./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version f470102c Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx12G -Xms1G -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash f3897e59b530ba955e2bc8f3ddb0621a99e3d436 ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Writing human readable error path to file UltimateCounterExample.errorpath Result: FALSE --- Real Ultimate output --- This is Ultimate 0.1.25-f470102 [2019-11-28 17:25:33,916 INFO L177 SettingsManager]: Resetting all preferences to default values... [2019-11-28 17:25:33,919 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2019-11-28 17:25:33,939 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2019-11-28 17:25:33,940 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2019-11-28 17:25:33,943 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2019-11-28 17:25:33,945 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2019-11-28 17:25:33,956 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2019-11-28 17:25:33,962 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2019-11-28 17:25:33,966 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2019-11-28 17:25:33,967 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2019-11-28 17:25:33,970 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2019-11-28 17:25:33,970 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2019-11-28 17:25:33,973 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2019-11-28 17:25:33,975 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2019-11-28 17:25:33,977 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2019-11-28 17:25:33,979 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2019-11-28 17:25:33,980 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2019-11-28 17:25:33,983 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2019-11-28 17:25:33,987 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2019-11-28 17:25:33,992 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2019-11-28 17:25:33,997 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2019-11-28 17:25:33,999 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2019-11-28 17:25:34,001 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2019-11-28 17:25:34,006 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2019-11-28 17:25:34,006 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2019-11-28 17:25:34,007 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2019-11-28 17:25:34,009 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2019-11-28 17:25:34,010 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2019-11-28 17:25:34,011 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2019-11-28 17:25:34,011 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2019-11-28 17:25:34,012 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2019-11-28 17:25:34,013 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2019-11-28 17:25:34,014 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2019-11-28 17:25:34,016 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2019-11-28 17:25:34,016 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2019-11-28 17:25:34,017 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2019-11-28 17:25:34,018 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2019-11-28 17:25:34,018 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2019-11-28 17:25:34,019 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2019-11-28 17:25:34,021 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2019-11-28 17:25:34,022 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2019-11-28 17:25:34,053 INFO L113 SettingsManager]: Loading preferences was successful [2019-11-28 17:25:34,055 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2019-11-28 17:25:34,057 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2019-11-28 17:25:34,058 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2019-11-28 17:25:34,058 INFO L138 SettingsManager]: * Use SBE=true [2019-11-28 17:25:34,058 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2019-11-28 17:25:34,059 INFO L138 SettingsManager]: * sizeof long=4 [2019-11-28 17:25:34,059 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2019-11-28 17:25:34,059 INFO L138 SettingsManager]: * sizeof POINTER=4 [2019-11-28 17:25:34,059 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2019-11-28 17:25:34,060 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2019-11-28 17:25:34,061 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2019-11-28 17:25:34,061 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2019-11-28 17:25:34,062 INFO L138 SettingsManager]: * sizeof long double=12 [2019-11-28 17:25:34,062 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2019-11-28 17:25:34,062 INFO L138 SettingsManager]: * Use constant arrays=true [2019-11-28 17:25:34,062 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2019-11-28 17:25:34,063 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2019-11-28 17:25:34,063 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2019-11-28 17:25:34,063 INFO L138 SettingsManager]: * To the following directory=./dump/ [2019-11-28 17:25:34,063 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2019-11-28 17:25:34,064 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 17:25:34,064 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2019-11-28 17:25:34,064 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2019-11-28 17:25:34,065 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2019-11-28 17:25:34,065 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2019-11-28 17:25:34,065 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2019-11-28 17:25:34,065 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2019-11-28 17:25:34,066 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2019-11-28 17:25:34,066 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(__VERIFIER_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> f3897e59b530ba955e2bc8f3ddb0621a99e3d436 [2019-11-28 17:25:34,382 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2019-11-28 17:25:34,394 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2019-11-28 17:25:34,400 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2019-11-28 17:25:34,401 INFO L271 PluginConnector]: Initializing CDTParser... [2019-11-28 17:25:34,402 INFO L275 PluginConnector]: CDTParser initialized [2019-11-28 17:25:34,403 INFO L428 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c [2019-11-28 17:25:34,484 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/c7876fb81/3ac51ffedeb2415d9c8b39ea79b55af4/FLAG9d9b4e394 [2019-11-28 17:25:35,023 INFO L306 CDTParser]: Found 1 translation units. [2019-11-28 17:25:35,023 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec2_productSimulator.cil.c [2019-11-28 17:25:35,036 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/c7876fb81/3ac51ffedeb2415d9c8b39ea79b55af4/FLAG9d9b4e394 [2019-11-28 17:25:35,338 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/c7876fb81/3ac51ffedeb2415d9c8b39ea79b55af4 [2019-11-28 17:25:35,342 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2019-11-28 17:25:35,344 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2019-11-28 17:25:35,345 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2019-11-28 17:25:35,345 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2019-11-28 17:25:35,349 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2019-11-28 17:25:35,350 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 05:25:35" (1/1) ... [2019-11-28 17:25:35,353 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@16617064 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:35, skipping insertion in model container [2019-11-28 17:25:35,353 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 05:25:35" (1/1) ... [2019-11-28 17:25:35,361 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2019-11-28 17:25:35,416 INFO L178 MainTranslator]: Built tables and reachable declarations [2019-11-28 17:25:35,864 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 17:25:35,889 INFO L203 MainTranslator]: Completed pre-run [2019-11-28 17:25:36,038 INFO L206 PostProcessor]: Analyzing one entry point: main [2019-11-28 17:25:36,091 INFO L208 MainTranslator]: Completed translation [2019-11-28 17:25:36,092 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36 WrapperNode [2019-11-28 17:25:36,092 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2019-11-28 17:25:36,093 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2019-11-28 17:25:36,093 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2019-11-28 17:25:36,093 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2019-11-28 17:25:36,103 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,124 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,249 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2019-11-28 17:25:36,250 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2019-11-28 17:25:36,250 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2019-11-28 17:25:36,250 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2019-11-28 17:25:36,260 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,261 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,277 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,277 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,316 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,351 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,372 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... [2019-11-28 17:25:36,391 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2019-11-28 17:25:36,392 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2019-11-28 17:25:36,392 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2019-11-28 17:25:36,392 INFO L275 PluginConnector]: RCFGBuilder initialized [2019-11-28 17:25:36,393 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2019-11-28 17:25:36,464 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2019-11-28 17:25:36,464 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2019-11-28 17:25:36,464 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2019-11-28 17:25:36,466 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2019-11-28 17:25:38,403 INFO L282 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2019-11-28 17:25:38,403 INFO L287 CfgBuilder]: Removed 902 assume(true) statements. [2019-11-28 17:25:38,405 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 05:25:38 BoogieIcfgContainer [2019-11-28 17:25:38,405 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2019-11-28 17:25:38,407 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2019-11-28 17:25:38,407 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2019-11-28 17:25:38,411 INFO L275 PluginConnector]: TraceAbstraction initialized [2019-11-28 17:25:38,411 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.11 05:25:35" (1/3) ... [2019-11-28 17:25:38,412 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6ac49548 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 05:25:38, skipping insertion in model container [2019-11-28 17:25:38,412 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 05:25:36" (2/3) ... [2019-11-28 17:25:38,413 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6ac49548 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 05:25:38, skipping insertion in model container [2019-11-28 17:25:38,413 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 05:25:38" (3/3) ... [2019-11-28 17:25:38,415 INFO L109 eAbstractionObserver]: Analyzing ICFG minepump_spec2_productSimulator.cil.c [2019-11-28 17:25:38,426 INFO L156 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2019-11-28 17:25:38,435 INFO L168 ceAbstractionStarter]: Appying trace abstraction to program that has 3 error locations. [2019-11-28 17:25:38,451 INFO L249 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2019-11-28 17:25:38,484 INFO L373 AbstractCegarLoop]: Interprodecural is true [2019-11-28 17:25:38,484 INFO L374 AbstractCegarLoop]: Hoare is true [2019-11-28 17:25:38,484 INFO L375 AbstractCegarLoop]: Compute interpolants for FPandBP [2019-11-28 17:25:38,484 INFO L376 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2019-11-28 17:25:38,487 INFO L377 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2019-11-28 17:25:38,487 INFO L378 AbstractCegarLoop]: Difference is false [2019-11-28 17:25:38,487 INFO L379 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2019-11-28 17:25:38,487 INFO L383 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2019-11-28 17:25:38,516 INFO L276 IsEmpty]: Start isEmpty. Operand 474 states. [2019-11-28 17:25:38,524 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2019-11-28 17:25:38,525 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:38,526 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:38,526 INFO L410 AbstractCegarLoop]: === Iteration 1 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:38,533 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:38,533 INFO L82 PathProgramCache]: Analyzing trace with hash -434502313, now seen corresponding path program 1 times [2019-11-28 17:25:38,544 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:38,545 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [252210376] [2019-11-28 17:25:38,545 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:38,765 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:38,924 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:38,925 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [252210376] [2019-11-28 17:25:38,925 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:38,926 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 17:25:38,927 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1709056851] [2019-11-28 17:25:38,932 INFO L442 AbstractCegarLoop]: Interpolant automaton has 2 states [2019-11-28 17:25:38,932 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:38,945 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2019-11-28 17:25:38,946 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 17:25:38,948 INFO L87 Difference]: Start difference. First operand 474 states. Second operand 2 states. [2019-11-28 17:25:39,024 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:39,024 INFO L93 Difference]: Finished difference Result 934 states and 1467 transitions. [2019-11-28 17:25:39,024 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2019-11-28 17:25:39,029 INFO L78 Accepts]: Start accepts. Automaton has 2 states. Word has length 25 [2019-11-28 17:25:39,030 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:39,048 INFO L225 Difference]: With dead ends: 934 [2019-11-28 17:25:39,048 INFO L226 Difference]: Without dead ends: 470 [2019-11-28 17:25:39,054 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2019-11-28 17:25:39,076 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 470 states. [2019-11-28 17:25:39,134 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 470 to 470. [2019-11-28 17:25:39,135 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 470 states. [2019-11-28 17:25:39,139 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 470 states to 470 states and 729 transitions. [2019-11-28 17:25:39,142 INFO L78 Accepts]: Start accepts. Automaton has 470 states and 729 transitions. Word has length 25 [2019-11-28 17:25:39,142 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:39,142 INFO L462 AbstractCegarLoop]: Abstraction has 470 states and 729 transitions. [2019-11-28 17:25:39,143 INFO L463 AbstractCegarLoop]: Interpolant automaton has 2 states. [2019-11-28 17:25:39,143 INFO L276 IsEmpty]: Start isEmpty. Operand 470 states and 729 transitions. [2019-11-28 17:25:39,144 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2019-11-28 17:25:39,144 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:39,144 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:39,145 INFO L410 AbstractCegarLoop]: === Iteration 2 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:39,145 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:39,145 INFO L82 PathProgramCache]: Analyzing trace with hash 10066668, now seen corresponding path program 1 times [2019-11-28 17:25:39,146 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:39,146 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1766397318] [2019-11-28 17:25:39,146 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:39,187 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:39,264 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:39,264 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1766397318] [2019-11-28 17:25:39,264 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:39,265 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 17:25:39,265 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1767344953] [2019-11-28 17:25:39,267 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:25:39,267 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:39,268 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:25:39,269 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:39,269 INFO L87 Difference]: Start difference. First operand 470 states and 729 transitions. Second operand 3 states. [2019-11-28 17:25:39,300 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:39,300 INFO L93 Difference]: Finished difference Result 470 states and 729 transitions. [2019-11-28 17:25:39,301 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:25:39,301 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 26 [2019-11-28 17:25:39,301 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:39,303 INFO L225 Difference]: With dead ends: 470 [2019-11-28 17:25:39,303 INFO L226 Difference]: Without dead ends: 174 [2019-11-28 17:25:39,305 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:39,305 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 174 states. [2019-11-28 17:25:39,317 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 174 to 174. [2019-11-28 17:25:39,317 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 174 states. [2019-11-28 17:25:39,319 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 174 states to 174 states and 266 transitions. [2019-11-28 17:25:39,320 INFO L78 Accepts]: Start accepts. Automaton has 174 states and 266 transitions. Word has length 26 [2019-11-28 17:25:39,320 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:39,320 INFO L462 AbstractCegarLoop]: Abstraction has 174 states and 266 transitions. [2019-11-28 17:25:39,320 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:25:39,322 INFO L276 IsEmpty]: Start isEmpty. Operand 174 states and 266 transitions. [2019-11-28 17:25:39,323 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2019-11-28 17:25:39,324 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:39,325 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:39,326 INFO L410 AbstractCegarLoop]: === Iteration 3 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:39,326 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:39,326 INFO L82 PathProgramCache]: Analyzing trace with hash 2146837231, now seen corresponding path program 1 times [2019-11-28 17:25:39,326 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:39,328 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [719399430] [2019-11-28 17:25:39,328 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:39,365 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:39,447 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:39,447 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [719399430] [2019-11-28 17:25:39,448 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:39,448 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2019-11-28 17:25:39,448 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [545243518] [2019-11-28 17:25:39,448 INFO L442 AbstractCegarLoop]: Interpolant automaton has 7 states [2019-11-28 17:25:39,449 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:39,449 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2019-11-28 17:25:39,450 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2019-11-28 17:25:39,450 INFO L87 Difference]: Start difference. First operand 174 states and 266 transitions. Second operand 7 states. [2019-11-28 17:25:39,691 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:39,691 INFO L93 Difference]: Finished difference Result 680 states and 1062 transitions. [2019-11-28 17:25:39,692 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2019-11-28 17:25:39,692 INFO L78 Accepts]: Start accepts. Automaton has 7 states. Word has length 32 [2019-11-28 17:25:39,693 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:39,696 INFO L225 Difference]: With dead ends: 680 [2019-11-28 17:25:39,696 INFO L226 Difference]: Without dead ends: 520 [2019-11-28 17:25:39,697 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2019-11-28 17:25:39,698 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 520 states. [2019-11-28 17:25:39,718 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 520 to 196. [2019-11-28 17:25:39,718 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 196 states. [2019-11-28 17:25:39,719 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 196 states to 196 states and 301 transitions. [2019-11-28 17:25:39,719 INFO L78 Accepts]: Start accepts. Automaton has 196 states and 301 transitions. Word has length 32 [2019-11-28 17:25:39,722 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:39,722 INFO L462 AbstractCegarLoop]: Abstraction has 196 states and 301 transitions. [2019-11-28 17:25:39,722 INFO L463 AbstractCegarLoop]: Interpolant automaton has 7 states. [2019-11-28 17:25:39,722 INFO L276 IsEmpty]: Start isEmpty. Operand 196 states and 301 transitions. [2019-11-28 17:25:39,724 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2019-11-28 17:25:39,725 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:39,725 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:39,725 INFO L410 AbstractCegarLoop]: === Iteration 4 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:39,726 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:39,726 INFO L82 PathProgramCache]: Analyzing trace with hash 1270376866, now seen corresponding path program 1 times [2019-11-28 17:25:39,726 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:39,726 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1218010693] [2019-11-28 17:25:39,727 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:39,783 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:39,880 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:39,881 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1218010693] [2019-11-28 17:25:39,881 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:39,881 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 17:25:39,881 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [639014013] [2019-11-28 17:25:39,883 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 17:25:39,883 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:39,883 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 17:25:39,884 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:25:39,884 INFO L87 Difference]: Start difference. First operand 196 states and 301 transitions. Second operand 5 states. [2019-11-28 17:25:40,279 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:40,280 INFO L93 Difference]: Finished difference Result 1065 states and 1693 transitions. [2019-11-28 17:25:40,280 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2019-11-28 17:25:40,280 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 35 [2019-11-28 17:25:40,281 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:40,288 INFO L225 Difference]: With dead ends: 1065 [2019-11-28 17:25:40,288 INFO L226 Difference]: Without dead ends: 883 [2019-11-28 17:25:40,290 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 17:25:40,291 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 883 states. [2019-11-28 17:25:40,330 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 883 to 370. [2019-11-28 17:25:40,331 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 370 states. [2019-11-28 17:25:40,332 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 370 states to 370 states and 573 transitions. [2019-11-28 17:25:40,332 INFO L78 Accepts]: Start accepts. Automaton has 370 states and 573 transitions. Word has length 35 [2019-11-28 17:25:40,333 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:40,333 INFO L462 AbstractCegarLoop]: Abstraction has 370 states and 573 transitions. [2019-11-28 17:25:40,333 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 17:25:40,333 INFO L276 IsEmpty]: Start isEmpty. Operand 370 states and 573 transitions. [2019-11-28 17:25:40,342 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2019-11-28 17:25:40,343 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:40,343 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:40,344 INFO L410 AbstractCegarLoop]: === Iteration 5 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:40,344 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:40,344 INFO L82 PathProgramCache]: Analyzing trace with hash 1380973999, now seen corresponding path program 1 times [2019-11-28 17:25:40,344 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:40,345 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [440271104] [2019-11-28 17:25:40,345 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:40,393 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:40,453 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:40,454 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [440271104] [2019-11-28 17:25:40,454 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:40,454 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 17:25:40,454 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1230512044] [2019-11-28 17:25:40,455 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 17:25:40,456 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:40,456 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 17:25:40,457 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:25:40,457 INFO L87 Difference]: Start difference. First operand 370 states and 573 transitions. Second operand 5 states. [2019-11-28 17:25:40,787 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:40,787 INFO L93 Difference]: Finished difference Result 1551 states and 2453 transitions. [2019-11-28 17:25:40,787 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2019-11-28 17:25:40,787 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 36 [2019-11-28 17:25:40,788 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:40,794 INFO L225 Difference]: With dead ends: 1551 [2019-11-28 17:25:40,794 INFO L226 Difference]: Without dead ends: 1195 [2019-11-28 17:25:40,796 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2019-11-28 17:25:40,797 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1195 states. [2019-11-28 17:25:40,824 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1195 to 385. [2019-11-28 17:25:40,825 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 385 states. [2019-11-28 17:25:40,826 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 385 states to 385 states and 576 transitions. [2019-11-28 17:25:40,826 INFO L78 Accepts]: Start accepts. Automaton has 385 states and 576 transitions. Word has length 36 [2019-11-28 17:25:40,827 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:40,827 INFO L462 AbstractCegarLoop]: Abstraction has 385 states and 576 transitions. [2019-11-28 17:25:40,827 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 17:25:40,827 INFO L276 IsEmpty]: Start isEmpty. Operand 385 states and 576 transitions. [2019-11-28 17:25:40,828 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2019-11-28 17:25:40,828 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:40,828 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:40,829 INFO L410 AbstractCegarLoop]: === Iteration 6 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:40,829 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:40,829 INFO L82 PathProgramCache]: Analyzing trace with hash 1093992796, now seen corresponding path program 1 times [2019-11-28 17:25:40,829 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:40,830 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [107437628] [2019-11-28 17:25:40,830 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:40,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:40,894 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:40,895 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [107437628] [2019-11-28 17:25:40,896 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:40,896 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2019-11-28 17:25:40,896 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1638748134] [2019-11-28 17:25:40,896 INFO L442 AbstractCegarLoop]: Interpolant automaton has 5 states [2019-11-28 17:25:40,897 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:40,898 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2019-11-28 17:25:40,898 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:25:40,898 INFO L87 Difference]: Start difference. First operand 385 states and 576 transitions. Second operand 5 states. [2019-11-28 17:25:41,110 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:41,110 INFO L93 Difference]: Finished difference Result 1012 states and 1506 transitions. [2019-11-28 17:25:41,110 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2019-11-28 17:25:41,111 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 44 [2019-11-28 17:25:41,111 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:41,115 INFO L225 Difference]: With dead ends: 1012 [2019-11-28 17:25:41,116 INFO L226 Difference]: Without dead ends: 641 [2019-11-28 17:25:41,117 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2019-11-28 17:25:41,119 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 641 states. [2019-11-28 17:25:41,146 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 641 to 433. [2019-11-28 17:25:41,147 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 433 states. [2019-11-28 17:25:41,148 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 433 states to 433 states and 624 transitions. [2019-11-28 17:25:41,149 INFO L78 Accepts]: Start accepts. Automaton has 433 states and 624 transitions. Word has length 44 [2019-11-28 17:25:41,149 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:41,149 INFO L462 AbstractCegarLoop]: Abstraction has 433 states and 624 transitions. [2019-11-28 17:25:41,150 INFO L463 AbstractCegarLoop]: Interpolant automaton has 5 states. [2019-11-28 17:25:41,150 INFO L276 IsEmpty]: Start isEmpty. Operand 433 states and 624 transitions. [2019-11-28 17:25:41,151 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2019-11-28 17:25:41,151 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:41,154 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:41,155 INFO L410 AbstractCegarLoop]: === Iteration 7 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:41,156 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:41,156 INFO L82 PathProgramCache]: Analyzing trace with hash 1352158234, now seen corresponding path program 1 times [2019-11-28 17:25:41,156 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:41,157 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1588084520] [2019-11-28 17:25:41,157 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:41,184 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:41,224 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:41,226 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1588084520] [2019-11-28 17:25:41,226 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:41,226 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2019-11-28 17:25:41,226 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1822502218] [2019-11-28 17:25:41,227 INFO L442 AbstractCegarLoop]: Interpolant automaton has 4 states [2019-11-28 17:25:41,227 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:41,227 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2019-11-28 17:25:41,228 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2019-11-28 17:25:41,232 INFO L87 Difference]: Start difference. First operand 433 states and 624 transitions. Second operand 4 states. [2019-11-28 17:25:41,389 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:41,389 INFO L93 Difference]: Finished difference Result 1040 states and 1486 transitions. [2019-11-28 17:25:41,390 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2019-11-28 17:25:41,390 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 44 [2019-11-28 17:25:41,390 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:41,395 INFO L225 Difference]: With dead ends: 1040 [2019-11-28 17:25:41,395 INFO L226 Difference]: Without dead ends: 621 [2019-11-28 17:25:41,397 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2019-11-28 17:25:41,399 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 621 states. [2019-11-28 17:25:41,439 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 621 to 465. [2019-11-28 17:25:41,439 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 465 states. [2019-11-28 17:25:41,441 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 465 states to 465 states and 656 transitions. [2019-11-28 17:25:41,442 INFO L78 Accepts]: Start accepts. Automaton has 465 states and 656 transitions. Word has length 44 [2019-11-28 17:25:41,443 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:41,443 INFO L462 AbstractCegarLoop]: Abstraction has 465 states and 656 transitions. [2019-11-28 17:25:41,444 INFO L463 AbstractCegarLoop]: Interpolant automaton has 4 states. [2019-11-28 17:25:41,444 INFO L276 IsEmpty]: Start isEmpty. Operand 465 states and 656 transitions. [2019-11-28 17:25:41,446 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2019-11-28 17:25:41,446 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:41,447 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:41,447 INFO L410 AbstractCegarLoop]: === Iteration 8 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:41,447 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:41,448 INFO L82 PathProgramCache]: Analyzing trace with hash 341040984, now seen corresponding path program 1 times [2019-11-28 17:25:41,448 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:41,449 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1307889122] [2019-11-28 17:25:41,449 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:41,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:41,566 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:41,567 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1307889122] [2019-11-28 17:25:41,568 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:41,569 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2019-11-28 17:25:41,569 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [716521852] [2019-11-28 17:25:41,570 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:25:41,570 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:41,570 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:25:41,571 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:41,571 INFO L87 Difference]: Start difference. First operand 465 states and 656 transitions. Second operand 3 states. [2019-11-28 17:25:41,689 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:41,690 INFO L93 Difference]: Finished difference Result 1072 states and 1510 transitions. [2019-11-28 17:25:41,690 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:25:41,690 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 44 [2019-11-28 17:25:41,691 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:41,696 INFO L225 Difference]: With dead ends: 1072 [2019-11-28 17:25:41,697 INFO L226 Difference]: Without dead ends: 621 [2019-11-28 17:25:41,698 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:41,700 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 621 states. [2019-11-28 17:25:41,751 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 621 to 621. [2019-11-28 17:25:41,752 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 621 states. [2019-11-28 17:25:41,755 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 621 states to 621 states and 856 transitions. [2019-11-28 17:25:41,755 INFO L78 Accepts]: Start accepts. Automaton has 621 states and 856 transitions. Word has length 44 [2019-11-28 17:25:41,756 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:41,756 INFO L462 AbstractCegarLoop]: Abstraction has 621 states and 856 transitions. [2019-11-28 17:25:41,756 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:25:41,756 INFO L276 IsEmpty]: Start isEmpty. Operand 621 states and 856 transitions. [2019-11-28 17:25:41,758 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2019-11-28 17:25:41,758 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:41,758 INFO L410 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:41,759 INFO L410 AbstractCegarLoop]: === Iteration 9 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:41,759 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:41,759 INFO L82 PathProgramCache]: Analyzing trace with hash 772865075, now seen corresponding path program 1 times [2019-11-28 17:25:41,760 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:41,760 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1389042356] [2019-11-28 17:25:41,761 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:41,786 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:41,825 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:41,825 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1389042356] [2019-11-28 17:25:41,825 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:41,826 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 17:25:41,826 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [708172575] [2019-11-28 17:25:41,826 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:25:41,827 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:41,828 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:25:41,829 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:41,829 INFO L87 Difference]: Start difference. First operand 621 states and 856 transitions. Second operand 3 states. [2019-11-28 17:25:41,927 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:41,928 INFO L93 Difference]: Finished difference Result 1008 states and 1401 transitions. [2019-11-28 17:25:41,928 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:25:41,929 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 45 [2019-11-28 17:25:41,930 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:41,936 INFO L225 Difference]: With dead ends: 1008 [2019-11-28 17:25:41,936 INFO L226 Difference]: Without dead ends: 1006 [2019-11-28 17:25:41,937 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:41,939 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1006 states. [2019-11-28 17:25:42,010 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1006 to 771. [2019-11-28 17:25:42,011 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 771 states. [2019-11-28 17:25:42,015 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 771 states to 771 states and 1087 transitions. [2019-11-28 17:25:42,015 INFO L78 Accepts]: Start accepts. Automaton has 771 states and 1087 transitions. Word has length 45 [2019-11-28 17:25:42,016 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:42,016 INFO L462 AbstractCegarLoop]: Abstraction has 771 states and 1087 transitions. [2019-11-28 17:25:42,016 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:25:42,016 INFO L276 IsEmpty]: Start isEmpty. Operand 771 states and 1087 transitions. [2019-11-28 17:25:42,018 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2019-11-28 17:25:42,019 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:42,019 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:42,019 INFO L410 AbstractCegarLoop]: === Iteration 10 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:42,019 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:42,020 INFO L82 PathProgramCache]: Analyzing trace with hash 883644073, now seen corresponding path program 1 times [2019-11-28 17:25:42,020 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:42,020 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1652476547] [2019-11-28 17:25:42,020 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:42,042 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:42,092 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 20 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:42,093 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1652476547] [2019-11-28 17:25:42,093 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:42,093 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 17:25:42,094 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1992584349] [2019-11-28 17:25:42,094 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:25:42,094 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:42,095 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:25:42,099 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:42,099 INFO L87 Difference]: Start difference. First operand 771 states and 1087 transitions. Second operand 3 states. [2019-11-28 17:25:42,288 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:42,288 INFO L93 Difference]: Finished difference Result 1623 states and 2315 transitions. [2019-11-28 17:25:42,288 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:25:42,288 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 66 [2019-11-28 17:25:42,289 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:42,293 INFO L225 Difference]: With dead ends: 1623 [2019-11-28 17:25:42,294 INFO L226 Difference]: Without dead ends: 1022 [2019-11-28 17:25:42,296 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:42,297 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1022 states. [2019-11-28 17:25:42,357 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1022 to 1020. [2019-11-28 17:25:42,357 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1020 states. [2019-11-28 17:25:42,362 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1020 states to 1020 states and 1419 transitions. [2019-11-28 17:25:42,363 INFO L78 Accepts]: Start accepts. Automaton has 1020 states and 1419 transitions. Word has length 66 [2019-11-28 17:25:42,363 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:42,363 INFO L462 AbstractCegarLoop]: Abstraction has 1020 states and 1419 transitions. [2019-11-28 17:25:42,363 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:25:42,363 INFO L276 IsEmpty]: Start isEmpty. Operand 1020 states and 1419 transitions. [2019-11-28 17:25:42,366 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2019-11-28 17:25:42,366 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:42,366 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:42,366 INFO L410 AbstractCegarLoop]: === Iteration 11 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:42,367 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:42,367 INFO L82 PathProgramCache]: Analyzing trace with hash 625478635, now seen corresponding path program 1 times [2019-11-28 17:25:42,367 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:42,367 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1860485745] [2019-11-28 17:25:42,367 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:42,389 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2019-11-28 17:25:42,433 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 20 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2019-11-28 17:25:42,433 INFO L348 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1860485745] [2019-11-28 17:25:42,434 INFO L220 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2019-11-28 17:25:42,434 INFO L233 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2019-11-28 17:25:42,434 INFO L156 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [937046594] [2019-11-28 17:25:42,435 INFO L442 AbstractCegarLoop]: Interpolant automaton has 3 states [2019-11-28 17:25:42,435 INFO L143 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2019-11-28 17:25:42,435 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2019-11-28 17:25:42,436 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:42,436 INFO L87 Difference]: Start difference. First operand 1020 states and 1419 transitions. Second operand 3 states. [2019-11-28 17:25:42,577 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2019-11-28 17:25:42,578 INFO L93 Difference]: Finished difference Result 2326 states and 3260 transitions. [2019-11-28 17:25:42,578 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2019-11-28 17:25:42,578 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 66 [2019-11-28 17:25:42,578 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2019-11-28 17:25:42,584 INFO L225 Difference]: With dead ends: 2326 [2019-11-28 17:25:42,585 INFO L226 Difference]: Without dead ends: 1320 [2019-11-28 17:25:42,587 INFO L630 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2019-11-28 17:25:42,589 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1320 states. [2019-11-28 17:25:42,665 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1320 to 1320. [2019-11-28 17:25:42,666 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1320 states. [2019-11-28 17:25:42,670 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1320 states to 1320 states and 1808 transitions. [2019-11-28 17:25:42,670 INFO L78 Accepts]: Start accepts. Automaton has 1320 states and 1808 transitions. Word has length 66 [2019-11-28 17:25:42,671 INFO L84 Accepts]: Finished accepts. word is rejected. [2019-11-28 17:25:42,671 INFO L462 AbstractCegarLoop]: Abstraction has 1320 states and 1808 transitions. [2019-11-28 17:25:42,671 INFO L463 AbstractCegarLoop]: Interpolant automaton has 3 states. [2019-11-28 17:25:42,671 INFO L276 IsEmpty]: Start isEmpty. Operand 1320 states and 1808 transitions. [2019-11-28 17:25:42,674 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2019-11-28 17:25:42,674 INFO L402 BasicCegarLoop]: Found error trace [2019-11-28 17:25:42,674 INFO L410 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2019-11-28 17:25:42,675 INFO L410 AbstractCegarLoop]: === Iteration 12 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION]=== [2019-11-28 17:25:42,675 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2019-11-28 17:25:42,675 INFO L82 PathProgramCache]: Analyzing trace with hash -1336211215, now seen corresponding path program 1 times [2019-11-28 17:25:42,676 INFO L163 FreeRefinementEngine]: Executing refinement strategy CAMEL [2019-11-28 17:25:42,676 INFO L348 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [508945909] [2019-11-28 17:25:42,676 INFO L94 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2019-11-28 17:25:42,730 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2019-11-28 17:25:42,784 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2019-11-28 17:25:42,871 INFO L174 FreeRefinementEngine]: Strategy CAMEL found a feasible trace [2019-11-28 17:25:42,871 INFO L475 BasicCegarLoop]: Counterexample might be feasible [2019-11-28 17:25:43,087 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.11 05:25:43 BoogieIcfgContainer [2019-11-28 17:25:43,087 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2019-11-28 17:25:43,088 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2019-11-28 17:25:43,088 INFO L271 PluginConnector]: Initializing Witness Printer... [2019-11-28 17:25:43,088 INFO L275 PluginConnector]: Witness Printer initialized [2019-11-28 17:25:43,089 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 05:25:38" (3/4) ... [2019-11-28 17:25:43,092 INFO L131 WitnessPrinter]: Generating witness for reachability counterexample [2019-11-28 17:25:43,328 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2019-11-28 17:25:43,328 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2019-11-28 17:25:43,331 INFO L168 Benchmark]: Toolchain (without parser) took 7987.11 ms. Allocated memory was 1.0 GB in the beginning and 1.4 GB in the end (delta: 327.2 MB). Free memory was 960.4 MB in the beginning and 1.1 GB in the end (delta: -118.8 MB). Peak memory consumption was 208.3 MB. Max. memory is 11.5 GB. [2019-11-28 17:25:43,331 INFO L168 Benchmark]: CDTParser took 0.70 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. [2019-11-28 17:25:43,332 INFO L168 Benchmark]: CACSL2BoogieTranslator took 747.66 ms. Allocated memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: 132.1 MB). Free memory was 960.4 MB in the beginning and 1.1 GB in the end (delta: -146.8 MB). Peak memory consumption was 25.5 MB. Max. memory is 11.5 GB. [2019-11-28 17:25:43,332 INFO L168 Benchmark]: Boogie Procedure Inliner took 156.39 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 13.3 MB). Peak memory consumption was 13.3 MB. Max. memory is 11.5 GB. [2019-11-28 17:25:43,333 INFO L168 Benchmark]: Boogie Preprocessor took 142.01 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 6.7 MB). Peak memory consumption was 6.7 MB. Max. memory is 11.5 GB. [2019-11-28 17:25:43,333 INFO L168 Benchmark]: RCFGBuilder took 2013.59 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 928.6 MB in the end (delta: 158.6 MB). Peak memory consumption was 158.6 MB. Max. memory is 11.5 GB. [2019-11-28 17:25:43,334 INFO L168 Benchmark]: TraceAbstraction took 4680.75 ms. Allocated memory was 1.2 GB in the beginning and 1.4 GB in the end (delta: 195.0 MB). Free memory was 928.6 MB in the beginning and 1.1 GB in the end (delta: -188.7 MB). Peak memory consumption was 6.4 MB. Max. memory is 11.5 GB. [2019-11-28 17:25:43,334 INFO L168 Benchmark]: Witness Printer took 240.68 ms. Allocated memory is still 1.4 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 38.1 MB). Peak memory consumption was 38.1 MB. Max. memory is 11.5 GB. [2019-11-28 17:25:43,337 INFO L335 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.70 ms. Allocated memory is still 1.0 GB. Free memory is still 987.2 MB. There was no memory consumed. Max. memory is 11.5 GB. * CACSL2BoogieTranslator took 747.66 ms. Allocated memory was 1.0 GB in the beginning and 1.2 GB in the end (delta: 132.1 MB). Free memory was 960.4 MB in the beginning and 1.1 GB in the end (delta: -146.8 MB). Peak memory consumption was 25.5 MB. Max. memory is 11.5 GB. * Boogie Procedure Inliner took 156.39 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 13.3 MB). Peak memory consumption was 13.3 MB. Max. memory is 11.5 GB. * Boogie Preprocessor took 142.01 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 6.7 MB). Peak memory consumption was 6.7 MB. Max. memory is 11.5 GB. * RCFGBuilder took 2013.59 ms. Allocated memory is still 1.2 GB. Free memory was 1.1 GB in the beginning and 928.6 MB in the end (delta: 158.6 MB). Peak memory consumption was 158.6 MB. Max. memory is 11.5 GB. * TraceAbstraction took 4680.75 ms. Allocated memory was 1.2 GB in the beginning and 1.4 GB in the end (delta: 195.0 MB). Free memory was 928.6 MB in the beginning and 1.1 GB in the end (delta: -188.7 MB). Peak memory consumption was 6.4 MB. Max. memory is 11.5 GB. * Witness Printer took 240.68 ms. Allocated memory is still 1.4 GB. Free memory was 1.1 GB in the beginning and 1.1 GB in the end (delta: 38.1 MB). Peak memory consumption was 38.1 MB. Max. memory is 11.5 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - CounterExampleResult [Line: 1087]: a call of __VERIFIER_error() is reachable a call of __VERIFIER_error() is reachable We found a FailurePath: [L40] int __SELECTED_FEATURE_base ; [L41] int __SELECTED_FEATURE_highWaterSensor ; [L42] int __SELECTED_FEATURE_lowWaterSensor ; [L43] int __SELECTED_FEATURE_methaneQuery ; [L44] int __SELECTED_FEATURE_methaneAlarm ; [L45] int __SELECTED_FEATURE_stopCommand ; [L46] int __SELECTED_FEATURE_startCommand ; [L47] int __GUIDSL_ROOT_PRODUCTION ; [L56] int waterLevel = 1; [L57] int methaneLevelCritical = 0; [L166] int pumpRunning = 0; [L167] int systemActive = 1; [L498] int cleanupTimeShifts = 4; [L678] int methAndRunningLastTime ; [L886] static struct __ACC__ERR *head = (struct __ACC__ERR *)0; VAL [__GUIDSL_ROOT_PRODUCTION=0, __SELECTED_FEATURE_base=0, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L577] int retValue_acc ; [L578] int tmp ; [L1123] __GUIDSL_ROOT_PRODUCTION = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=0, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1108] __SELECTED_FEATURE_base = 1 [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1109] __SELECTED_FEATURE_highWaterSensor = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1110] __SELECTED_FEATURE_lowWaterSensor = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1111] __SELECTED_FEATURE_methaneQuery = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1112] __SELECTED_FEATURE_methaneAlarm = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1113] __SELECTED_FEATURE_stopCommand = select_one() [L1094] int retValue_acc ; [L1095] int choice = __VERIFIER_nondet_int(); [L1098] retValue_acc = choice [L1099] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1114] __SELECTED_FEATURE_startCommand = select_one() [L1128] int retValue_acc ; [L1131] retValue_acc = __SELECTED_FEATURE_base [L1132] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L584] tmp = valid_product() [L586] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L683] methAndRunningLastTime = 0 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L601] int splverifierCounter ; [L602] int tmp ; [L603] int tmp___0 ; [L604] int tmp___1 ; [L605] int tmp___2 ; [L608] splverifierCounter = 0 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L610] COND TRUE 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L612] COND TRUE splverifierCounter < 4 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L618] tmp = __VERIFIER_nondet_int() [L620] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L74] COND TRUE waterLevel < 2 [L75] waterLevel = waterLevel + 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L628] tmp___0 = __VERIFIER_nondet_int() [L630] COND TRUE \read(tmp___0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L86] COND FALSE !(\read(methaneLevelCritical)) [L89] methaneLevelCritical = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L638] tmp___2 = __VERIFIER_nondet_int() [L640] COND FALSE !(\read(tmp___2)) [L650] tmp___1 = __VERIFIER_nondet_int() [L652] COND FALSE !(\read(tmp___1)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L174] COND FALSE !(\read(pumpRunning)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L181] COND TRUE \read(systemActive) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L317] COND FALSE !(\read(__SELECTED_FEATURE_methaneAlarm)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L274] COND FALSE !(\read(__SELECTED_FEATURE_lowWaterSensor)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L231] COND TRUE \read(__SELECTED_FEATURE_highWaterSensor) [L203] int tmp ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L206] COND TRUE ! pumpRunning [L437] int retValue_acc ; [L438] int tmp ; [L439] int tmp___0 ; [L136] int retValue_acc ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L139] COND FALSE !(waterLevel < 2) [L143] retValue_acc = 0 [L144] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L443] tmp = isHighWaterSensorDry() [L445] COND FALSE !(\read(tmp)) [L448] tmp___0 = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L450] retValue_acc = tmp___0 [L451] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L208] tmp = isHighWaterLevel() [L210] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=0, systemActive=1, waterLevel=2] [L359] COND FALSE !(\read(__SELECTED_FEATURE_methaneQuery)) [L334] pumpRunning = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L688] int tmp ; [L689] int tmp___0 ; [L95] int retValue_acc ; [L98] retValue_acc = methaneLevelCritical [L99] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L693] tmp = isMethaneLevelCritical() [L695] COND TRUE \read(tmp) [L392] int retValue_acc ; [L395] retValue_acc = pumpRunning [L396] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L697] tmp___0 = isPumpRunning() [L699] COND TRUE \read(tmp___0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=0, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L700] COND FALSE !(\read(methAndRunningLastTime)) [L705] methAndRunningLastTime = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L610] COND TRUE 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L612] COND TRUE splverifierCounter < 4 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L618] tmp = __VERIFIER_nondet_int() [L620] COND FALSE !(\read(tmp)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L628] tmp___0 = __VERIFIER_nondet_int() [L630] COND FALSE !(\read(tmp___0)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L638] tmp___2 = __VERIFIER_nondet_int() [L640] COND FALSE !(\read(tmp___2)) [L650] tmp___1 = __VERIFIER_nondet_int() [L652] COND FALSE !(\read(tmp___1)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L174] COND TRUE \read(pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=2] [L62] COND TRUE waterLevel > 0 [L63] waterLevel = waterLevel - 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L181] COND TRUE \read(systemActive) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L317] COND FALSE !(\read(__SELECTED_FEATURE_methaneAlarm)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L274] COND FALSE !(\read(__SELECTED_FEATURE_lowWaterSensor)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L231] COND TRUE \read(__SELECTED_FEATURE_highWaterSensor) [L203] int tmp ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L206] COND FALSE !(! pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L688] int tmp ; [L689] int tmp___0 ; [L95] int retValue_acc ; [L98] retValue_acc = methaneLevelCritical [L99] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L693] tmp = isMethaneLevelCritical() [L695] COND TRUE \read(tmp) [L392] int retValue_acc ; [L395] retValue_acc = pumpRunning [L396] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L697] tmp___0 = isPumpRunning() [L699] COND TRUE \read(tmp___0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L700] COND TRUE \read(methAndRunningLastTime) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] [L1087] __VERIFIER_error() VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methAndRunningLastTime=1, methaneLevelCritical=1, pumpRunning=1, systemActive=1, waterLevel=1] - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 474 locations, 3 error locations. Result: UNSAFE, OverallTime: 4.3s, OverallIterations: 12, TraceHistogramMax: 2, AutomataDifference: 2.1s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, HoareTripleCheckerStatistics: 3862 SDtfs, 5018 SDslu, 5943 SDs, 0 SdLazy, 575 SolverSat, 151 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.8s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 56 GetRequests, 21 SyntacticMatches, 0 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1320occurred in iteration=11, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 11 MinimizatonAttempts, 2248 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 0.7s InterpolantComputationTime, 530 NumberOfCodeBlocks, 530 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 452 ConstructedInterpolants, 0 QuantifiedInterpolants, 41200 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 11 InterpolantComputations, 11 PerfectInterpolantSequences, 40/40 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be incorrect! Received shutdown request...