelCritical~0)) (.cse9 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse10 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse8 (= ~pumpRunning~0 0)) (.cse6 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse11 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse1 .cse2 .cse3 .cse4 .cse8 .cse5 .cse6 .cse7 .cse9) (and .cse0 .cse1 .cse8 .cse6 .cse7) (and .cse10 .cse8 .cse6 .cse11 .cse9) (and .cse0 .cse10 .cse8 .cse6 .cse11))) [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point L419(lines 419 425) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L242 CegarLoopResult]: At program point L419-1(lines 419 425) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 .cse1 (= 1 ~methaneLevelCritical~0)) (and (<= ~methaneLevelCritical~0 0) .cse0 .cse1 (<= 0 ~methaneLevelCritical~0)))) [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point L322(lines 322 328) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point L322-2(lines 322 328) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point L322-4(lines 322 328) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point L322-6(lines 322 328) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point L322-8(lines 322 328) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L246 CegarLoopResult]: For program point L322-10(lines 322 328) no Hoare annotation was computed. [2019-11-28 00:20:34,672 INFO L242 CegarLoopResult]: At program point L356(lines 351 359) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_isPumpRunning_#res| 0)) (.cse1 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse4 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= 0 ~systemActive~0)) (and (= 1 ~systemActive~0) .cse0 .cse1 .cse2 .cse3 .cse4))) [2019-11-28 00:20:34,673 INFO L242 CegarLoopResult]: At program point L356-1(lines 351 359) the Hoare annotation is: false [2019-11-28 00:20:34,673 INFO L246 CegarLoopResult]: For program point L290(lines 290 298) no Hoare annotation was computed. [2019-11-28 00:20:34,673 INFO L242 CegarLoopResult]: At program point L356-2(lines 351 359) the Hoare annotation is: false [2019-11-28 00:20:34,673 INFO L246 CegarLoopResult]: For program point L290-1(lines 290 298) no Hoare annotation was computed. [2019-11-28 00:20:34,673 INFO L246 CegarLoopResult]: For program point L290-2(lines 290 298) no Hoare annotation was computed. [2019-11-28 00:20:34,673 INFO L242 CegarLoopResult]: At program point L490(lines 441 491) the Hoare annotation is: false [2019-11-28 00:20:34,673 INFO L246 CegarLoopResult]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2019-11-28 00:20:34,673 INFO L246 CegarLoopResult]: For program point L260(lines 260 277) no Hoare annotation was computed. [2019-11-28 00:20:34,673 INFO L246 CegarLoopResult]: For program point L260-1(lines 260 277) no Hoare annotation was computed. [2019-11-28 00:20:34,673 INFO L246 CegarLoopResult]: For program point L260-2(lines 260 277) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L246 CegarLoopResult]: For program point L260-3(lines 260 277) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L246 CegarLoopResult]: For program point L128(lines 128 132) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L246 CegarLoopResult]: For program point L260-4(lines 260 277) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L246 CegarLoopResult]: For program point L260-5(lines 260 277) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L246 CegarLoopResult]: For program point L128-3(lines 128 132) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L246 CegarLoopResult]: For program point L128-6(lines 128 132) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L242 CegarLoopResult]: At program point L228(lines 227 246) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse5 (= 1 ~methaneLevelCritical~0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse2 .cse5) (and .cse1 .cse4 .cse2 .cse3 .cse6))) [2019-11-28 00:20:34,674 INFO L246 CegarLoopResult]: For program point L228-1(lines 228 234) no Hoare annotation was computed. [2019-11-28 00:20:34,674 INFO L242 CegarLoopResult]: At program point L228-2(lines 227 246) the Hoare annotation is: false [2019-11-28 00:20:34,674 INFO L242 CegarLoopResult]: At program point L228-3(lines 227 246) the Hoare annotation is: false [2019-11-28 00:20:34,675 INFO L249 CegarLoopResult]: At program point L956(lines 937 959) the Hoare annotation is: true [2019-11-28 00:20:34,675 INFO L246 CegarLoopResult]: For program point L-1(line -1) no Hoare annotation was computed. [2019-11-28 00:20:34,675 INFO L242 CegarLoopResult]: At program point L924(lines 920 926) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 00:20:34,675 INFO L246 CegarLoopResult]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 73) no Hoare annotation was computed. [2019-11-28 00:20:34,675 INFO L246 CegarLoopResult]: For program point L462(lines 462 468) no Hoare annotation was computed. [2019-11-28 00:20:34,675 INFO L242 CegarLoopResult]: At program point L462-1(lines 462 468) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse5 (= 1 ~methaneLevelCritical~0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse2 .cse5) (and .cse1 .cse4 .cse2 .cse3 .cse6))) [2019-11-28 00:20:34,675 INFO L246 CegarLoopResult]: For program point L264(lines 264 272) no Hoare annotation was computed. [2019-11-28 00:20:34,675 INFO L246 CegarLoopResult]: For program point L264-1(lines 264 272) no Hoare annotation was computed. [2019-11-28 00:20:34,675 INFO L246 CegarLoopResult]: For program point L264-2(lines 264 272) no Hoare annotation was computed. [2019-11-28 00:20:34,676 INFO L242 CegarLoopResult]: At program point L165(lines 160 168) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 (<= 0 ~methaneLevelCritical~0)) (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 00:20:34,676 INFO L246 CegarLoopResult]: For program point L264-3(lines 264 272) no Hoare annotation was computed. [2019-11-28 00:20:34,676 INFO L242 CegarLoopResult]: At program point L165-1(lines 160 168) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 00:20:34,676 INFO L246 CegarLoopResult]: For program point L264-4(lines 264 272) no Hoare annotation was computed. [2019-11-28 00:20:34,676 INFO L242 CegarLoopResult]: At program point L165-2(lines 160 168) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1 .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 00:20:34,676 INFO L246 CegarLoopResult]: For program point L264-5(lines 264 272) no Hoare annotation was computed. [2019-11-28 00:20:34,676 INFO L242 CegarLoopResult]: At program point L165-3(lines 160 168) the Hoare annotation is: (let ((.cse1 (<= ~methaneLevelCritical~0 0)) (.cse2 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse3 (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (<= 0 ~methaneLevelCritical~0)) (.cse9 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse6 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse7 (= ~pumpRunning~0 0)) (.cse4 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse8 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse6 .cse7 .cse4 .cse8 .cse9) (and .cse1 .cse2 .cse3 .cse7 .cse4 .cse5 .cse9) (and .cse0 .cse6 .cse7 .cse4 .cse8))) [2019-11-28 00:20:34,676 INFO L242 CegarLoopResult]: At program point L165-4(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,677 INFO L242 CegarLoopResult]: At program point L165-5(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,677 INFO L242 CegarLoopResult]: At program point L165-6(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,677 INFO L242 CegarLoopResult]: At program point L165-7(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,677 INFO L242 CegarLoopResult]: At program point L165-8(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,677 INFO L242 CegarLoopResult]: At program point L165-9(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,677 INFO L242 CegarLoopResult]: At program point L165-10(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,677 INFO L242 CegarLoopResult]: At program point L165-11(lines 160 168) the Hoare annotation is: false [2019-11-28 00:20:34,712 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.11 12:20:34 BoogieIcfgContainer [2019-11-28 00:20:34,712 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2019-11-28 00:20:34,713 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2019-11-28 00:20:34,713 INFO L271 PluginConnector]: Initializing Witness Printer... [2019-11-28 00:20:34,713 INFO L275 PluginConnector]: Witness Printer initialized [2019-11-28 00:20:34,714 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 12:20:23" (3/4) ... [2019-11-28 00:20:34,717 INFO L137 WitnessPrinter]: Generating witness for correct program [2019-11-28 00:20:34,754 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 38 nodes and edges [2019-11-28 00:20:34,756 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2019-11-28 00:20:34,757 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 9 nodes and edges [2019-11-28 00:20:34,758 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2019-11-28 00:20:34,759 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2019-11-28 00:20:34,761 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2019-11-28 00:20:34,762 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2019-11-28 00:20:34,798 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,798 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,802 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,803 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((((methaneLevelCritical <= 0 && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,804 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,805 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((1 == systemActive && 1 == \result) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) [2019-11-28 00:20:34,805 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((\result == 0 && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive) || (((((1 == systemActive && \result == 0) && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,807 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 00:20:34,812 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,813 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 00:20:34,813 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 00:20:34,816 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 00:20:34,816 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 00:20:34,933 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2019-11-28 00:20:34,934 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2019-11-28 00:20:34,935 INFO L168 Benchmark]: Toolchain (without parser) took 13290.11 ms. Allocated memory was 1.0 GB in the beginning and 1.4 GB in the end (delta: 364.4 MB). Free memory was 952.3 MB in the beginning and 1.2 GB in the end (delta: -203.9 MB). Peak memory consumption was 160.5 MB. Max. memory is 11.5 GB. [2019-11-28 00:20:34,936 INFO L168 Benchmark]: CDTParser took 0.32 ms. Allocated memory is still 1.0 GB. Free memory is still 981.8 MB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-28 00:20:34,936 INFO L168 Benchmark]: CACSL2BoogieTranslator took 650.60 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 111.7 MB). Free memory was 952.3 MB in the beginning and 1.1 GB in the end (delta: -140.3 MB). Peak memory consumption was 26.0 MB. Max. memory is 11.5 GB. [2019-11-28 00:20:34,936 INFO L168 Benchmark]: Boogie Procedure Inliner took 83.19 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 6.8 MB). Peak memory consumption was 6.8 MB. Max. memory is 11.5 GB. [2019-11-28 00:20:34,937 INFO L168 Benchmark]: Boogie Preprocessor took 53.44 ms. Allocated memory is still 1.1 GB. Free memory is still 1.1 GB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-28 00:20:34,937 INFO L168 Benchmark]: RCFGBuilder took 1034.17 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 72.2 MB). Peak memory consumption was 72.2 MB. Max. memory is 11.5 GB. [2019-11-28 00:20:34,938 INFO L168 Benchmark]: TraceAbstraction took 11242.35 ms. Allocated memory was 1.1 GB in the beginning and 1.4 GB in the end (delta: 252.7 MB). Free memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: -165.4 MB). Peak memory consumption was 400.2 MB. Max. memory is 11.5 GB. [2019-11-28 00:20:34,938 INFO L168 Benchmark]: Witness Printer took 221.02 ms. Allocated memory is still 1.4 GB. Free memory was 1.2 GB in the beginning and 1.2 GB in the end (delta: 22.9 MB). Peak memory consumption was 22.9 MB. Max. memory is 11.5 GB. [2019-11-28 00:20:34,940 INFO L335 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.32 ms. Allocated memory is still 1.0 GB. Free memory is still 981.8 MB. There was no memory consumed. Max. memory is 11.5 GB. * CACSL2BoogieTranslator took 650.60 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 111.7 MB). Free memory was 952.3 MB in the beginning and 1.1 GB in the end (delta: -140.3 MB). Peak memory consumption was 26.0 MB. Max. memory is 11.5 GB. * Boogie Procedure Inliner took 83.19 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 6.8 MB). Peak memory consumption was 6.8 MB. Max. memory is 11.5 GB. * Boogie Preprocessor took 53.44 ms. Allocated memory is still 1.1 GB. Free memory is still 1.1 GB. There was no memory consumed. Max. memory is 11.5 GB. * RCFGBuilder took 1034.17 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 72.2 MB). Peak memory consumption was 72.2 MB. Max. memory is 11.5 GB. * TraceAbstraction took 11242.35 ms. Allocated memory was 1.1 GB in the beginning and 1.4 GB in the end (delta: 252.7 MB). Free memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: -165.4 MB). Peak memory consumption was 400.2 MB. Max. memory is 11.5 GB. * Witness Printer took 221.02 ms. Allocated memory is still 1.4 GB. Free memory was 1.2 GB in the beginning and 1.2 GB in the end (delta: 22.9 MB). Peak memory consumption was 22.9 MB. Max. memory is 11.5 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - PositiveResult [Line: 73]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - PositiveResult [Line: 73]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - PositiveResult [Line: 73]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 947]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: ((((1 == systemActive && 1 == \result) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 <= methaneLevelCritical - InvariantResult [Line: 441]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((((methaneLevelCritical <= 0 && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 106]: Loop Invariant Derived loop invariant: (((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 <= methaneLevelCritical - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 351]: Loop Invariant Derived loop invariant: (((((\result == 0 && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive) || (((((1 == systemActive && \result == 0) && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 351]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 462]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((1 == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive) - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 351]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: ((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 937]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((1 == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive) - InvariantResult [Line: 452]: Loop Invariant Derived loop invariant: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 419]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) - InvariantResult [Line: 876]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 228]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((1 == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive) - InvariantResult [Line: 920]: Loop Invariant Derived loop invariant: (((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 <= methaneLevelCritical - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 131 locations, 3 error locations. Result: SAFE, OverallTime: 3.3s, OverallIterations: 12, TraceHistogramMax: 2, AutomataDifference: 1.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 7.7s, HoareTripleCheckerStatistics: 1372 SDtfs, 1653 SDslu, 2302 SDs, 0 SdLazy, 354 SolverSat, 69 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.5s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 81 GetRequests, 32 SyntacticMatches, 0 SemanticMatches, 49 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 48 ImplicationChecksByTransitivity, 0.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=398occurred in iteration=9, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.3s AutomataMinimizationTime, 12 MinimizatonAttempts, 1655 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 56 LocationsWithAnnotation, 56 PreInvPairs, 240 NumberOfFragments, 969 HoareAnnotationTreeSize, 56 FomulaSimplifications, 365185 FormulaSimplificationTreeSizeReduction, 2.4s HoareSimplificationTime, 56 FomulaSimplificationsInter, 91817 FormulaSimplificationTreeSizeReductionInter, 5.2s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 0.7s InterpolantComputationTime, 378 NumberOfCodeBlocks, 378 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 366 ConstructedInterpolants, 0 QuantifiedInterpolants, 24990 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 27/27 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be correct! Received shutdown request...