./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 30f4e4ab Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx12G -Xms1G -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash f3897e59b530ba955e2bc8f3ddb0621a99e3d436 ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................ Execution finished normally Writing output log to file Ultimate.log Writing human readable error path to file UltimateCounterExample.errorpath Result: FALSE --- Real Ultimate output --- This is Ultimate 0.1.24-30f4e4a [2019-11-28 00:21:26,379 INFO L177 SettingsManager]: Resetting all preferences to default values... [2019-11-28 00:21:26,381 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2019-11-28 00:21:26,394 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2019-11-28 00:21:26,395 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2019-11-28 00:21:26,396 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2019-11-28 00:21:26,397 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2019-11-28 00:21:26,407 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2019-11-28 00:21:26,409 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2019-11-28 00:21:26,412 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2019-11-28 00:21:26,414 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2019-11-28 00:21:26,416 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2019-11-28 00:21:26,417 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2019-11-28 00:21:26,420 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2019-11-28 00:21:26,423 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2019-11-28 00:21:26,424 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2019-11-28 00:21:26,426 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2019-11-28 00:21:26,428 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2019-11-28 00:21:26,431 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2019-11-28 00:21:26,434 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2019-11-28 00:21:26,439 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2019-11-28 00:21:26,440 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2019-11-28 00:21:26,441 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2019-11-28 00:21:26,442 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2019-11-28 00:21:26,444 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2019-11-28 00:21:26,444 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2019-11-28 00:21:26,444 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2019-11-28 00:21:26,445 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2019-11-28 00:21:26,445 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2019-11-28 00:21:26,446 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2019-11-28 00:21:26,447 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2019-11-28 00:21:26,447 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2019-11-28 00:21:26,448 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2019-11-28 00:21:26,449 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2019-11-28 00:21:26,450 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2019-11-28 00:21:26,450 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2019-11-28 00:21:26,451 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2019-11-28 00:21:26,451 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2019-11-28 00:21:26,451 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2019-11-28 00:21:26,452 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2019-11-28 00:21:26,453 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2019-11-28 00:21:26,454 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2019-11-28 00:21:26,468 INFO L113 SettingsManager]: Loading preferences was successful [2019-11-28 00:21:26,468 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2019-11-28 00:21:26,470 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2019-11-28 00:21:26,470 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2019-11-28 00:21:26,470 INFO L138 SettingsManager]: * Use SBE=true [2019-11-28 00:21:26,470 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2019-11-28 00:21:26,471 INFO L138 SettingsManager]: * sizeof long=4 [2019-11-28 00:21:26,471 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2019-11-28 00:21:26,471 INFO L138 SettingsManager]: * sizeof POINTER=4 [2019-11-28 00:21:26,471 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2019-11-28 00:21:26,472 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2019-11-28 00:21:26,472 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2019-11-28 00:21:26,472 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2019-11-28 00:21:26,472 INFO L138 SettingsManager]: * sizeof long double=12 [2019-11-28 00:21:26,472 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2019-11-28 00:21:26,473 INFO L138 SettingsManager]: * Use constant arrays=true [2019-11-28 00:21:26,473 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2019-11-28 00:21:26,473 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2019-11-28 00:21:26,473 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2019-11-28 00:21:26,473 INFO L138 SettingsManager]: * To the following directory=./dump/ [2019-11-28 00:21:26,474 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2019-11-28 00:21:26,474 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 00:21:26,474 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2019-11-28 00:21:26,474 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2019-11-28 00:21:26,475 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2019-11-28 00:21:26,475 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2019-11-28 00:21:26,475 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2019-11-28 00:21:26,475 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2019-11-28 00:21:26,475 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> f3897e59b530ba955e2bc8f3ddb0621a99e3d436 [2019-11-28 00:21:26,785 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2019-11-28 00:21:26,802 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2019-11-28 00:21:26,806 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2019-11-28 00:21:26,807 INFO L271 PluginConnector]: Initializing CDTParser... [2019-11-28 00:21:26,808 INFO L275 PluginConnector]: CDTParser initialized [2019-11-28 00:21:26,809 INFO L428 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c [2019-11-28 00:21:26,876 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f0738870c/1f2457e261a74c278732532e0d18c4e6/FLAG1d1103868 [2019-11-28 00:21:27,453 INFO L306 CDTParser]: Found 1 translation units. [2019-11-28 00:21:27,454 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c [2019-11-28 00:21:27,482 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f0738870c/1f2457e261a74c278732532e0d18c4e6/FLAG1d1103868 [2019-11-28 00:21:27,791 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f0738870c/1f2457e261a74c278732532e0d18c4e6 [2019-11-28 00:21:27,795 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2019-11-28 00:21:27,797 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2019-11-28 00:21:27,798 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2019-11-28 00:21:27,798 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2019-11-28 00:21:27,802 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2019-11-28 00:21:27,803 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 12:21:27" (1/1) ... [2019-11-28 00:21:27,806 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@42e77c09 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:27, skipping insertion in model container [2019-11-28 00:21:27,807 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 12:21:27" (1/1) ... [2019-11-28 00:21:27,815 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2019-11-28 00:21:27,859 INFO L178 MainTranslator]: Built tables and reachable declarations [2019-11-28 00:21:28,259 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 00:21:28,270 INFO L203 MainTranslator]: Completed pre-run [2019-11-28 00:21:28,358 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 00:21:28,421 INFO L208 MainTranslator]: Completed translation [2019-11-28 00:21:28,422 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28 WrapperNode [2019-11-28 00:21:28,422 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2019-11-28 00:21:28,424 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2019-11-28 00:21:28,424 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2019-11-28 00:21:28,424 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2019-11-28 00:21:28,433 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,456 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,588 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2019-11-28 00:21:28,589 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2019-11-28 00:21:28,589 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2019-11-28 00:21:28,589 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2019-11-28 00:21:28,600 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,600 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,628 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,630 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,682 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,731 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,745 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... [2019-11-28 00:21:28,765 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2019-11-28 00:21:28,766 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2019-11-28 00:21:28,766 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2019-11-28 00:21:28,766 INFO L275 PluginConnector]: RCFGBuilder initialized [2019-11-28 00:21:28,768 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 00:21:28,842 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2019-11-28 00:21:28,843 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2019-11-28 00:21:28,843 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2019-11-28 00:21:28,843 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2019-11-28 00:21:30,736 INFO L292 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2019-11-28 00:21:30,737 INFO L297 CfgBuilder]: Removed 902 assume(true) statements. [2019-11-28 00:21:30,739 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 12:21:30 BoogieIcfgContainer [2019-11-28 00:21:30,739 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2019-11-28 00:21:30,740 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2019-11-28 00:21:30,741 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2019-11-28 00:21:30,746 INFO L275 PluginConnector]: TraceAbstraction initialized [2019-11-28 00:21:30,746 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.11 12:21:27" (1/3) ... [2019-11-28 00:21:30,747 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@dbc3967 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 12:21:30, skipping insertion in model container [2019-11-28 00:21:30,749 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 12:21:28" (2/3) ... [2019-11-28 00:21:30,750 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@dbc3967 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 12:21:30, skipping insertion in model container [2019-11-28 00:21:30,750 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 12:21:30" (3/3) ... [2019-11-28 00:21:30,755 INFO L109 eAbstractionObserver]: Analyzing ICFG minepump_spec2_productSimulator.cil.c [2019-11-28 00:21:30,766 INFO L156 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2019-11-28 00:21:30,776 INFO L168 ceAbstractionStarter]: Appying trace abstraction to program that has 3 error locations. [2019-11-28 00:21:30,790 INFO L249 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2019-11-28 00:21:30,823 INFO L373 AbstractCegarLoop]: Interprodecural is true [2019-11-28 00:21:30,823 INFO L374 AbstractCegarLoop]: Hoare is true [2019-11-28 00:21:30,824 INFO L375 AbstractCegarLoop]: Compute interpolants for FPandBP [2019-11-28 00:21:30,824 INFO L376 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2019-11-28 00:21:30,824 INFO L377 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2019-11-28 00:21:30,824 INFO L378 AbstractCegarLoop]: Difference is false [2019-11-28 00:21:30,824 INFO L379 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2019-11-28 00:21:30,825 INFO L383 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2019-11-28 00:21:30,856 INFO L276 IsEmpty]: Start isEmpty. Operand 474 states. [2019-11-28 00:21:30,865 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2019-11-28 00:21:30,866 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:30,867 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:30,868 INFO L410 AbstractCegarLoop]: === Iteration 1 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:30,875 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:30,875 INFO L82 PathProgramCache]: Analyzing trace with hash -434502313, now seen corresponding path program 1 times [2019-11-28 00:21:30,885 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:30,886 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [106621072] [2019-11-28 00:21:30,886 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:31,111 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:31,261 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:31,262 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [106621072] [2019-11-28 00:21:31,263 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:31,263 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 00:21:31,264 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1902535464] [2019-11-28 00:21:31,270 INFO L442 AbstractCegarLoop]: Interpolant automaton has 2 states [2019-11-28 00:21:31,270 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:31,285 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2019-11-28 00:21:31,286 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 00:21:31,288 INFO L87 Difference]: Start difference. First operand 474 states. Second operand 2 states. [2019-11-28 00:21:31,361 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:31,364 INFO L93 Difference]: Finished difference Result 934 states and 1467 transitions. [2019-11-28 00:21:31,364 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2019-11-28 00:21:31,365 INFO L78 Accepts]: Start accepts. Automaton has 2 states. Word has length 25 [2019-11-28 00:21:31,366 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:31,393 INFO L225 Difference]: With dead ends: 934 [2019-11-28 00:21:31,393 INFO L226 Difference]: Without dead ends: 470 [2019-11-28 00:21:31,399 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 00:21:31,421 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 470 states. [2019-11-28 00:21:31,475 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 470 to 470. [2019-11-28 00:21:31,477 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 470 states. [2019-11-28 00:21:31,479 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 470 states to 470 states and 729 transitions. [2019-11-28 00:21:31,482 INFO L78 Accepts]: Start accepts. Automaton has 470 states and 729 transitions. Word has length 25 [2019-11-28 00:21:31,483 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:31,483 INFO L462 AbstractCegarLoop]: Abstraction has 470 states and 729 transitions. [2019-11-28 00:21:31,483 INFO L463 AbstractCegarLoop]: Interpolant automaton has 2 states. [2019-11-28 00:21:31,484 INFO L276 IsEmpty]: Start isEmpty. Operand 470 states and 729 transitions. [2019-11-28 00:21:31,486 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2019-11-28 00:21:31,486 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:31,486 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:31,487 INFO L410 AbstractCegarLoop]: === Iteration 2 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:31,487 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:31,487 INFO L82 PathProgramCache]: Analyzing trace with hash 10066668, now seen corresponding path program 1 times [2019-11-28 00:21:31,487 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:31,488 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1994597340] [2019-11-28 00:21:31,488 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:31,524 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:31,600 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:31,602 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1994597340] [2019-11-28 00:21:31,602 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:31,602 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 00:21:31,602 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1540018956] [2019-11-28 00:21:31,605 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:21:31,605 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:31,606 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:21:31,606 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:31,606 INFO L87 Difference]: Start difference. First operand 470 states and 729 transitions. Second operand 3 states. [2019-11-28 00:21:31,645 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:31,647 INFO L93 Difference]: Finished difference Result 470 states and 729 transitions. [2019-11-28 00:21:31,648 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:21:31,649 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 26 [2019-11-28 00:21:31,649 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:31,651 INFO L225 Difference]: With dead ends: 470 [2019-11-28 00:21:31,653 INFO L226 Difference]: Without dead ends: 174 [2019-11-28 00:21:31,654 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:31,656 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 174 states. [2019-11-28 00:21:31,676 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 174 to 174. [2019-11-28 00:21:31,677 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 174 states. [2019-11-28 00:21:31,681 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 174 states to 174 states and 266 transitions. [2019-11-28 00:21:31,681 INFO L78 Accepts]: Start accepts. Automaton has 174 states and 266 transitions. Word has length 26 [2019-11-28 00:21:31,682 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:31,682 INFO L462 AbstractCegarLoop]: Abstraction has 174 states and 266 transitions. [2019-11-28 00:21:31,682 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:21:31,683 INFO L276 IsEmpty]: Start isEmpty. Operand 174 states and 266 transitions. [2019-11-28 00:21:31,684 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2019-11-28 00:21:31,685 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:31,685 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:31,686 INFO L410 AbstractCegarLoop]: === Iteration 3 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:31,686 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:31,686 INFO L82 PathProgramCache]: Analyzing trace with hash 2146837231, now seen corresponding path program 1 times [2019-11-28 00:21:31,687 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:31,687 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [887915013] [2019-11-28 00:21:31,687 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:31,745 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:31,811 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:31,812 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [887915013] [2019-11-28 00:21:31,812 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:31,812 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2019-11-28 00:21:31,813 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1206094158] [2019-11-28 00:21:31,813 INFO L442 AbstractCegarLoop]: Interpolant automaton has 7 states [2019-11-28 00:21:31,813 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:31,813 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2019-11-28 00:21:31,814 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2019-11-28 00:21:31,814 INFO L87 Difference]: Start difference. First operand 174 states and 266 transitions. Second operand 7 states. [2019-11-28 00:21:32,025 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:32,025 INFO L93 Difference]: Finished difference Result 680 states and 1062 transitions. [2019-11-28 00:21:32,026 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2019-11-28 00:21:32,026 INFO L78 Accepts]: Start accepts. Automaton has 7 states. Word has length 32 [2019-11-28 00:21:32,027 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:32,030 INFO L225 Difference]: With dead ends: 680 [2019-11-28 00:21:32,030 INFO L226 Difference]: Without dead ends: 520 [2019-11-28 00:21:32,031 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2019-11-28 00:21:32,033 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 520 states. [2019-11-28 00:21:32,053 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 520 to 196. [2019-11-28 00:21:32,054 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 196 states. [2019-11-28 00:21:32,055 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 196 states to 196 states and 301 transitions. [2019-11-28 00:21:32,056 INFO L78 Accepts]: Start accepts. Automaton has 196 states and 301 transitions. Word has length 32 [2019-11-28 00:21:32,056 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:32,056 INFO L462 AbstractCegarLoop]: Abstraction has 196 states and 301 transitions. [2019-11-28 00:21:32,057 INFO L463 AbstractCegarLoop]: Interpolant automaton has 7 states. [2019-11-28 00:21:32,058 INFO L276 IsEmpty]: Start isEmpty. Operand 196 states and 301 transitions. [2019-11-28 00:21:32,060 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2019-11-28 00:21:32,061 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:32,061 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:32,061 INFO L410 AbstractCegarLoop]: === Iteration 4 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:32,062 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:32,062 INFO L82 PathProgramCache]: Analyzing trace with hash 1270376866, now seen corresponding path program 1 times [2019-11-28 00:21:32,062 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:32,063 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1502620881] [2019-11-28 00:21:32,063 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:32,106 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:32,190 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:32,191 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1502620881] [2019-11-28 00:21:32,191 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:32,191 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 00:21:32,192 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1389639715] [2019-11-28 00:21:32,193 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 00:21:32,194 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:32,194 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 00:21:32,194 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:21:32,195 INFO L87 Difference]: Start difference. First operand 196 states and 301 transitions. Second operand 5 states. [2019-11-28 00:21:32,621 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:32,621 INFO L93 Difference]: Finished difference Result 1065 states and 1693 transitions. [2019-11-28 00:21:32,621 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2019-11-28 00:21:32,621 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 35 [2019-11-28 00:21:32,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:32,629 INFO L225 Difference]: With dead ends: 1065 [2019-11-28 00:21:32,630 INFO L226 Difference]: Without dead ends: 883 [2019-11-28 00:21:32,631 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 00:21:32,633 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 883 states. [2019-11-28 00:21:32,670 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 883 to 370. [2019-11-28 00:21:32,670 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 370 states. [2019-11-28 00:21:32,671 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 370 states to 370 states and 573 transitions. [2019-11-28 00:21:32,672 INFO L78 Accepts]: Start accepts. Automaton has 370 states and 573 transitions. Word has length 35 [2019-11-28 00:21:32,672 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:32,672 INFO L462 AbstractCegarLoop]: Abstraction has 370 states and 573 transitions. [2019-11-28 00:21:32,672 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 00:21:32,674 INFO L276 IsEmpty]: Start isEmpty. Operand 370 states and 573 transitions. [2019-11-28 00:21:32,683 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2019-11-28 00:21:32,683 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:32,683 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:32,683 INFO L410 AbstractCegarLoop]: === Iteration 5 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:32,684 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:32,684 INFO L82 PathProgramCache]: Analyzing trace with hash 1380973999, now seen corresponding path program 1 times [2019-11-28 00:21:32,684 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:32,684 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1469823889] [2019-11-28 00:21:32,684 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:32,733 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:32,787 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:32,787 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1469823889] [2019-11-28 00:21:32,787 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:32,788 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 00:21:32,788 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1622008615] [2019-11-28 00:21:32,788 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 00:21:32,789 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:32,789 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 00:21:32,790 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:21:32,790 INFO L87 Difference]: Start difference. First operand 370 states and 573 transitions. Second operand 5 states. [2019-11-28 00:21:33,158 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:33,158 INFO L93 Difference]: Finished difference Result 1551 states and 2453 transitions. [2019-11-28 00:21:33,159 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2019-11-28 00:21:33,159 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 36 [2019-11-28 00:21:33,159 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:33,167 INFO L225 Difference]: With dead ends: 1551 [2019-11-28 00:21:33,169 INFO L226 Difference]: Without dead ends: 1195 [2019-11-28 00:21:33,170 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 00:21:33,172 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1195 states. [2019-11-28 00:21:33,217 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1195 to 385. [2019-11-28 00:21:33,217 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 385 states. [2019-11-28 00:21:33,219 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 385 states to 385 states and 576 transitions. [2019-11-28 00:21:33,219 INFO L78 Accepts]: Start accepts. Automaton has 385 states and 576 transitions. Word has length 36 [2019-11-28 00:21:33,221 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:33,221 INFO L462 AbstractCegarLoop]: Abstraction has 385 states and 576 transitions. [2019-11-28 00:21:33,222 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 00:21:33,222 INFO L276 IsEmpty]: Start isEmpty. Operand 385 states and 576 transitions. [2019-11-28 00:21:33,223 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2019-11-28 00:21:33,223 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:33,223 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:33,223 INFO L410 AbstractCegarLoop]: === Iteration 6 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:33,223 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:33,224 INFO L82 PathProgramCache]: Analyzing trace with hash 1093992796, now seen corresponding path program 1 times [2019-11-28 00:21:33,224 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:33,224 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [200658602] [2019-11-28 00:21:33,224 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:33,262 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:33,304 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:33,305 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [200658602] [2019-11-28 00:21:33,305 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:33,305 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2019-11-28 00:21:33,305 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1771408195] [2019-11-28 00:21:33,306 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 00:21:33,306 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:33,306 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 00:21:33,307 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:21:33,307 INFO L87 Difference]: Start difference. First operand 385 states and 576 transitions. Second operand 5 states. [2019-11-28 00:21:33,535 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:33,535 INFO L93 Difference]: Finished difference Result 1012 states and 1506 transitions. [2019-11-28 00:21:33,536 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2019-11-28 00:21:33,536 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 44 [2019-11-28 00:21:33,536 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:33,540 INFO L225 Difference]: With dead ends: 1012 [2019-11-28 00:21:33,540 INFO L226 Difference]: Without dead ends: 641 [2019-11-28 00:21:33,541 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2019-11-28 00:21:33,542 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 641 states. [2019-11-28 00:21:33,578 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 641 to 433. [2019-11-28 00:21:33,578 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 433 states. [2019-11-28 00:21:33,580 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 433 states to 433 states and 624 transitions. [2019-11-28 00:21:33,580 INFO L78 Accepts]: Start accepts. Automaton has 433 states and 624 transitions. Word has length 44 [2019-11-28 00:21:33,581 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:33,581 INFO L462 AbstractCegarLoop]: Abstraction has 433 states and 624 transitions. [2019-11-28 00:21:33,581 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 00:21:33,581 INFO L276 IsEmpty]: Start isEmpty. Operand 433 states and 624 transitions. [2019-11-28 00:21:33,582 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2019-11-28 00:21:33,582 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:33,582 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:33,583 INFO L410 AbstractCegarLoop]: === Iteration 7 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:33,583 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:33,583 INFO L82 PathProgramCache]: Analyzing trace with hash 1352158234, now seen corresponding path program 1 times [2019-11-28 00:21:33,584 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:33,584 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [13327208] [2019-11-28 00:21:33,584 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:33,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:33,648 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:33,649 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [13327208] [2019-11-28 00:21:33,649 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:33,649 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 00:21:33,649 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1813427317] [2019-11-28 00:21:33,655 INFO L442 AbstractCegarLoop]: Interpolant automaton has 4 states [2019-11-28 00:21:33,655 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:33,656 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2019-11-28 00:21:33,656 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2019-11-28 00:21:33,656 INFO L87 Difference]: Start difference. First operand 433 states and 624 transitions. Second operand 4 states. [2019-11-28 00:21:33,871 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:33,872 INFO L93 Difference]: Finished difference Result 1040 states and 1486 transitions. [2019-11-28 00:21:33,872 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2019-11-28 00:21:33,872 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 44 [2019-11-28 00:21:33,873 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:33,876 INFO L225 Difference]: With dead ends: 1040 [2019-11-28 00:21:33,876 INFO L226 Difference]: Without dead ends: 621 [2019-11-28 00:21:33,877 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2019-11-28 00:21:33,878 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 621 states. [2019-11-28 00:21:33,922 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 621 to 465. [2019-11-28 00:21:33,922 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 465 states. [2019-11-28 00:21:33,924 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 465 states to 465 states and 656 transitions. [2019-11-28 00:21:33,925 INFO L78 Accepts]: Start accepts. Automaton has 465 states and 656 transitions. Word has length 44 [2019-11-28 00:21:33,926 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:33,926 INFO L462 AbstractCegarLoop]: Abstraction has 465 states and 656 transitions. [2019-11-28 00:21:33,927 INFO L463 AbstractCegarLoop]: Interpolant automaton has 4 states. [2019-11-28 00:21:33,927 INFO L276 IsEmpty]: Start isEmpty. Operand 465 states and 656 transitions. [2019-11-28 00:21:33,929 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2019-11-28 00:21:33,929 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:33,930 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:33,930 INFO L410 AbstractCegarLoop]: === Iteration 8 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:33,930 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:33,931 INFO L82 PathProgramCache]: Analyzing trace with hash 341040984, now seen corresponding path program 1 times [2019-11-28 00:21:33,931 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:33,932 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [159577750] [2019-11-28 00:21:33,932 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:33,958 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:34,018 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:34,019 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [159577750] [2019-11-28 00:21:34,020 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:34,020 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 00:21:34,021 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [480325168] [2019-11-28 00:21:34,021 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:21:34,021 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:34,021 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:21:34,023 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:34,023 INFO L87 Difference]: Start difference. First operand 465 states and 656 transitions. Second operand 3 states. [2019-11-28 00:21:34,125 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:34,125 INFO L93 Difference]: Finished difference Result 1072 states and 1510 transitions. [2019-11-28 00:21:34,126 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:21:34,126 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 44 [2019-11-28 00:21:34,126 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:34,132 INFO L225 Difference]: With dead ends: 1072 [2019-11-28 00:21:34,132 INFO L226 Difference]: Without dead ends: 621 [2019-11-28 00:21:34,133 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:34,134 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 621 states. [2019-11-28 00:21:34,182 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 621 to 621. [2019-11-28 00:21:34,183 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 621 states. [2019-11-28 00:21:34,185 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 621 states to 621 states and 856 transitions. [2019-11-28 00:21:34,185 INFO L78 Accepts]: Start accepts. Automaton has 621 states and 856 transitions. Word has length 44 [2019-11-28 00:21:34,185 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:34,186 INFO L462 AbstractCegarLoop]: Abstraction has 621 states and 856 transitions. [2019-11-28 00:21:34,186 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:21:34,186 INFO L276 IsEmpty]: Start isEmpty. Operand 621 states and 856 transitions. [2019-11-28 00:21:34,187 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2019-11-28 00:21:34,187 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:34,187 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:34,187 INFO L410 AbstractCegarLoop]: === Iteration 9 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:34,188 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:34,188 INFO L82 PathProgramCache]: Analyzing trace with hash 772865075, now seen corresponding path program 1 times [2019-11-28 00:21:34,188 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:34,189 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1280352354] [2019-11-28 00:21:34,189 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:34,205 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:34,243 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:34,243 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1280352354] [2019-11-28 00:21:34,243 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:34,244 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 00:21:34,244 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1498184784] [2019-11-28 00:21:34,244 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:21:34,244 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:34,246 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:21:34,246 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:34,246 INFO L87 Difference]: Start difference. First operand 621 states and 856 transitions. Second operand 3 states. [2019-11-28 00:21:34,350 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:34,351 INFO L93 Difference]: Finished difference Result 1008 states and 1401 transitions. [2019-11-28 00:21:34,351 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:21:34,351 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 45 [2019-11-28 00:21:34,353 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:34,358 INFO L225 Difference]: With dead ends: 1008 [2019-11-28 00:21:34,358 INFO L226 Difference]: Without dead ends: 1006 [2019-11-28 00:21:34,359 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:34,360 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1006 states. [2019-11-28 00:21:34,432 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1006 to 771. [2019-11-28 00:21:34,432 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 771 states. [2019-11-28 00:21:34,435 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 771 states to 771 states and 1087 transitions. [2019-11-28 00:21:34,436 INFO L78 Accepts]: Start accepts. Automaton has 771 states and 1087 transitions. Word has length 45 [2019-11-28 00:21:34,437 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:34,438 INFO L462 AbstractCegarLoop]: Abstraction has 771 states and 1087 transitions. [2019-11-28 00:21:34,438 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:21:34,438 INFO L276 IsEmpty]: Start isEmpty. Operand 771 states and 1087 transitions. [2019-11-28 00:21:34,440 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2019-11-28 00:21:34,440 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:34,440 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:34,441 INFO L410 AbstractCegarLoop]: === Iteration 10 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:34,441 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:34,441 INFO L82 PathProgramCache]: Analyzing trace with hash 883644073, now seen corresponding path program 1 times [2019-11-28 00:21:34,441 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:34,442 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [39645983] [2019-11-28 00:21:34,442 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:34,471 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:34,520 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 20 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:34,520 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [39645983] [2019-11-28 00:21:34,521 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:34,521 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 00:21:34,521 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2076838664] [2019-11-28 00:21:34,522 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:21:34,522 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:34,522 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:21:34,522 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:34,523 INFO L87 Difference]: Start difference. First operand 771 states and 1087 transitions. Second operand 3 states. [2019-11-28 00:21:34,696 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:34,697 INFO L93 Difference]: Finished difference Result 1623 states and 2315 transitions. [2019-11-28 00:21:34,697 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:21:34,698 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 66 [2019-11-28 00:21:34,698 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:34,703 INFO L225 Difference]: With dead ends: 1623 [2019-11-28 00:21:34,703 INFO L226 Difference]: Without dead ends: 1022 [2019-11-28 00:21:34,704 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:34,706 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1022 states. [2019-11-28 00:21:34,818 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1022 to 1020. [2019-11-28 00:21:34,819 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1020 states. [2019-11-28 00:21:34,822 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1020 states to 1020 states and 1419 transitions. [2019-11-28 00:21:34,823 INFO L78 Accepts]: Start accepts. Automaton has 1020 states and 1419 transitions. Word has length 66 [2019-11-28 00:21:34,823 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:34,823 INFO L462 AbstractCegarLoop]: Abstraction has 1020 states and 1419 transitions. [2019-11-28 00:21:34,823 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:21:34,824 INFO L276 IsEmpty]: Start isEmpty. Operand 1020 states and 1419 transitions. [2019-11-28 00:21:34,826 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2019-11-28 00:21:34,826 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:34,826 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:34,827 INFO L410 AbstractCegarLoop]: === Iteration 11 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:34,827 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:34,827 INFO L82 PathProgramCache]: Analyzing trace with hash 625478635, now seen corresponding path program 1 times [2019-11-28 00:21:34,829 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:34,829 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [903083942] [2019-11-28 00:21:34,829 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:34,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 00:21:34,880 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 20 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 00:21:34,880 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [903083942] [2019-11-28 00:21:34,880 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 00:21:34,881 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 00:21:34,881 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1760104389] [2019-11-28 00:21:34,881 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 00:21:34,881 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 00:21:34,882 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 00:21:34,882 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:34,882 INFO L87 Difference]: Start difference. First operand 1020 states and 1419 transitions. Second operand 3 states. [2019-11-28 00:21:35,022 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 00:21:35,022 INFO L93 Difference]: Finished difference Result 2326 states and 3260 transitions. [2019-11-28 00:21:35,022 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 00:21:35,022 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 66 [2019-11-28 00:21:35,023 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 00:21:35,029 INFO L225 Difference]: With dead ends: 2326 [2019-11-28 00:21:35,029 INFO L226 Difference]: Without dead ends: 1320 [2019-11-28 00:21:35,031 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 00:21:35,033 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1320 states. [2019-11-28 00:21:35,117 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1320 to 1320. [2019-11-28 00:21:35,117 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1320 states. [2019-11-28 00:21:35,124 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1320 states to 1320 states and 1808 transitions. [2019-11-28 00:21:35,124 INFO L78 Accepts]: Start accepts. Automaton has 1320 states and 1808 transitions. Word has length 66 [2019-11-28 00:21:35,124 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 00:21:35,125 INFO L462 AbstractCegarLoop]: Abstraction has 1320 states and 1808 transitions. [2019-11-28 00:21:35,125 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 00:21:35,125 INFO L276 IsEmpty]: Start isEmpty. Operand 1320 states and 1808 transitions. [2019-11-28 00:21:35,129 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2019-11-28 00:21:35,129 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 00:21:35,130 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 00:21:35,130 INFO L410 AbstractCegarLoop]: === Iteration 12 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 00:21:35,131 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 00:21:35,131 INFO L82 PathProgramCache]: Analyzing trace with hash -1336211215, now seen corresponding path program 1 times [2019-11-28 00:21:35,132 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 00:21:35,134 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1243883881] [2019-11-28 00:21:35,134 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 00:21:35,260 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2019-11-28 00:21:35,370 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2019-11-28 00:21:35,487 INFO L174 FreeRefinementEngine]: Strategy CAMEL found a feasible trace [2019-11-28 00:21:35,488 INFO L475 BasicCegarLoop]: Counterexample might be feasible [2019-11-28 00:21:35,675 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.11 12:21:35 BoogieIcfgContainer [2019-11-28 00:21:35,675 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2019-11-28 00:21:35,676 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2019-11-28 00:21:35,676 INFO L271 PluginConnector]: Initializing Witness Printer... [2019-11-28 00:21:35,676 INFO L275 PluginConnector]: Witness Printer initialized [2019-11-28 00:21:35,677 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 12:21:30" (3/4) ... [2019-11-28 00:21:35,680 INFO L131 WitnessPrinter]: Generating witness for reachability counterexample [2019-11-28 00:21:35,915 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2019-11-28 00:21:35,915 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2019-11-28 00:21:35,918 INFO L168 Benchmark]: Toolchain (without parser) took 8120.80 ms. Allocated memory was 1.0 GB in the beginning and 1.3 GB in the end (delta: 290.5 MB). Free memory was 957.7 MB in the beginning and 1.1 GB in the end (delta: -100.8 MB). Peak memory consumption was 189.7 MB. Max. memory is 11.5 GB. [2019-11-28 00:21:35,918 INFO L168 Benchmark]: CDTParser took 0.20 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-28 00:21:35,918 INFO L168 Benchmark]: CACSL2BoogieTranslator took 625.15 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 102.8 MB). Free memory was 957.7 MB in the beginning and 1.1 GB in the end (delta: -112.4 MB). Peak memory consumption was 27.1 MB. Max. memory is 11.5 GB. [2019-11-28 00:21:35,919 INFO L168 Benchmark]: Boogie Procedure Inliner took 164.79 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 13.6 MB). Peak memory consumption was 13.6 MB. Max. memory is 11.5 GB. [2019-11-28 00:21:35,919 INFO L168 Benchmark]: Boogie Preprocessor took 177.05 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 6.8 MB). Peak memory consumption was 6.8 MB. Max. memory is 11.5 GB. [2019-11-28 00:21:35,919 INFO L168 Benchmark]: RCFGBuilder took 1973.45 ms. Allocated memory is still 1.1 GB. Free memory was 1.0 GB in the beginning and 894.4 MB in the end (delta: 155.3 MB). Peak memory consumption was 155.3 MB. Max. memory is 11.5 GB. [2019-11-28 00:21:35,920 INFO L168 Benchmark]: TraceAbstraction took 4935.04 ms. Allocated memory was 1.1 GB in the beginning and 1.3 GB in the end (delta: 187.7 MB). Free memory was 894.4 MB in the beginning and 1.1 GB in the end (delta: -202.5 MB). There was no memory consumed. Max. memory is 11.5 GB. [2019-11-28 00:21:35,920 INFO L168 Benchmark]: Witness Printer took 239.55 ms. Allocated memory is still 1.3 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 38.4 MB). Peak memory consumption was 38.4 MB. Max. memory is 11.5 GB. [2019-11-28 00:21:35,922 INFO L335 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.20 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. * CACSL2BoogieTranslator took 625.15 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 102.8 MB). Free memory was 957.7 MB in the beginning and 1.1 GB in the end (delta: -112.4 MB). Peak memory consumption was 27.1 MB. Max. memory is 11.5 GB. * Boogie Procedure Inliner took 164.79 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 13.6 MB). Peak memory consumption was 13.6 MB. Max. memory is 11.5 GB. * Boogie Preprocessor took 177.05 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 6.8 MB). Peak memory consumption was 6.8 MB. Max. memory is 11.5 GB. * RCFGBuilder took 1973.45 ms. Allocated memory is still 1.1 GB. Free memory was 1.0 GB in the beginning and 894.4 MB in the end (delta: 155.3 MB). Peak memory consumption was 155.3 MB. Max. memory is 11.5 GB. * TraceAbstraction took 4935.04 ms. Allocated memory was 1.1 GB in the beginning and 1.3 GB in the end (delta: 187.7 MB). Free memory was 894.4 MB in the beginning and 1.1 GB in the end (delta: -202.5 MB). There was no memory consumed. Max. memory is 11.5 GB. * Witness Printer took 239.55 ms. Allocated memory is still 1.3 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 38.4 MB). Peak memory consumption was 38.4 MB. Max. memory is 11.5 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - CounterExampleResult [Line: 1087]: a call of __VERIFIER_error() is reachable a call of __VERIFIER_error() is reachable We found a FailurePath: [L40] int __SELECTED_FEATURE_base ; [L41] int __SELECTED_FEATURE_highWaterSensor ; [L42] int __SELECTED_FEATURE_lowWaterSensor ; [L43] int __SELECTED_FEATURE_methaneQuery ; [L44] int __SELECTED_FEATURE_methaneAlarm ; [L45] int __SELECTED_FEATURE_stopCommand ; [L46] int __SELECTED_FEATURE_startCommand ; [L47] int __GUIDSL_ROOT_PRODUCTION ; [L56] int waterLevel = 1; [L57] int methaneLevelCritical = 0; [L166] int pumpRunning = 0; [L167] int systemActive = 1; [L498] int cleanupTimeShifts = 4; [L678] int methAndRunningLastTime ; [L886] static struct __ACC__ERR *head = (struct __ACC__ERR *)0; VAL [__GUIDSL_ROOT_PRODUCTION=0, __SELECTED_FEATURE_base=0, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L577] int retValue_acc ; [L578] int tmp ; [L1123] __GUIDSL_ROOT_PRODUCTION = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=0, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1108] __SELECTED_FEATURE_base = 1 [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1109] __SELECTED_FEATURE_highWaterSensor = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1110] __SELECTED_FEATURE_lowWaterSensor = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1111] __SELECTED_FEATURE_methaneQuery = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1112] __SELECTED_FEATURE_methaneAlarm = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1113] __SELECTED_FEATURE_stopCommand = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1114] __SELECTED_FEATURE_startCommand = select_one() [L1128] int retValue_acc ; [L1131] retValue_acc = __SELECTED_FEATURE_base [L1132] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L584] tmp = valid_product() [L586] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L683] methAndRunningLastTime = 0 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L601] int splverifierCounter ; [L602] int tmp ; [L603] int tmp___0 ; [L604] int tmp___1 ; [L605] int tmp___2 ; [L608] splverifierCounter = 0 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L610] COND TRUE 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L612] COND TRUE splverifierCounter < 4 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L618] tmp = __VERIFIER_nondet_int() [L620] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L74] COND TRUE waterLevel < 2 [L75] waterLevel = waterLevel + 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L628] tmp___0 = __VERIFIER_nondet_int() [L630] COND TRUE \read(tmp___0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L86] COND FALSE !(\read(methaneLevelCritical)) [L89] methaneLevelCritical = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L638] tmp___2 = __VERIFIER_nondet_int() [L640] COND FALSE !(\read(tmp___2)) [L650] tmp___1 = __VERIFIER_nondet_int() [L652] COND FALSE !(\read(tmp___1)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L174] COND FALSE !(\read(pumpRunning)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L181] COND TRUE \read(systemActive) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L317] COND FALSE !(\read(__SELECTED_FEATURE_methaneAlarm)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L274] COND FALSE !(\read(__SELECTED_FEATURE_lowWaterSensor)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L231] COND TRUE \read(__SELECTED_FEATURE_highWaterSensor) [L203] int tmp ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L206] COND TRUE ! pumpRunning [L437] int retValue_acc ; [L438] int tmp ; [L439] int tmp___0 ; [L136] int retValue_acc ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L139] COND FALSE !(waterLevel < 2) [L143] retValue_acc = 0 [L144] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L443] tmp = isHighWaterSensorDry() [L445] COND FALSE !(\read(tmp)) [L448] tmp___0 = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L450] retValue_acc = tmp___0 [L451] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L208] tmp = isHighWaterLevel() [L210] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L359] COND FALSE !(\read(__SELECTED_FEATURE_methaneQuery)) [L334] pumpRunning = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L688] int tmp ; [L689] int tmp___0 ; [L95] int retValue_acc ; [L98] retValue_acc = methaneLevelCritical [L99] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L693] tmp = isMethaneLevelCritical() [L695] COND TRUE \read(tmp) [L392] int retValue_acc ; [L395] retValue_acc = pumpRunning [L396] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L697] tmp___0 = isPumpRunning() [L699] COND TRUE \read(tmp___0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L700] COND FALSE !(\read(methAndRunningLastTime)) [L705] methAndRunningLastTime = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L610] COND TRUE 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L612] COND TRUE splverifierCounter < 4 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L618] tmp = __VERIFIER_nondet_int() [L620] COND FALSE !(\read(tmp)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L628] tmp___0 = __VERIFIER_nondet_int() [L630] COND FALSE !(\read(tmp___0)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L638] tmp___2 = __VERIFIER_nondet_int() [L640] COND FALSE !(\read(tmp___2)) [L650] tmp___1 = __VERIFIER_nondet_int() [L652] COND FALSE !(\read(tmp___1)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L174] COND TRUE \read(pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L62] COND TRUE waterLevel > 0 [L63] waterLevel = waterLevel - 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L181] COND TRUE \read(systemActive) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L317] COND FALSE !(\read(__SELECTED_FEATURE_methaneAlarm)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L274] COND FALSE !(\read(__SELECTED_FEATURE_lowWaterSensor)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L231] COND TRUE \read(__SELECTED_FEATURE_highWaterSensor) [L203] int tmp ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L206] COND FALSE !(! pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L688] int tmp ; [L689] int tmp___0 ; [L95] int retValue_acc ; [L98] retValue_acc = methaneLevelCritical [L99] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L693] tmp = isMethaneLevelCritical() [L695] COND TRUE \read(tmp) [L392] int retValue_acc ; [L395] retValue_acc = pumpRunning [L396] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L697] tmp___0 = isPumpRunning() [L699] COND TRUE \read(tmp___0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L700] COND TRUE \read(methAndRunningLastTime) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L1087] __VERIFIER_error() VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 474 locations, 3 error locations. Result: UNSAFE, OverallTime: 4.6s, OverallIterations: 12, TraceHistogramMax: 2, AutomataDifference: 2.2s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, HoareTripleCheckerStatistics: 3862 SDtfs, 5018 SDslu, 5943 SDs, 0 SdLazy, 575 SolverSat, 151 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.8s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 56 GetRequests, 21 SyntacticMatches, 0 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1320occurred in iteration=11, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 11 MinimizatonAttempts, 2248 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 0.6s InterpolantComputationTime, 530 NumberOfCodeBlocks, 530 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 452 ConstructedInterpolants, 0 QuantifiedInterpolants, 41200 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 11 InterpolantComputations, 11 PerfectInterpolantSequences, 40/40 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be incorrect! Received shutdown request...