./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version f470102c Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx12G -Xms1G -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash ef0694c6828fdd41a19c9b426d075f4f4dde925f ..................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.1.25-f470102 [2019-11-28 17:24:27,954 INFO L177 SettingsManager]: Resetting all preferences to default values... [2019-11-28 17:24:27,956 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2019-11-28 17:24:27,974 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2019-11-28 17:24:27,975 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2019-11-28 17:24:27,976 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2019-11-28 17:24:27,978 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2019-11-28 17:24:27,987 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2019-11-28 17:24:27,992 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2019-11-28 17:24:27,995 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2019-11-28 17:24:27,996 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2019-11-28 17:24:27,998 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2019-11-28 17:24:27,998 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2019-11-28 17:24:28,001 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2019-11-28 17:24:28,003 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2019-11-28 17:24:28,004 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2019-11-28 17:24:28,005 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2019-11-28 17:24:28,006 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2019-11-28 17:24:28,009 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2019-11-28 17:24:28,013 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2019-11-28 17:24:28,017 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2019-11-28 17:24:28,022 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2019-11-28 17:24:28,023 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2019-11-28 17:24:28,025 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2019-11-28 17:24:28,029 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2019-11-28 17:24:28,029 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2019-11-28 17:24:28,030 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2019-11-28 17:24:28,031 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2019-11-28 17:24:28,032 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2019-11-28 17:24:28,033 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2019-11-28 17:24:28,033 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2019-11-28 17:24:28,034 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2019-11-28 17:24:28,035 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2019-11-28 17:24:28,036 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2019-11-28 17:24:28,037 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2019-11-28 17:24:28,037 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2019-11-28 17:24:28,038 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2019-11-28 17:24:28,039 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2019-11-28 17:24:28,039 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2019-11-28 17:24:28,040 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2019-11-28 17:24:28,041 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2019-11-28 17:24:28,042 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2019-11-28 17:24:28,080 INFO L113 SettingsManager]: Loading preferences was successful [2019-11-28 17:24:28,082 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2019-11-28 17:24:28,083 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2019-11-28 17:24:28,085 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2019-11-28 17:24:28,085 INFO L138 SettingsManager]: * Use SBE=true [2019-11-28 17:24:28,085 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2019-11-28 17:24:28,087 INFO L138 SettingsManager]: * sizeof long=4 [2019-11-28 17:24:28,087 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2019-11-28 17:24:28,087 INFO L138 SettingsManager]: * sizeof POINTER=4 [2019-11-28 17:24:28,087 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2019-11-28 17:24:28,088 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2019-11-28 17:24:28,090 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2019-11-28 17:24:28,090 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2019-11-28 17:24:28,090 INFO L138 SettingsManager]: * sizeof long double=12 [2019-11-28 17:24:28,090 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2019-11-28 17:24:28,091 INFO L138 SettingsManager]: * Use constant arrays=true [2019-11-28 17:24:28,091 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2019-11-28 17:24:28,091 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2019-11-28 17:24:28,092 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2019-11-28 17:24:28,092 INFO L138 SettingsManager]: * To the following directory=./dump/ [2019-11-28 17:24:28,092 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2019-11-28 17:24:28,093 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 17:24:28,093 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2019-11-28 17:24:28,094 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2019-11-28 17:24:28,094 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2019-11-28 17:24:28,094 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2019-11-28 17:24:28,094 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2019-11-28 17:24:28,095 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2019-11-28 17:24:28,096 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2019-11-28 17:24:28,096 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> ef0694c6828fdd41a19c9b426d075f4f4dde925f [2019-11-28 17:24:28,414 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2019-11-28 17:24:28,426 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2019-11-28 17:24:28,430 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2019-11-28 17:24:28,431 INFO L271 PluginConnector]: Initializing CDTParser... [2019-11-28 17:24:28,432 INFO L275 PluginConnector]: CDTParser initialized [2019-11-28 17:24:28,432 INFO L428 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c [2019-11-28 17:24:28,507 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f9796ce7b/36fe00b80a7d42cc92e2ea92da2d795c/FLAG66486263f [2019-11-28 17:24:29,038 INFO L306 CDTParser]: Found 1 translation units. [2019-11-28 17:24:29,039 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product47.cil.c [2019-11-28 17:24:29,051 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f9796ce7b/36fe00b80a7d42cc92e2ea92da2d795c/FLAG66486263f [2019-11-28 17:24:29,393 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/f9796ce7b/36fe00b80a7d42cc92e2ea92da2d795c [2019-11-28 17:24:29,397 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2019-11-28 17:24:29,398 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2019-11-28 17:24:29,399 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2019-11-28 17:24:29,399 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2019-11-28 17:24:29,403 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2019-11-28 17:24:29,404 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 05:24:29" (1/1) ... [2019-11-28 17:24:29,407 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@760d99d6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:29, skipping insertion in model container [2019-11-28 17:24:29,407 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 05:24:29" (1/1) ... [2019-11-28 17:24:29,415 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2019-11-28 17:24:29,473 INFO L178 MainTranslator]: Built tables and reachable declarations [2019-11-28 17:24:30,055 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 17:24:30,074 INFO L203 MainTranslator]: Completed pre-run [2019-11-28 17:24:30,195 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 17:24:30,235 INFO L208 MainTranslator]: Completed translation [2019-11-28 17:24:30,235 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30 WrapperNode [2019-11-28 17:24:30,236 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2019-11-28 17:24:30,237 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2019-11-28 17:24:30,237 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2019-11-28 17:24:30,237 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2019-11-28 17:24:30,246 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,288 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,340 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2019-11-28 17:24:30,341 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2019-11-28 17:24:30,341 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2019-11-28 17:24:30,341 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2019-11-28 17:24:30,352 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,353 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,359 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,360 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,376 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,387 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,391 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... [2019-11-28 17:24:30,397 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2019-11-28 17:24:30,398 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2019-11-28 17:24:30,398 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2019-11-28 17:24:30,398 INFO L275 PluginConnector]: RCFGBuilder initialized [2019-11-28 17:24:30,399 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 17:24:30,481 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2019-11-28 17:24:30,482 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2019-11-28 17:24:30,482 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2019-11-28 17:24:30,482 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2019-11-28 17:24:31,478 INFO L282 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2019-11-28 17:24:31,479 INFO L287 CfgBuilder]: Removed 196 assume(true) statements. [2019-11-28 17:24:31,480 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 05:24:31 BoogieIcfgContainer [2019-11-28 17:24:31,480 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2019-11-28 17:24:31,482 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2019-11-28 17:24:31,482 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2019-11-28 17:24:31,486 INFO L275 PluginConnector]: TraceAbstraction initialized [2019-11-28 17:24:31,486 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.11 05:24:29" (1/3) ... [2019-11-28 17:24:31,488 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@33802cc7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 05:24:31, skipping insertion in model container [2019-11-28 17:24:31,488 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:24:30" (2/3) ... [2019-11-28 17:24:31,489 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@33802cc7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 05:24:31, skipping insertion in model container [2019-11-28 17:24:31,489 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 05:24:31" (3/3) ... [2019-11-28 17:24:31,493 INFO L109 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product47.cil.c [2019-11-28 17:24:31,503 INFO L156 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2019-11-28 17:24:31,510 INFO L168 ceAbstractionStarter]: Appying trace abstraction to program that has 3 error locations. [2019-11-28 17:24:31,522 INFO L249 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2019-11-28 17:24:31,545 INFO L373 AbstractCegarLoop]: Interprodecural is true [2019-11-28 17:24:31,545 INFO L374 AbstractCegarLoop]: Hoare is true [2019-11-28 17:24:31,545 INFO L375 AbstractCegarLoop]: Compute interpolants for FPandBP [2019-11-28 17:24:31,546 INFO L376 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2019-11-28 17:24:31,546 INFO L377 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2019-11-28 17:24:31,546 INFO L378 AbstractCegarLoop]: Difference is false [2019-11-28 17:24:31,547 INFO L379 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2019-11-28 17:24:31,547 INFO L383 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2019-11-28 17:24:31,565 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states. [2019-11-28 17:24:31,574 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2019-11-28 17:24:31,574 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:31,575 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:31,576 INFO L410 AbstractCegarLoop]: === Iteration 1 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:31,581 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:31,582 INFO L82 PathProgramCache]: Analyzing trace with hash -330245923, now seen corresponding path program 1 times [2019-11-28 17:24:31,592 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:31,593 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1412458476] [2019-11-28 17:24:31,593 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:31,763 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:31,873 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:31,874 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1412458476] [2019-11-28 17:24:31,876 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:31,876 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 17:24:31,878 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [502448646] [2019-11-28 17:24:31,883 INFO L442 AbstractCegarLoop]: Interpolant automaton has 2 states [2019-11-28 17:24:31,884 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:31,898 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2019-11-28 17:24:31,899 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 17:24:31,902 INFO L87 Difference]: Start difference. First operand 131 states. Second operand 2 states. [2019-11-28 17:24:31,942 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:31,942 INFO L93 Difference]: Finished difference Result 256 states and 383 transitions. [2019-11-28 17:24:31,942 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2019-11-28 17:24:31,944 INFO L78 Accepts]: Start accepts. Automaton has 2 states. Word has length 16 [2019-11-28 17:24:31,945 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:31,958 INFO L225 Difference]: With dead ends: 256 [2019-11-28 17:24:31,959 INFO L226 Difference]: Without dead ends: 127 [2019-11-28 17:24:31,964 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 17:24:31,984 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 127 states. [2019-11-28 17:24:32,012 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 127 to 127. [2019-11-28 17:24:32,014 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 127 states. [2019-11-28 17:24:32,016 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 127 states to 127 states and 183 transitions. [2019-11-28 17:24:32,018 INFO L78 Accepts]: Start accepts. Automaton has 127 states and 183 transitions. Word has length 16 [2019-11-28 17:24:32,019 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:32,019 INFO L462 AbstractCegarLoop]: Abstraction has 127 states and 183 transitions. [2019-11-28 17:24:32,019 INFO L463 AbstractCegarLoop]: Interpolant automaton has 2 states. [2019-11-28 17:24:32,019 INFO L276 IsEmpty]: Start isEmpty. Operand 127 states and 183 transitions. [2019-11-28 17:24:32,020 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2019-11-28 17:24:32,021 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:32,021 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:32,021 INFO L410 AbstractCegarLoop]: === Iteration 2 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:32,022 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:32,022 INFO L82 PathProgramCache]: Analyzing trace with hash 450073546, now seen corresponding path program 1 times [2019-11-28 17:24:32,023 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:32,023 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1571277491] [2019-11-28 17:24:32,023 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:32,067 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:32,180 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:32,182 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1571277491] [2019-11-28 17:24:32,182 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:32,182 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 17:24:32,183 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1715961730] [2019-11-28 17:24:32,185 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:24:32,186 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:32,186 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:24:32,186 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:32,187 INFO L87 Difference]: Start difference. First operand 127 states and 183 transitions. Second operand 3 states. [2019-11-28 17:24:32,216 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:32,217 INFO L93 Difference]: Finished difference Result 127 states and 183 transitions. [2019-11-28 17:24:32,217 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:24:32,218 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 17 [2019-11-28 17:24:32,218 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:32,219 INFO L225 Difference]: With dead ends: 127 [2019-11-28 17:24:32,219 INFO L226 Difference]: Without dead ends: 53 [2019-11-28 17:24:32,220 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:32,221 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2019-11-28 17:24:32,227 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2019-11-28 17:24:32,227 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 53 states. [2019-11-28 17:24:32,228 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 76 transitions. [2019-11-28 17:24:32,228 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 76 transitions. Word has length 17 [2019-11-28 17:24:32,228 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:32,229 INFO L462 AbstractCegarLoop]: Abstraction has 53 states and 76 transitions. [2019-11-28 17:24:32,229 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:24:32,229 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 76 transitions. [2019-11-28 17:24:32,230 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2019-11-28 17:24:32,230 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:32,230 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:32,231 INFO L410 AbstractCegarLoop]: === Iteration 3 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:32,231 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:32,231 INFO L82 PathProgramCache]: Analyzing trace with hash 445162074, now seen corresponding path program 1 times [2019-11-28 17:24:32,231 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:32,232 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [787074523] [2019-11-28 17:24:32,232 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:32,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:32,331 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:32,332 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [787074523] [2019-11-28 17:24:32,332 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:32,332 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 17:24:32,333 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [265733416] [2019-11-28 17:24:32,333 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:24:32,333 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:32,334 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:24:32,334 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:32,334 INFO L87 Difference]: Start difference. First operand 53 states and 76 transitions. Second operand 3 states. [2019-11-28 17:24:32,364 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:32,364 INFO L93 Difference]: Finished difference Result 147 states and 216 transitions. [2019-11-28 17:24:32,369 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:24:32,369 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 22 [2019-11-28 17:24:32,370 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:32,371 INFO L225 Difference]: With dead ends: 147 [2019-11-28 17:24:32,371 INFO L226 Difference]: Without dead ends: 100 [2019-11-28 17:24:32,372 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:32,372 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2019-11-28 17:24:32,383 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 96. [2019-11-28 17:24:32,384 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 96 states. [2019-11-28 17:24:32,385 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 141 transitions. [2019-11-28 17:24:32,385 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 141 transitions. Word has length 22 [2019-11-28 17:24:32,386 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:32,386 INFO L462 AbstractCegarLoop]: Abstraction has 96 states and 141 transitions. [2019-11-28 17:24:32,386 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:24:32,386 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 141 transitions. [2019-11-28 17:24:32,387 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2019-11-28 17:24:32,387 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:32,388 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:32,388 INFO L410 AbstractCegarLoop]: === Iteration 4 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:32,388 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:32,388 INFO L82 PathProgramCache]: Analyzing trace with hash 96758808, now seen corresponding path program 1 times [2019-11-28 17:24:32,389 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:32,389 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1466057042] [2019-11-28 17:24:32,389 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:32,415 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:32,464 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:32,465 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1466057042] [2019-11-28 17:24:32,465 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:32,465 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 17:24:32,465 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2114163664] [2019-11-28 17:24:32,468 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:24:32,468 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:32,468 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:24:32,469 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:32,469 INFO L87 Difference]: Start difference. First operand 96 states and 141 transitions. Second operand 3 states. [2019-11-28 17:24:32,545 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:32,546 INFO L93 Difference]: Finished difference Result 227 states and 338 transitions. [2019-11-28 17:24:32,546 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:24:32,547 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 24 [2019-11-28 17:24:32,547 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:32,548 INFO L225 Difference]: With dead ends: 227 [2019-11-28 17:24:32,548 INFO L226 Difference]: Without dead ends: 137 [2019-11-28 17:24:32,549 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:32,550 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 137 states. [2019-11-28 17:24:32,564 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 137 to 135. [2019-11-28 17:24:32,564 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 135 states. [2019-11-28 17:24:32,565 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 195 transitions. [2019-11-28 17:24:32,566 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 195 transitions. Word has length 24 [2019-11-28 17:24:32,566 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:32,566 INFO L462 AbstractCegarLoop]: Abstraction has 135 states and 195 transitions. [2019-11-28 17:24:32,566 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:24:32,566 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 195 transitions. [2019-11-28 17:24:32,567 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2019-11-28 17:24:32,568 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:32,568 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:32,568 INFO L410 AbstractCegarLoop]: === Iteration 5 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:32,569 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:32,569 INFO L82 PathProgramCache]: Analyzing trace with hash -732744145, now seen corresponding path program 1 times [2019-11-28 17:24:32,569 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:32,570 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [342696851] [2019-11-28 17:24:32,570 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:32,595 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:32,697 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:32,698 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [342696851] [2019-11-28 17:24:32,698 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:32,699 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 17:24:32,699 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [66797434] [2019-11-28 17:24:32,699 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 17:24:32,700 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:32,700 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 17:24:32,700 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:24:32,700 INFO L87 Difference]: Start difference. First operand 135 states and 195 transitions. Second operand 5 states. [2019-11-28 17:24:32,924 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:32,924 INFO L93 Difference]: Finished difference Result 397 states and 575 transitions. [2019-11-28 17:24:32,925 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2019-11-28 17:24:32,925 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 25 [2019-11-28 17:24:32,926 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:32,929 INFO L225 Difference]: With dead ends: 397 [2019-11-28 17:24:32,930 INFO L226 Difference]: Without dead ends: 395 [2019-11-28 17:24:32,931 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 17:24:32,934 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 395 states. [2019-11-28 17:24:32,979 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 395 to 135. [2019-11-28 17:24:32,980 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 135 states. [2019-11-28 17:24:32,981 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 193 transitions. [2019-11-28 17:24:32,981 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 193 transitions. Word has length 25 [2019-11-28 17:24:32,981 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:32,984 INFO L462 AbstractCegarLoop]: Abstraction has 135 states and 193 transitions. [2019-11-28 17:24:32,985 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 17:24:32,985 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 193 transitions. [2019-11-28 17:24:32,986 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2019-11-28 17:24:32,986 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:32,986 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:32,988 INFO L410 AbstractCegarLoop]: === Iteration 6 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:32,988 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:32,988 INFO L82 PathProgramCache]: Analyzing trace with hash 1902005189, now seen corresponding path program 1 times [2019-11-28 17:24:32,989 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:32,989 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [601848147] [2019-11-28 17:24:32,989 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:33,039 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:33,105 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:33,106 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [601848147] [2019-11-28 17:24:33,106 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:33,106 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 17:24:33,107 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1370621849] [2019-11-28 17:24:33,107 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:24:33,108 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:33,108 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:24:33,108 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:33,108 INFO L87 Difference]: Start difference. First operand 135 states and 193 transitions. Second operand 3 states. [2019-11-28 17:24:33,150 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:33,151 INFO L93 Difference]: Finished difference Result 363 states and 522 transitions. [2019-11-28 17:24:33,152 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:24:33,152 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 33 [2019-11-28 17:24:33,152 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:33,154 INFO L225 Difference]: With dead ends: 363 [2019-11-28 17:24:33,154 INFO L226 Difference]: Without dead ends: 234 [2019-11-28 17:24:33,155 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:33,156 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 234 states. [2019-11-28 17:24:33,173 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 234 to 232. [2019-11-28 17:24:33,174 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 232 states. [2019-11-28 17:24:33,175 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 232 states to 232 states and 326 transitions. [2019-11-28 17:24:33,175 INFO L78 Accepts]: Start accepts. Automaton has 232 states and 326 transitions. Word has length 33 [2019-11-28 17:24:33,176 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:33,176 INFO L462 AbstractCegarLoop]: Abstraction has 232 states and 326 transitions. [2019-11-28 17:24:33,176 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:24:33,177 INFO L276 IsEmpty]: Start isEmpty. Operand 232 states and 326 transitions. [2019-11-28 17:24:33,179 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2019-11-28 17:24:33,179 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:33,179 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:33,180 INFO L410 AbstractCegarLoop]: === Iteration 7 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:33,180 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:33,180 INFO L82 PathProgramCache]: Analyzing trace with hash -1113098429, now seen corresponding path program 1 times [2019-11-28 17:24:33,181 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:33,181 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1014570026] [2019-11-28 17:24:33,181 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:33,201 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:33,252 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:33,253 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1014570026] [2019-11-28 17:24:33,253 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:33,254 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2019-11-28 17:24:33,254 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [150348651] [2019-11-28 17:24:33,255 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 17:24:33,255 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:33,256 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 17:24:33,256 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:24:33,256 INFO L87 Difference]: Start difference. First operand 232 states and 326 transitions. Second operand 5 states. [2019-11-28 17:24:33,362 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:33,362 INFO L93 Difference]: Finished difference Result 640 states and 890 transitions. [2019-11-28 17:24:33,363 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2019-11-28 17:24:33,363 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 33 [2019-11-28 17:24:33,363 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:33,366 INFO L225 Difference]: With dead ends: 640 [2019-11-28 17:24:33,366 INFO L226 Difference]: Without dead ends: 414 [2019-11-28 17:24:33,367 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2019-11-28 17:24:33,368 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 414 states. [2019-11-28 17:24:33,390 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 414 to 250. [2019-11-28 17:24:33,390 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 250 states. [2019-11-28 17:24:33,392 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 250 states to 250 states and 344 transitions. [2019-11-28 17:24:33,392 INFO L78 Accepts]: Start accepts. Automaton has 250 states and 344 transitions. Word has length 33 [2019-11-28 17:24:33,393 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:33,393 INFO L462 AbstractCegarLoop]: Abstraction has 250 states and 344 transitions. [2019-11-28 17:24:33,393 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 17:24:33,393 INFO L276 IsEmpty]: Start isEmpty. Operand 250 states and 344 transitions. [2019-11-28 17:24:33,395 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2019-11-28 17:24:33,395 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:33,396 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:33,396 INFO L410 AbstractCegarLoop]: === Iteration 8 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:33,396 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:33,397 INFO L82 PathProgramCache]: Analyzing trace with hash -1699904443, now seen corresponding path program 1 times [2019-11-28 17:24:33,397 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:33,397 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [660811996] [2019-11-28 17:24:33,398 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:33,416 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:33,446 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:33,446 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [660811996] [2019-11-28 17:24:33,447 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:33,447 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 17:24:33,447 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [927437098] [2019-11-28 17:24:33,447 INFO L442 AbstractCegarLoop]: Interpolant automaton has 4 states [2019-11-28 17:24:33,447 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:33,448 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2019-11-28 17:24:33,448 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2019-11-28 17:24:33,448 INFO L87 Difference]: Start difference. First operand 250 states and 344 transitions. Second operand 4 states. [2019-11-28 17:24:33,516 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:33,517 INFO L93 Difference]: Finished difference Result 544 states and 742 transitions. [2019-11-28 17:24:33,517 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2019-11-28 17:24:33,517 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 33 [2019-11-28 17:24:33,518 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:33,520 INFO L225 Difference]: With dead ends: 544 [2019-11-28 17:24:33,520 INFO L226 Difference]: Without dead ends: 300 [2019-11-28 17:24:33,521 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:24:33,522 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 300 states. [2019-11-28 17:24:33,535 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 300 to 209. [2019-11-28 17:24:33,536 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 209 states. [2019-11-28 17:24:33,537 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 209 states to 209 states and 280 transitions. [2019-11-28 17:24:33,537 INFO L78 Accepts]: Start accepts. Automaton has 209 states and 280 transitions. Word has length 33 [2019-11-28 17:24:33,538 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:33,538 INFO L462 AbstractCegarLoop]: Abstraction has 209 states and 280 transitions. [2019-11-28 17:24:33,538 INFO L463 AbstractCegarLoop]: Interpolant automaton has 4 states. [2019-11-28 17:24:33,538 INFO L276 IsEmpty]: Start isEmpty. Operand 209 states and 280 transitions. [2019-11-28 17:24:33,542 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2019-11-28 17:24:33,543 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:33,543 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:33,543 INFO L410 AbstractCegarLoop]: === Iteration 9 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:33,543 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:33,544 INFO L82 PathProgramCache]: Analyzing trace with hash -1822472183, now seen corresponding path program 1 times [2019-11-28 17:24:33,544 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:33,545 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [547348001] [2019-11-28 17:24:33,545 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:33,596 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:33,684 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:33,684 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [547348001] [2019-11-28 17:24:33,685 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:33,685 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 17:24:33,688 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [948155135] [2019-11-28 17:24:33,689 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 17:24:33,690 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:33,690 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 17:24:33,691 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:24:33,692 INFO L87 Difference]: Start difference. First operand 209 states and 280 transitions. Second operand 5 states. [2019-11-28 17:24:33,932 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:33,933 INFO L93 Difference]: Finished difference Result 1093 states and 1472 transitions. [2019-11-28 17:24:33,933 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2019-11-28 17:24:33,933 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 34 [2019-11-28 17:24:33,934 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:33,939 INFO L225 Difference]: With dead ends: 1093 [2019-11-28 17:24:33,939 INFO L226 Difference]: Without dead ends: 890 [2019-11-28 17:24:33,941 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 17:24:33,942 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 890 states. [2019-11-28 17:24:34,028 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 890 to 398. [2019-11-28 17:24:34,029 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 398 states. [2019-11-28 17:24:34,030 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 398 states to 398 states and 527 transitions. [2019-11-28 17:24:34,031 INFO L78 Accepts]: Start accepts. Automaton has 398 states and 527 transitions. Word has length 34 [2019-11-28 17:24:34,031 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:34,031 INFO L462 AbstractCegarLoop]: Abstraction has 398 states and 527 transitions. [2019-11-28 17:24:34,031 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 17:24:34,031 INFO L276 IsEmpty]: Start isEmpty. Operand 398 states and 527 transitions. [2019-11-28 17:24:34,032 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2019-11-28 17:24:34,032 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:34,032 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:34,033 INFO L410 AbstractCegarLoop]: === Iteration 10 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:34,033 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:34,033 INFO L82 PathProgramCache]: Analyzing trace with hash 939478607, now seen corresponding path program 1 times [2019-11-28 17:24:34,033 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:34,034 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [537733494] [2019-11-28 17:24:34,034 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:34,049 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:34,097 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:24:34,097 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [537733494] [2019-11-28 17:24:34,098 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:34,098 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2019-11-28 17:24:34,098 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1325541868] [2019-11-28 17:24:34,099 INFO L442 AbstractCegarLoop]: Interpolant automaton has 6 states [2019-11-28 17:24:34,099 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:34,099 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2019-11-28 17:24:34,100 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2019-11-28 17:24:34,100 INFO L87 Difference]: Start difference. First operand 398 states and 527 transitions. Second operand 6 states. [2019-11-28 17:24:34,460 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:34,460 INFO L93 Difference]: Finished difference Result 1430 states and 1900 transitions. [2019-11-28 17:24:34,460 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2019-11-28 17:24:34,460 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 35 [2019-11-28 17:24:34,460 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:34,466 INFO L225 Difference]: With dead ends: 1430 [2019-11-28 17:24:34,466 INFO L226 Difference]: Without dead ends: 1038 [2019-11-28 17:24:34,468 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 26 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=60, Invalid=122, Unknown=0, NotChecked=0, Total=182 [2019-11-28 17:24:34,469 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1038 states. [2019-11-28 17:24:34,509 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1038 to 398. [2019-11-28 17:24:34,510 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 398 states. [2019-11-28 17:24:34,513 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 398 states to 398 states and 517 transitions. [2019-11-28 17:24:34,513 INFO L78 Accepts]: Start accepts. Automaton has 398 states and 517 transitions. Word has length 35 [2019-11-28 17:24:34,514 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:34,514 INFO L462 AbstractCegarLoop]: Abstraction has 398 states and 517 transitions. [2019-11-28 17:24:34,514 INFO L463 AbstractCegarLoop]: Interpolant automaton has 6 states. [2019-11-28 17:24:34,514 INFO L276 IsEmpty]: Start isEmpty. Operand 398 states and 517 transitions. [2019-11-28 17:24:34,516 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2019-11-28 17:24:34,516 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:34,516 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:34,516 INFO L410 AbstractCegarLoop]: === Iteration 11 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:34,516 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:34,517 INFO L82 PathProgramCache]: Analyzing trace with hash 1806093559, now seen corresponding path program 1 times [2019-11-28 17:24:34,517 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:34,517 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1066566249] [2019-11-28 17:24:34,517 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:34,533 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:34,556 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2019-11-28 17:24:34,557 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1066566249] [2019-11-28 17:24:34,557 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:34,557 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 17:24:34,557 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [799594367] [2019-11-28 17:24:34,558 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:24:34,558 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:34,558 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:24:34,558 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:34,558 INFO L87 Difference]: Start difference. First operand 398 states and 517 transitions. Second operand 3 states. [2019-11-28 17:24:34,622 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:34,623 INFO L93 Difference]: Finished difference Result 486 states and 630 transitions. [2019-11-28 17:24:34,623 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:24:34,623 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 52 [2019-11-28 17:24:34,623 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:34,625 INFO L225 Difference]: With dead ends: 486 [2019-11-28 17:24:34,625 INFO L226 Difference]: Without dead ends: 198 [2019-11-28 17:24:34,626 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:24:34,626 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 198 states. [2019-11-28 17:24:34,643 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 198 to 198. [2019-11-28 17:24:34,644 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 198 states. [2019-11-28 17:24:34,645 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 198 states to 198 states and 247 transitions. [2019-11-28 17:24:34,645 INFO L78 Accepts]: Start accepts. Automaton has 198 states and 247 transitions. Word has length 52 [2019-11-28 17:24:34,645 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:34,645 INFO L462 AbstractCegarLoop]: Abstraction has 198 states and 247 transitions. [2019-11-28 17:24:34,645 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:24:34,645 INFO L276 IsEmpty]: Start isEmpty. Operand 198 states and 247 transitions. [2019-11-28 17:24:34,647 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2019-11-28 17:24:34,647 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:24:34,647 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:24:34,647 INFO L410 AbstractCegarLoop]: === Iteration 12 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:24:34,647 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:24:34,648 INFO L82 PathProgramCache]: Analyzing trace with hash 1267756066, now seen corresponding path program 1 times [2019-11-28 17:24:34,648 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:24:34,649 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [994967790] [2019-11-28 17:24:34,649 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:24:34,667 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:24:34,722 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 8 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2019-11-28 17:24:34,722 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [994967790] [2019-11-28 17:24:34,722 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:24:34,722 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2019-11-28 17:24:34,723 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [507946734] [2019-11-28 17:24:34,724 INFO L442 AbstractCegarLoop]: Interpolant automaton has 6 states [2019-11-28 17:24:34,724 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:24:34,724 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2019-11-28 17:24:34,725 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2019-11-28 17:24:34,725 INFO L87 Difference]: Start difference. First operand 198 states and 247 transitions. Second operand 6 states. [2019-11-28 17:24:34,967 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:24:34,968 INFO L93 Difference]: Finished difference Result 497 states and 619 transitions. [2019-11-28 17:24:34,968 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2019-11-28 17:24:34,968 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 54 [2019-11-28 17:24:34,969 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:24:34,969 INFO L225 Difference]: With dead ends: 497 [2019-11-28 17:24:34,969 INFO L226 Difference]: Without dead ends: 0 [2019-11-28 17:24:34,970 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2019-11-28 17:24:34,971 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2019-11-28 17:24:34,971 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2019-11-28 17:24:34,971 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 0 states. [2019-11-28 17:24:34,971 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2019-11-28 17:24:34,972 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 54 [2019-11-28 17:24:34,972 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:24:34,972 INFO L462 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2019-11-28 17:24:34,972 INFO L463 AbstractCegarLoop]: Interpolant automaton has 6 states. [2019-11-28 17:24:34,972 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2019-11-28 17:24:34,973 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2019-11-28 17:24:34,975 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2019-11-28 17:24:35,176 WARN L192 SmtUtils]: Spent 165.00 ms on a formula simplification. DAG size of input: 114 DAG size of output: 95 [2019-11-28 17:24:35,697 WARN L192 SmtUtils]: Spent 377.00 ms on a formula simplification. DAG size of input: 170 DAG size of output: 140 [2019-11-28 17:24:35,843 WARN L192 SmtUtils]: Spent 143.00 ms on a formula simplification. DAG size of input: 109 DAG size of output: 66 [2019-11-28 17:24:36,174 WARN L192 SmtUtils]: Spent 322.00 ms on a formula simplification. DAG size of input: 163 DAG size of output: 128 [2019-11-28 17:24:36,398 WARN L192 SmtUtils]: Spent 209.00 ms on a formula simplification. DAG size of input: 117 DAG size of output: 77 [2019-11-28 17:24:36,729 WARN L192 SmtUtils]: Spent 329.00 ms on a formula simplification. DAG size of input: 172 DAG size of output: 139 [2019-11-28 17:24:36,893 WARN L192 SmtUtils]: Spent 161.00 ms on a formula simplification. DAG size of input: 116 DAG size of output: 96 [2019-11-28 17:24:37,096 WARN L192 SmtUtils]: Spent 200.00 ms on a formula simplification. DAG size of input: 96 DAG size of output: 84 [2019-11-28 17:24:37,512 WARN L192 SmtUtils]: Spent 412.00 ms on a formula simplification. DAG size of input: 171 DAG size of output: 135 [2019-11-28 17:24:37,990 WARN L192 SmtUtils]: Spent 436.00 ms on a formula simplification. DAG size of input: 94 DAG size of output: 34 [2019-11-28 17:24:38,354 WARN L192 SmtUtils]: Spent 230.00 ms on a formula simplification. DAG size of input: 68 DAG size of output: 24 [2019-11-28 17:24:39,292 WARN L192 SmtUtils]: Spent 818.00 ms on a formula simplification. DAG size of input: 139 DAG size of output: 22 [2019-11-28 17:24:39,544 WARN L192 SmtUtils]: Spent 249.00 ms on a formula simplification. DAG size of input: 64 DAG size of output: 16 [2019-11-28 17:24:40,258 WARN L192 SmtUtils]: Spent 692.00 ms on a formula simplification. DAG size of input: 126 DAG size of output: 26 [2019-11-28 17:24:40,514 WARN L192 SmtUtils]: Spent 219.00 ms on a formula simplification. DAG size of input: 74 DAG size of output: 16 [2019-11-28 17:24:41,290 WARN L192 SmtUtils]: Spent 772.00 ms on a formula simplification. DAG size of input: 138 DAG size of output: 22 [2019-11-28 17:24:41,741 WARN L192 SmtUtils]: Spent 447.00 ms on a formula simplification. DAG size of input: 95 DAG size of output: 31 [2019-11-28 17:24:42,178 WARN L192 SmtUtils]: Spent 435.00 ms on a formula simplification. DAG size of input: 84 DAG size of output: 14 [2019-11-28 17:24:42,866 WARN L192 SmtUtils]: Spent 684.00 ms on a formula simplification. DAG size of input: 134 DAG size of output: 22 [2019-11-28 17:24:42,880 INFO L246 CegarLoopResult]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 73) no Hoare annotation was computed. [2019-11-28 17:24:42,881 INFO L242 CegarLoopResult]: At program point L235(lines 235 241) the Hoare annotation is: (let ((.cse1 (<= ~methaneLevelCritical~0 0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse5 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse1 .cse4 .cse2 .cse3) (and .cse1 .cse4 .cse2 .cse3 .cse6) (and .cse0 .cse4 .cse2 .cse5))) [2019-11-28 17:24:42,882 INFO L242 CegarLoopResult]: At program point L235-1(lines 235 241) the Hoare annotation is: false [2019-11-28 17:24:42,882 INFO L242 CegarLoopResult]: At program point L235-2(lines 235 241) the Hoare annotation is: false [2019-11-28 17:24:42,882 INFO L242 CegarLoopResult]: At program point L103(lines 1 959) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 17:24:42,882 INFO L246 CegarLoopResult]: For program point L205(lines 205 211) no Hoare annotation was computed. [2019-11-28 17:24:42,882 INFO L246 CegarLoopResult]: For program point L205-1(lines 205 211) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L205-2(lines 205 211) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L205-3(lines 205 211) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L73(line 73) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L205-4(lines 205 211) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L73-1(line 73) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L205-5(lines 205 211) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L73-2(line 73) no Hoare annotation was computed. [2019-11-28 17:24:42,883 INFO L246 CegarLoopResult]: For program point L140(lines 140 144) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-2(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-3(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-5(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-6(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-8(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-9(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-11(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-12(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,884 INFO L246 CegarLoopResult]: For program point L405-14(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,885 INFO L246 CegarLoopResult]: For program point L405-15(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,885 INFO L246 CegarLoopResult]: For program point L405-17(lines 405 409) no Hoare annotation was computed. [2019-11-28 17:24:42,885 INFO L246 CegarLoopResult]: For program point L472(lines 472 485) no Hoare annotation was computed. [2019-11-28 17:24:42,885 INFO L246 CegarLoopResult]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 73) no Hoare annotation was computed. [2019-11-28 17:24:42,885 INFO L242 CegarLoopResult]: At program point L210(lines 201 214) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 17:24:42,885 INFO L242 CegarLoopResult]: At program point L210-1(lines 201 214) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 .cse1 .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 17:24:42,885 INFO L242 CegarLoopResult]: At program point L210-2(lines 201 214) the Hoare annotation is: false [2019-11-28 17:24:42,886 INFO L242 CegarLoopResult]: At program point L111(lines 106 114) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 17:24:42,886 INFO L242 CegarLoopResult]: At program point L210-3(lines 201 214) the Hoare annotation is: false [2019-11-28 17:24:42,886 INFO L242 CegarLoopResult]: At program point L210-4(lines 201 214) the Hoare annotation is: false [2019-11-28 17:24:42,886 INFO L242 CegarLoopResult]: At program point L210-5(lines 201 214) the Hoare annotation is: false [2019-11-28 17:24:42,886 INFO L246 CegarLoopResult]: For program point L443(lines 442 489) no Hoare annotation was computed. [2019-11-28 17:24:42,886 INFO L246 CegarLoopResult]: For program point L444(lines 444 448) no Hoare annotation was computed. [2019-11-28 17:24:42,886 INFO L242 CegarLoopResult]: At program point L411(lines 396 414) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 17:24:42,887 INFO L242 CegarLoopResult]: At program point L411-1(lines 396 414) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 .cse1 .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 17:24:42,887 INFO L242 CegarLoopResult]: At program point L411-2(lines 396 414) the Hoare annotation is: false [2019-11-28 17:24:42,887 INFO L242 CegarLoopResult]: At program point L411-3(lines 396 414) the Hoare annotation is: false [2019-11-28 17:24:42,887 INFO L242 CegarLoopResult]: At program point L411-4(lines 396 414) the Hoare annotation is: false [2019-11-28 17:24:42,887 INFO L242 CegarLoopResult]: At program point L411-5(lines 396 414) the Hoare annotation is: false [2019-11-28 17:24:42,887 INFO L246 CegarLoopResult]: For program point L478(lines 478 484) no Hoare annotation was computed. [2019-11-28 17:24:42,887 INFO L242 CegarLoopResult]: At program point L478-1(lines 228 234) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse5 (= 1 ~methaneLevelCritical~0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse2 .cse5) (and .cse1 .cse4 .cse2 .cse3 .cse6))) [2019-11-28 17:24:42,887 INFO L242 CegarLoopResult]: At program point L347(lines 340 350) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) (= 1 |ULTIMATE.start_isMethaneAlarm_#res|) .cse1 (= 1 ~methaneLevelCritical~0)) (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 (<= 0 ~methaneLevelCritical~0)))) [2019-11-28 17:24:42,888 INFO L242 CegarLoopResult]: At program point L347-1(lines 340 350) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 17:24:42,888 INFO L242 CegarLoopResult]: At program point L347-2(lines 340 350) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1 (= 1 |ULTIMATE.start_isMethaneAlarm_#res|) .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 17:24:42,888 INFO L242 CegarLoopResult]: At program point L347-3(lines 340 350) the Hoare annotation is: false [2019-11-28 17:24:42,888 INFO L242 CegarLoopResult]: At program point L347-4(lines 340 350) the Hoare annotation is: false [2019-11-28 17:24:42,888 INFO L242 CegarLoopResult]: At program point L347-5(lines 340 350) the Hoare annotation is: false [2019-11-28 17:24:42,888 INFO L242 CegarLoopResult]: At program point L347-6(lines 340 350) the Hoare annotation is: false [2019-11-28 17:24:42,888 INFO L242 CegarLoopResult]: At program point L347-7(lines 340 350) the Hoare annotation is: false [2019-11-28 17:24:42,889 INFO L242 CegarLoopResult]: At program point L347-8(lines 340 350) the Hoare annotation is: false [2019-11-28 17:24:42,889 INFO L242 CegarLoopResult]: At program point L876-2(lines 876 890) the Hoare annotation is: false [2019-11-28 17:24:42,889 INFO L246 CegarLoopResult]: For program point L51(lines 51 64) no Hoare annotation was computed. [2019-11-28 17:24:42,889 INFO L242 CegarLoopResult]: At program point L51-1(lines 1 959) the Hoare annotation is: (let ((.cse1 (<= ~methaneLevelCritical~0 0)) (.cse2 (< 0 (+ ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 1))) (.cse3 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse4 (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (<= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse7 (<= 0 ~methaneLevelCritical~0)) (.cse9 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse10 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse8 (= ~pumpRunning~0 0)) (.cse6 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse11 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 (= 1 ~waterLevel~0) .cse8 .cse6 .cse7) (and .cse1 .cse2 .cse3 .cse4 .cse8 .cse5 .cse6 .cse7 .cse9) (and .cse10 .cse8 .cse6 .cse11 .cse9) (and .cse0 .cse10 .cse8 .cse6 .cse11))) [2019-11-28 17:24:42,889 INFO L246 CegarLoopResult]: For program point L51-2(lines 51 64) no Hoare annotation was computed. [2019-11-28 17:24:42,889 INFO L242 CegarLoopResult]: At program point L51-3(lines 1 959) the Hoare annotation is: false [2019-11-28 17:24:42,889 INFO L246 CegarLoopResult]: For program point L51-4(lines 51 64) no Hoare annotation was computed. [2019-11-28 17:24:42,889 INFO L242 CegarLoopResult]: At program point L51-5(lines 1 959) the Hoare annotation is: false [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L877(line 877) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L152(lines 152 156) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L880(lines 880 884) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L880-1(lines 228 234) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L286(lines 286 303) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L286-1(lines 286 303) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L286-2(lines 286 303) no Hoare annotation was computed. [2019-11-28 17:24:42,890 INFO L246 CegarLoopResult]: For program point L55(lines 55 61) no Hoare annotation was computed. [2019-11-28 17:24:42,891 INFO L246 CegarLoopResult]: For program point L55-2(lines 55 61) no Hoare annotation was computed. [2019-11-28 17:24:42,891 INFO L246 CegarLoopResult]: For program point L947(lines 947 954) no Hoare annotation was computed. [2019-11-28 17:24:42,891 INFO L246 CegarLoopResult]: For program point L55-4(lines 55 61) no Hoare annotation was computed. [2019-11-28 17:24:42,891 INFO L249 CegarLoopResult]: At program point L947-1(lines 947 954) the Hoare annotation is: true [2019-11-28 17:24:42,891 INFO L246 CegarLoopResult]: For program point L452(lines 452 458) no Hoare annotation was computed. [2019-11-28 17:24:42,891 INFO L242 CegarLoopResult]: At program point L452-1(lines 452 458) the Hoare annotation is: (let ((.cse2 (< 0 (+ ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 1))) (.cse3 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse4 (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (<= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse7 (<= 0 ~methaneLevelCritical~0)) (.cse9 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse10 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse8 (= ~pumpRunning~0 0)) (.cse6 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse11 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse1 .cse2 .cse3 .cse4 .cse8 .cse5 .cse6 .cse7 .cse9) (and .cse0 .cse1 .cse8 .cse6 .cse7) (and .cse10 .cse8 .cse6 .cse11 .cse9) (and .cse0 .cse10 .cse8 .cse6 .cse11))) [2019-11-28 17:24:42,891 INFO L246 CegarLoopResult]: For program point L419(lines 419 425) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L242 CegarLoopResult]: At program point L419-1(lines 419 425) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 .cse1 (= 1 ~methaneLevelCritical~0)) (and (<= ~methaneLevelCritical~0 0) .cse0 .cse1 (<= 0 ~methaneLevelCritical~0)))) [2019-11-28 17:24:42,892 INFO L246 CegarLoopResult]: For program point L322(lines 322 328) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L246 CegarLoopResult]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L246 CegarLoopResult]: For program point L322-2(lines 322 328) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L246 CegarLoopResult]: For program point L322-4(lines 322 328) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L246 CegarLoopResult]: For program point L322-6(lines 322 328) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L246 CegarLoopResult]: For program point L322-8(lines 322 328) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L246 CegarLoopResult]: For program point L322-10(lines 322 328) no Hoare annotation was computed. [2019-11-28 17:24:42,892 INFO L242 CegarLoopResult]: At program point L356(lines 351 359) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_isPumpRunning_#res| 0)) (.cse1 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse4 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= 0 ~systemActive~0)) (and (= 1 ~systemActive~0) .cse0 .cse1 .cse2 .cse3 .cse4))) [2019-11-28 17:24:42,893 INFO L242 CegarLoopResult]: At program point L356-1(lines 351 359) the Hoare annotation is: false [2019-11-28 17:24:42,893 INFO L246 CegarLoopResult]: For program point L290(lines 290 298) no Hoare annotation was computed. [2019-11-28 17:24:42,893 INFO L242 CegarLoopResult]: At program point L356-2(lines 351 359) the Hoare annotation is: false [2019-11-28 17:24:42,893 INFO L246 CegarLoopResult]: For program point L290-1(lines 290 298) no Hoare annotation was computed. [2019-11-28 17:24:42,893 INFO L246 CegarLoopResult]: For program point L290-2(lines 290 298) no Hoare annotation was computed. [2019-11-28 17:24:42,893 INFO L242 CegarLoopResult]: At program point L490(lines 441 491) the Hoare annotation is: false [2019-11-28 17:24:42,893 INFO L246 CegarLoopResult]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2019-11-28 17:24:42,893 INFO L246 CegarLoopResult]: For program point L260(lines 260 277) no Hoare annotation was computed. [2019-11-28 17:24:42,893 INFO L246 CegarLoopResult]: For program point L260-1(lines 260 277) no Hoare annotation was computed. [2019-11-28 17:24:42,893 INFO L246 CegarLoopResult]: For program point L260-2(lines 260 277) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L246 CegarLoopResult]: For program point L260-3(lines 260 277) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L246 CegarLoopResult]: For program point L128(lines 128 132) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L246 CegarLoopResult]: For program point L260-4(lines 260 277) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L246 CegarLoopResult]: For program point L260-5(lines 260 277) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L246 CegarLoopResult]: For program point L128-3(lines 128 132) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L246 CegarLoopResult]: For program point L128-6(lines 128 132) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L242 CegarLoopResult]: At program point L228(lines 227 246) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse5 (= 1 ~methaneLevelCritical~0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse2 .cse5) (and .cse1 .cse4 .cse2 .cse3 .cse6))) [2019-11-28 17:24:42,894 INFO L246 CegarLoopResult]: For program point L228-1(lines 228 234) no Hoare annotation was computed. [2019-11-28 17:24:42,894 INFO L242 CegarLoopResult]: At program point L228-2(lines 227 246) the Hoare annotation is: false [2019-11-28 17:24:42,894 INFO L242 CegarLoopResult]: At program point L228-3(lines 227 246) the Hoare annotation is: false [2019-11-28 17:24:42,895 INFO L249 CegarLoopResult]: At program point L956(lines 937 959) the Hoare annotation is: true [2019-11-28 17:24:42,895 INFO L246 CegarLoopResult]: For program point L-1(line -1) no Hoare annotation was computed. [2019-11-28 17:24:42,895 INFO L242 CegarLoopResult]: At program point L924(lines 920 926) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (= 1 ~waterLevel~0) (= ~pumpRunning~0 0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 17:24:42,895 INFO L246 CegarLoopResult]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 73) no Hoare annotation was computed. [2019-11-28 17:24:42,895 INFO L246 CegarLoopResult]: For program point L462(lines 462 468) no Hoare annotation was computed. [2019-11-28 17:24:42,895 INFO L242 CegarLoopResult]: At program point L462-1(lines 462 468) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse5 (= 1 ~methaneLevelCritical~0)) (.cse1 (<= ~methaneLevelCritical~0 0)) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse3 (<= 0 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse5 .cse6) (and .cse0 .cse2 .cse5) (and .cse1 .cse4 .cse2 .cse3 .cse6))) [2019-11-28 17:24:42,895 INFO L246 CegarLoopResult]: For program point L264(lines 264 272) no Hoare annotation was computed. [2019-11-28 17:24:42,895 INFO L246 CegarLoopResult]: For program point L264-1(lines 264 272) no Hoare annotation was computed. [2019-11-28 17:24:42,896 INFO L246 CegarLoopResult]: For program point L264-2(lines 264 272) no Hoare annotation was computed. [2019-11-28 17:24:42,896 INFO L242 CegarLoopResult]: At program point L165(lines 160 168) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 (<= 0 ~methaneLevelCritical~0)) (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 17:24:42,896 INFO L246 CegarLoopResult]: For program point L264-3(lines 264 272) no Hoare annotation was computed. [2019-11-28 17:24:42,896 INFO L242 CegarLoopResult]: At program point L165-1(lines 160 168) the Hoare annotation is: (and (= 1 ~systemActive~0) (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~pumpRunning~0 0) (= 0 ULTIMATE.start_test_~splverifierCounter~0) (<= 0 ~methaneLevelCritical~0)) [2019-11-28 17:24:42,896 INFO L246 CegarLoopResult]: For program point L264-4(lines 264 272) no Hoare annotation was computed. [2019-11-28 17:24:42,896 INFO L242 CegarLoopResult]: At program point L165-2(lines 160 168) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ULTIMATE.start_test_~splverifierCounter~0))) (or (and .cse0 (<= ~methaneLevelCritical~0 0) (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|) (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) .cse1 .cse2 (<= 0 ~methaneLevelCritical~0)) (and .cse0 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|) .cse1 .cse2 (= 1 ~methaneLevelCritical~0)))) [2019-11-28 17:24:42,896 INFO L246 CegarLoopResult]: For program point L264-5(lines 264 272) no Hoare annotation was computed. [2019-11-28 17:24:42,896 INFO L242 CegarLoopResult]: At program point L165-3(lines 160 168) the Hoare annotation is: (let ((.cse1 (<= ~methaneLevelCritical~0 0)) (.cse2 (<= 0 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse3 (<= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (<= 0 ~methaneLevelCritical~0)) (.cse9 (= 0 ~systemActive~0)) (.cse0 (= 1 ~systemActive~0)) (.cse6 (= 1 |ULTIMATE.start_isMethaneLevelCritical_#res|)) (.cse7 (= ~pumpRunning~0 0)) (.cse4 (= 0 ULTIMATE.start_test_~splverifierCounter~0)) (.cse8 (= 1 ~methaneLevelCritical~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse6 .cse7 .cse4 .cse8 .cse9) (and .cse1 .cse2 .cse3 .cse7 .cse4 .cse5 .cse9) (and .cse0 .cse6 .cse7 .cse4 .cse8))) [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-4(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-5(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-6(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-7(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-8(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-9(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-10(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,897 INFO L242 CegarLoopResult]: At program point L165-11(lines 160 168) the Hoare annotation is: false [2019-11-28 17:24:42,947 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.11 05:24:42 BoogieIcfgContainer [2019-11-28 17:24:42,948 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2019-11-28 17:24:42,948 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2019-11-28 17:24:42,948 INFO L271 PluginConnector]: Initializing Witness Printer... [2019-11-28 17:24:42,948 INFO L275 PluginConnector]: Witness Printer initialized [2019-11-28 17:24:42,949 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 05:24:31" (3/4) ... [2019-11-28 17:24:42,953 INFO L137 WitnessPrinter]: Generating witness for correct program [2019-11-28 17:24:42,979 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 38 nodes and edges [2019-11-28 17:24:42,980 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2019-11-28 17:24:42,981 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 9 nodes and edges [2019-11-28 17:24:42,982 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2019-11-28 17:24:42,983 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2019-11-28 17:24:42,985 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2019-11-28 17:24:42,986 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2019-11-28 17:24:43,021 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,023 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,025 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,027 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((((methaneLevelCritical <= 0 && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,028 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,029 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((1 == systemActive && 1 == \result) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) [2019-11-28 17:24:43,033 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((\result == 0 && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive) || (((((1 == systemActive && \result == 0) && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,037 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 17:24:43,038 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,040 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 17:24:43,040 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) [2019-11-28 17:24:43,041 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 17:24:43,041 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical [2019-11-28 17:24:43,150 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2019-11-28 17:24:43,150 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2019-11-28 17:24:43,151 INFO L168 Benchmark]: Toolchain (without parser) took 13753.41 ms. Allocated memory was 1.0 GB in the beginning and 1.4 GB in the end (delta: 341.8 MB). Free memory was 959.0 MB in the beginning and 1.2 GB in the end (delta: -235.1 MB). Peak memory consumption was 106.7 MB. Max. memory is 11.5 GB. [2019-11-28 17:24:43,152 INFO L168 Benchmark]: CDTParser took 0.19 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-28 17:24:43,152 INFO L168 Benchmark]: CACSL2BoogieTranslator took 836.95 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 116.4 MB). Free memory was 959.0 MB in the beginning and 1.1 GB in the end (delta: -130.4 MB). Peak memory consumption was 20.3 MB. Max. memory is 11.5 GB. [2019-11-28 17:24:43,152 INFO L168 Benchmark]: Boogie Procedure Inliner took 104.14 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 7.0 MB). Peak memory consumption was 7.0 MB. Max. memory is 11.5 GB. [2019-11-28 17:24:43,153 INFO L168 Benchmark]: Boogie Preprocessor took 56.32 ms. Allocated memory is still 1.1 GB. Free memory is still 1.1 GB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-28 17:24:43,153 INFO L168 Benchmark]: RCFGBuilder took 1082.97 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 69.1 MB). Peak memory consumption was 69.1 MB. Max. memory is 11.5 GB. [2019-11-28 17:24:43,153 INFO L168 Benchmark]: TraceAbstraction took 11466.12 ms. Allocated memory was 1.1 GB in the beginning and 1.4 GB in the end (delta: 225.4 MB). Free memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: -192.1 MB). Peak memory consumption was 395.7 MB. Max. memory is 11.5 GB. [2019-11-28 17:24:43,154 INFO L168 Benchmark]: Witness Printer took 201.73 ms. Allocated memory is still 1.4 GB. Free memory was 1.2 GB in the beginning and 1.2 GB in the end (delta: 11.3 MB). Peak memory consumption was 11.3 MB. Max. memory is 11.5 GB. [2019-11-28 17:24:43,156 INFO L335 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. * CACSL2BoogieTranslator took 836.95 ms. Allocated memory was 1.0 GB in the beginning and 1.1 GB in the end (delta: 116.4 MB). Free memory was 959.0 MB in the beginning and 1.1 GB in the end (delta: -130.4 MB). Peak memory consumption was 20.3 MB. Max. memory is 11.5 GB. * Boogie Procedure Inliner took 104.14 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 7.0 MB). Peak memory consumption was 7.0 MB. Max. memory is 11.5 GB. * Boogie Preprocessor took 56.32 ms. Allocated memory is still 1.1 GB. Free memory is still 1.1 GB. There was no memory consumed. Max. memory is 11.5 GB. * RCFGBuilder took 1082.97 ms. Allocated memory is still 1.1 GB. Free memory was 1.1 GB in the beginning and 1.0 GB in the end (delta: 69.1 MB). Peak memory consumption was 69.1 MB. Max. memory is 11.5 GB. * TraceAbstraction took 11466.12 ms. Allocated memory was 1.1 GB in the beginning and 1.4 GB in the end (delta: 225.4 MB). Free memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: -192.1 MB). Peak memory consumption was 395.7 MB. Max. memory is 11.5 GB. * Witness Printer took 201.73 ms. Allocated memory is still 1.4 GB. Free memory was 1.2 GB in the beginning and 1.2 GB in the end (delta: 11.3 MB). Peak memory consumption was 11.3 MB. Max. memory is 11.5 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - PositiveResult [Line: 73]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - PositiveResult [Line: 73]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - PositiveResult [Line: 73]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 947]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: ((((1 == systemActive && 1 == \result) && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && 1 == \result) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 <= methaneLevelCritical - InvariantResult [Line: 441]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((((methaneLevelCritical <= 0 && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: ((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 106]: Loop Invariant Derived loop invariant: (((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 <= methaneLevelCritical - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 351]: Loop Invariant Derived loop invariant: (((((\result == 0 && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive) || (((((1 == systemActive && \result == 0) && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 351]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 462]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((1 == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive) - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 351]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: ((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 937]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical - InvariantResult [Line: 201]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 396]: Loop Invariant Derived loop invariant: ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((1 == systemActive && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((1 == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive) - InvariantResult [Line: 452]: Loop Invariant Derived loop invariant: ((((((((((1 == systemActive && methaneLevelCritical <= 0) && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || ((((((((methaneLevelCritical <= 0 && 0 < tmp + 1) && 0 <= \result) && \result <= 0) && pumpRunning == 0) && tmp <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && methaneLevelCritical <= 0) && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical)) || ((((1 == \result && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((((1 == systemActive && 1 == \result) && pumpRunning == 0) && 0 == splverifierCounter) && 1 == methaneLevelCritical) - InvariantResult [Line: 419]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) || (((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) - InvariantResult [Line: 876]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 340]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 228]: Loop Invariant Derived loop invariant: (((((1 == systemActive && methaneLevelCritical <= 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) || (((pumpRunning == 0 && 0 == splverifierCounter) && 1 == methaneLevelCritical) && 0 == systemActive)) || ((1 == systemActive && 0 == splverifierCounter) && 1 == methaneLevelCritical)) || ((((methaneLevelCritical <= 0 && pumpRunning == 0) && 0 == splverifierCounter) && 0 <= methaneLevelCritical) && 0 == systemActive) - InvariantResult [Line: 920]: Loop Invariant Derived loop invariant: (((1 == systemActive && methaneLevelCritical <= 0) && 1 == waterLevel) && pumpRunning == 0) && 0 <= methaneLevelCritical - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 131 locations, 3 error locations. Result: SAFE, OverallTime: 3.4s, OverallIterations: 12, TraceHistogramMax: 2, AutomataDifference: 1.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 7.9s, HoareTripleCheckerStatistics: 1372 SDtfs, 1653 SDslu, 2302 SDs, 0 SdLazy, 354 SolverSat, 69 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.5s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 81 GetRequests, 32 SyntacticMatches, 0 SemanticMatches, 49 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 48 ImplicationChecksByTransitivity, 0.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=398occurred in iteration=9, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.3s AutomataMinimizationTime, 12 MinimizatonAttempts, 1655 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 56 LocationsWithAnnotation, 56 PreInvPairs, 240 NumberOfFragments, 969 HoareAnnotationTreeSize, 56 FomulaSimplifications, 365185 FormulaSimplificationTreeSizeReduction, 2.5s HoareSimplificationTime, 56 FomulaSimplificationsInter, 91817 FormulaSimplificationTreeSizeReductionInter, 5.3s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 0.7s InterpolantComputationTime, 378 NumberOfCodeBlocks, 378 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 366 ConstructedInterpolants, 0 QuantifiedInterpolants, 24990 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 27/27 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be correct! Received shutdown request...