./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/email_spec0_product05.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a4ecdabc Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/data/config -Xmx15G -Xms4m -jar /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/data -tc /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/email_spec0_product05.cil.c -s /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash ec4497e08a1792200bf5eff0342ec51442e382a3 ........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.0-a4ecdab [2020-11-28 03:15:41,811 INFO L177 SettingsManager]: Resetting all preferences to default values... [2020-11-28 03:15:41,815 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2020-11-28 03:15:41,897 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2020-11-28 03:15:41,898 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2020-11-28 03:15:41,899 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2020-11-28 03:15:41,901 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2020-11-28 03:15:41,913 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2020-11-28 03:15:41,915 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2020-11-28 03:15:41,917 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2020-11-28 03:15:41,918 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2020-11-28 03:15:41,919 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2020-11-28 03:15:41,920 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2020-11-28 03:15:41,921 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2020-11-28 03:15:41,922 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2020-11-28 03:15:41,924 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2020-11-28 03:15:41,925 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2020-11-28 03:15:41,926 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2020-11-28 03:15:41,935 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2020-11-28 03:15:41,943 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2020-11-28 03:15:41,946 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2020-11-28 03:15:41,948 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2020-11-28 03:15:41,950 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2020-11-28 03:15:41,951 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2020-11-28 03:15:41,960 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2020-11-28 03:15:41,961 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2020-11-28 03:15:41,961 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2020-11-28 03:15:41,964 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2020-11-28 03:15:41,965 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2020-11-28 03:15:41,966 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2020-11-28 03:15:41,967 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2020-11-28 03:15:41,968 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2020-11-28 03:15:41,970 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2020-11-28 03:15:41,972 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2020-11-28 03:15:41,973 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2020-11-28 03:15:41,973 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2020-11-28 03:15:41,975 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2020-11-28 03:15:41,975 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2020-11-28 03:15:41,975 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2020-11-28 03:15:41,976 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2020-11-28 03:15:41,977 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2020-11-28 03:15:41,980 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2020-11-28 03:15:42,021 INFO L113 SettingsManager]: Loading preferences was successful [2020-11-28 03:15:42,021 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2020-11-28 03:15:42,023 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2020-11-28 03:15:42,024 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2020-11-28 03:15:42,024 INFO L138 SettingsManager]: * Use SBE=true [2020-11-28 03:15:42,024 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2020-11-28 03:15:42,025 INFO L138 SettingsManager]: * sizeof long=4 [2020-11-28 03:15:42,025 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2020-11-28 03:15:42,025 INFO L138 SettingsManager]: * sizeof POINTER=4 [2020-11-28 03:15:42,025 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2020-11-28 03:15:42,027 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2020-11-28 03:15:42,027 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2020-11-28 03:15:42,027 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2020-11-28 03:15:42,027 INFO L138 SettingsManager]: * sizeof long double=12 [2020-11-28 03:15:42,028 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2020-11-28 03:15:42,028 INFO L138 SettingsManager]: * Use constant arrays=true [2020-11-28 03:15:42,028 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2020-11-28 03:15:42,028 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2020-11-28 03:15:42,029 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2020-11-28 03:15:42,029 INFO L138 SettingsManager]: * To the following directory=./dump/ [2020-11-28 03:15:42,029 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2020-11-28 03:15:42,029 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2020-11-28 03:15:42,030 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2020-11-28 03:15:42,030 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2020-11-28 03:15:42,030 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2020-11-28 03:15:42,030 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2020-11-28 03:15:42,031 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2020-11-28 03:15:42,031 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2020-11-28 03:15:42,031 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2020-11-28 03:15:42,031 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> ec4497e08a1792200bf5eff0342ec51442e382a3 [2020-11-28 03:15:42,366 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2020-11-28 03:15:42,398 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2020-11-28 03:15:42,403 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2020-11-28 03:15:42,405 INFO L271 PluginConnector]: Initializing CDTParser... [2020-11-28 03:15:42,407 INFO L275 PluginConnector]: CDTParser initialized [2020-11-28 03:15:42,408 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/../../sv-benchmarks/c/product-lines/email_spec0_product05.cil.c [2020-11-28 03:15:42,500 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/data/9243338ce/5ed51df2618749d6816dba705d94864b/FLAG936d2012c [2020-11-28 03:15:43,185 INFO L306 CDTParser]: Found 1 translation units. [2020-11-28 03:15:43,191 INFO L160 CDTParser]: Scanning /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/sv-benchmarks/c/product-lines/email_spec0_product05.cil.c [2020-11-28 03:15:43,226 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/data/9243338ce/5ed51df2618749d6816dba705d94864b/FLAG936d2012c [2020-11-28 03:15:43,430 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/data/9243338ce/5ed51df2618749d6816dba705d94864b [2020-11-28 03:15:43,438 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2020-11-28 03:15:43,441 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2020-11-28 03:15:43,443 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2020-11-28 03:15:43,444 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2020-11-28 03:15:43,447 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2020-11-28 03:15:43,448 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 03:15:43" (1/1) ... [2020-11-28 03:15:43,451 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6be6b624 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:43, skipping insertion in model container [2020-11-28 03:15:43,451 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 03:15:43" (1/1) ... [2020-11-28 03:15:43,459 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2020-11-28 03:15:43,544 INFO L178 MainTranslator]: Built tables and reachable declarations [2020-11-28 03:15:44,088 INFO L206 PostProcessor]: Analyzing one entry point: main [2020-11-28 03:15:44,102 INFO L203 MainTranslator]: Completed pre-run [2020-11-28 03:15:44,256 INFO L206 PostProcessor]: Analyzing one entry point: main [2020-11-28 03:15:44,335 INFO L208 MainTranslator]: Completed translation [2020-11-28 03:15:44,336 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44 WrapperNode [2020-11-28 03:15:44,336 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2020-11-28 03:15:44,338 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2020-11-28 03:15:44,339 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2020-11-28 03:15:44,339 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2020-11-28 03:15:44,347 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,389 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,471 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2020-11-28 03:15:44,472 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2020-11-28 03:15:44,473 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2020-11-28 03:15:44,473 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2020-11-28 03:15:44,482 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,483 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,496 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,496 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,514 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,521 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,527 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... [2020-11-28 03:15:44,535 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2020-11-28 03:15:44,536 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2020-11-28 03:15:44,536 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2020-11-28 03:15:44,536 INFO L275 PluginConnector]: RCFGBuilder initialized [2020-11-28 03:15:44,545 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (1/1) ... No working directory specified, using /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2020-11-28 03:15:44,630 INFO L130 BoogieDeclarations]: Found specification of procedure puts [2020-11-28 03:15:44,630 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2020-11-28 03:15:44,630 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2020-11-28 03:15:44,630 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2020-11-28 03:15:44,631 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2020-11-28 03:15:46,047 INFO L293 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2020-11-28 03:15:46,048 INFO L298 CfgBuilder]: Removed 131 assume(true) statements. [2020-11-28 03:15:46,050 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 03:15:46 BoogieIcfgContainer [2020-11-28 03:15:46,051 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2020-11-28 03:15:46,053 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2020-11-28 03:15:46,053 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2020-11-28 03:15:46,057 INFO L275 PluginConnector]: TraceAbstraction initialized [2020-11-28 03:15:46,057 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.11 03:15:43" (1/3) ... [2020-11-28 03:15:46,058 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@5bb8bee6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 03:15:46, skipping insertion in model container [2020-11-28 03:15:46,058 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 03:15:44" (2/3) ... [2020-11-28 03:15:46,059 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@5bb8bee6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 03:15:46, skipping insertion in model container [2020-11-28 03:15:46,059 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 03:15:46" (3/3) ... [2020-11-28 03:15:46,060 INFO L111 eAbstractionObserver]: Analyzing ICFG email_spec0_product05.cil.c [2020-11-28 03:15:46,071 INFO L164 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2020-11-28 03:15:46,075 INFO L176 ceAbstractionStarter]: Appying trace abstraction to program that has 2 error locations. [2020-11-28 03:15:46,085 INFO L253 AbstractCegarLoop]: Starting to check reachability of 2 error locations. [2020-11-28 03:15:46,110 INFO L377 AbstractCegarLoop]: Interprodecural is true [2020-11-28 03:15:46,110 INFO L378 AbstractCegarLoop]: Hoare is true [2020-11-28 03:15:46,111 INFO L379 AbstractCegarLoop]: Compute interpolants for FPandBP [2020-11-28 03:15:46,111 INFO L380 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2020-11-28 03:15:46,111 INFO L381 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2020-11-28 03:15:46,111 INFO L382 AbstractCegarLoop]: Difference is false [2020-11-28 03:15:46,111 INFO L383 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2020-11-28 03:15:46,112 INFO L387 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2020-11-28 03:15:46,132 INFO L276 IsEmpty]: Start isEmpty. Operand 136 states. [2020-11-28 03:15:46,141 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2020-11-28 03:15:46,141 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:46,142 INFO L422 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:46,142 INFO L429 AbstractCegarLoop]: === Iteration 1 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:46,147 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:46,147 INFO L82 PathProgramCache]: Analyzing trace with hash -1721357046, now seen corresponding path program 1 times [2020-11-28 03:15:46,155 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:46,156 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1616092685] [2020-11-28 03:15:46,156 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:46,419 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:46,556 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:46,557 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1616092685] [2020-11-28 03:15:46,558 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:46,558 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2020-11-28 03:15:46,559 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [728174548] [2020-11-28 03:15:46,564 INFO L461 AbstractCegarLoop]: Interpolant automaton has 2 states [2020-11-28 03:15:46,564 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:46,581 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2020-11-28 03:15:46,582 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2020-11-28 03:15:46,583 INFO L87 Difference]: Start difference. First operand 136 states. Second operand 2 states. [2020-11-28 03:15:46,639 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:46,640 INFO L93 Difference]: Finished difference Result 223 states and 349 transitions. [2020-11-28 03:15:46,640 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2020-11-28 03:15:46,641 INFO L78 Accepts]: Start accepts. Automaton has 2 states. Word has length 34 [2020-11-28 03:15:46,642 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:46,659 INFO L225 Difference]: With dead ends: 223 [2020-11-28 03:15:46,659 INFO L226 Difference]: Without dead ends: 118 [2020-11-28 03:15:46,670 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2020-11-28 03:15:46,691 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2020-11-28 03:15:46,726 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 118. [2020-11-28 03:15:46,728 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 118 states. [2020-11-28 03:15:46,753 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 118 states to 118 states and 187 transitions. [2020-11-28 03:15:46,757 INFO L78 Accepts]: Start accepts. Automaton has 118 states and 187 transitions. Word has length 34 [2020-11-28 03:15:46,757 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:46,758 INFO L481 AbstractCegarLoop]: Abstraction has 118 states and 187 transitions. [2020-11-28 03:15:46,758 INFO L482 AbstractCegarLoop]: Interpolant automaton has 2 states. [2020-11-28 03:15:46,759 INFO L276 IsEmpty]: Start isEmpty. Operand 118 states and 187 transitions. [2020-11-28 03:15:46,760 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2020-11-28 03:15:46,762 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:46,762 INFO L422 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:46,762 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2020-11-28 03:15:46,763 INFO L429 AbstractCegarLoop]: === Iteration 2 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:46,766 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:46,766 INFO L82 PathProgramCache]: Analyzing trace with hash -122239248, now seen corresponding path program 1 times [2020-11-28 03:15:46,766 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:46,767 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1048708519] [2020-11-28 03:15:46,767 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:46,868 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:46,948 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:46,948 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1048708519] [2020-11-28 03:15:46,948 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:46,949 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:46,949 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [5741163] [2020-11-28 03:15:46,950 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:46,951 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:46,951 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:46,952 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:46,952 INFO L87 Difference]: Start difference. First operand 118 states and 187 transitions. Second operand 3 states. [2020-11-28 03:15:47,037 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:47,040 INFO L93 Difference]: Finished difference Result 327 states and 519 transitions. [2020-11-28 03:15:47,040 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:47,041 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 35 [2020-11-28 03:15:47,041 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:47,045 INFO L225 Difference]: With dead ends: 327 [2020-11-28 03:15:47,047 INFO L226 Difference]: Without dead ends: 220 [2020-11-28 03:15:47,050 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:47,052 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 220 states. [2020-11-28 03:15:47,066 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 220 to 117. [2020-11-28 03:15:47,068 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 117 states. [2020-11-28 03:15:47,070 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 183 transitions. [2020-11-28 03:15:47,070 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 183 transitions. Word has length 35 [2020-11-28 03:15:47,071 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:47,071 INFO L481 AbstractCegarLoop]: Abstraction has 117 states and 183 transitions. [2020-11-28 03:15:47,071 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:47,071 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 183 transitions. [2020-11-28 03:15:47,072 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2020-11-28 03:15:47,073 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:47,073 INFO L422 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:47,073 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2020-11-28 03:15:47,073 INFO L429 AbstractCegarLoop]: === Iteration 3 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:47,074 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:47,074 INFO L82 PathProgramCache]: Analyzing trace with hash 2107249571, now seen corresponding path program 1 times [2020-11-28 03:15:47,074 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:47,075 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [893107564] [2020-11-28 03:15:47,075 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:47,108 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:47,165 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:47,165 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [893107564] [2020-11-28 03:15:47,165 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:47,165 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:47,165 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2045772841] [2020-11-28 03:15:47,166 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:47,166 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:47,166 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:47,168 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:47,169 INFO L87 Difference]: Start difference. First operand 117 states and 183 transitions. Second operand 3 states. [2020-11-28 03:15:47,211 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:47,214 INFO L93 Difference]: Finished difference Result 220 states and 346 transitions. [2020-11-28 03:15:47,214 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:47,215 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 36 [2020-11-28 03:15:47,215 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:47,216 INFO L225 Difference]: With dead ends: 220 [2020-11-28 03:15:47,216 INFO L226 Difference]: Without dead ends: 118 [2020-11-28 03:15:47,217 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:47,218 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2020-11-28 03:15:47,229 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 117. [2020-11-28 03:15:47,229 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 117 states. [2020-11-28 03:15:47,230 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 182 transitions. [2020-11-28 03:15:47,230 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 182 transitions. Word has length 36 [2020-11-28 03:15:47,230 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:47,232 INFO L481 AbstractCegarLoop]: Abstraction has 117 states and 182 transitions. [2020-11-28 03:15:47,232 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:47,232 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 182 transitions. [2020-11-28 03:15:47,233 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2020-11-28 03:15:47,233 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:47,233 INFO L422 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:47,233 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2020-11-28 03:15:47,233 INFO L429 AbstractCegarLoop]: === Iteration 4 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:47,234 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:47,234 INFO L82 PathProgramCache]: Analyzing trace with hash -1018177341, now seen corresponding path program 1 times [2020-11-28 03:15:47,234 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:47,234 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1936818331] [2020-11-28 03:15:47,234 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:47,265 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:47,320 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:47,321 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1936818331] [2020-11-28 03:15:47,321 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:47,321 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:47,321 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [544567381] [2020-11-28 03:15:47,322 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:47,322 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:47,322 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:47,322 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:47,323 INFO L87 Difference]: Start difference. First operand 117 states and 182 transitions. Second operand 3 states. [2020-11-28 03:15:47,370 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:47,371 INFO L93 Difference]: Finished difference Result 226 states and 353 transitions. [2020-11-28 03:15:47,371 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:47,371 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 37 [2020-11-28 03:15:47,372 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:47,373 INFO L225 Difference]: With dead ends: 226 [2020-11-28 03:15:47,373 INFO L226 Difference]: Without dead ends: 117 [2020-11-28 03:15:47,374 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:47,375 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 117 states. [2020-11-28 03:15:47,385 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 117 to 117. [2020-11-28 03:15:47,386 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 117 states. [2020-11-28 03:15:47,387 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 180 transitions. [2020-11-28 03:15:47,387 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 180 transitions. Word has length 37 [2020-11-28 03:15:47,388 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:47,388 INFO L481 AbstractCegarLoop]: Abstraction has 117 states and 180 transitions. [2020-11-28 03:15:47,388 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:47,388 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 180 transitions. [2020-11-28 03:15:47,389 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2020-11-28 03:15:47,392 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:47,392 INFO L422 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:47,392 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2020-11-28 03:15:47,393 INFO L429 AbstractCegarLoop]: === Iteration 5 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:47,393 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:47,393 INFO L82 PathProgramCache]: Analyzing trace with hash 1032935230, now seen corresponding path program 1 times [2020-11-28 03:15:47,393 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:47,394 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1648767151] [2020-11-28 03:15:47,394 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:47,436 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:47,503 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:47,504 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1648767151] [2020-11-28 03:15:47,504 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:47,504 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:47,504 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [957317066] [2020-11-28 03:15:47,505 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:47,505 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:47,505 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:47,505 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:47,506 INFO L87 Difference]: Start difference. First operand 117 states and 180 transitions. Second operand 3 states. [2020-11-28 03:15:47,523 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:47,525 INFO L93 Difference]: Finished difference Result 191 states and 289 transitions. [2020-11-28 03:15:47,526 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:47,526 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 38 [2020-11-28 03:15:47,527 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:47,528 INFO L225 Difference]: With dead ends: 191 [2020-11-28 03:15:47,528 INFO L226 Difference]: Without dead ends: 120 [2020-11-28 03:15:47,529 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:47,530 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 120 states. [2020-11-28 03:15:47,540 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 120 to 119. [2020-11-28 03:15:47,544 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 119 states. [2020-11-28 03:15:47,545 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 119 states to 119 states and 182 transitions. [2020-11-28 03:15:47,546 INFO L78 Accepts]: Start accepts. Automaton has 119 states and 182 transitions. Word has length 38 [2020-11-28 03:15:47,546 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:47,546 INFO L481 AbstractCegarLoop]: Abstraction has 119 states and 182 transitions. [2020-11-28 03:15:47,546 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:47,547 INFO L276 IsEmpty]: Start isEmpty. Operand 119 states and 182 transitions. [2020-11-28 03:15:47,552 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2020-11-28 03:15:47,553 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:47,553 INFO L422 BasicCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:47,553 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2020-11-28 03:15:47,554 INFO L429 AbstractCegarLoop]: === Iteration 6 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:47,554 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:47,554 INFO L82 PathProgramCache]: Analyzing trace with hash 1719269101, now seen corresponding path program 1 times [2020-11-28 03:15:47,554 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:47,555 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1435430358] [2020-11-28 03:15:47,555 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:47,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:47,662 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:47,662 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1435430358] [2020-11-28 03:15:47,662 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1058994845] [2020-11-28 03:15:47,663 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY No working directory specified, using /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/z3 Starting monitored process 2 with z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 2 with z3 -smt2 -in SMTLIB2_COMPLIANT=true [2020-11-28 03:15:48,006 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:48,025 INFO L263 TraceCheckSpWp]: Trace formula consists of 734 conjuncts, 3 conjunts are in the unsatisfiable core [2020-11-28 03:15:48,033 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2020-11-28 03:15:48,107 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:48,109 INFO L219 FreeRefinementEngine]: Constructing automaton from 0 perfect and 2 imperfect interpolant sequences. [2020-11-28 03:15:48,109 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 4] total 5 [2020-11-28 03:15:48,110 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [256780722] [2020-11-28 03:15:48,112 INFO L461 AbstractCegarLoop]: Interpolant automaton has 5 states [2020-11-28 03:15:48,112 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:48,113 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2020-11-28 03:15:48,113 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=10, Unknown=0, NotChecked=0, Total=20 [2020-11-28 03:15:48,113 INFO L87 Difference]: Start difference. First operand 119 states and 182 transitions. Second operand 5 states. [2020-11-28 03:15:48,139 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:48,140 INFO L93 Difference]: Finished difference Result 291 states and 448 transitions. [2020-11-28 03:15:48,141 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2020-11-28 03:15:48,142 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 43 [2020-11-28 03:15:48,147 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:48,148 INFO L225 Difference]: With dead ends: 291 [2020-11-28 03:15:48,149 INFO L226 Difference]: Without dead ends: 220 [2020-11-28 03:15:48,150 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 46 GetRequests, 43 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=10, Invalid=10, Unknown=0, NotChecked=0, Total=20 [2020-11-28 03:15:48,151 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 220 states. [2020-11-28 03:15:48,172 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 220 to 148. [2020-11-28 03:15:48,173 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 148 states. [2020-11-28 03:15:48,173 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 148 states to 148 states and 236 transitions. [2020-11-28 03:15:48,174 INFO L78 Accepts]: Start accepts. Automaton has 148 states and 236 transitions. Word has length 43 [2020-11-28 03:15:48,175 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:48,175 INFO L481 AbstractCegarLoop]: Abstraction has 148 states and 236 transitions. [2020-11-28 03:15:48,176 INFO L482 AbstractCegarLoop]: Interpolant automaton has 5 states. [2020-11-28 03:15:48,176 INFO L276 IsEmpty]: Start isEmpty. Operand 148 states and 236 transitions. [2020-11-28 03:15:48,178 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2020-11-28 03:15:48,179 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:48,184 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:48,391 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2020-11-28 03:15:48,391 INFO L429 AbstractCegarLoop]: === Iteration 7 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:48,392 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:48,392 INFO L82 PathProgramCache]: Analyzing trace with hash 196922526, now seen corresponding path program 2 times [2020-11-28 03:15:48,392 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:48,393 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [897948860] [2020-11-28 03:15:48,393 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:48,429 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:48,496 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 9 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:48,496 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [897948860] [2020-11-28 03:15:48,497 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:48,497 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:48,497 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1932298218] [2020-11-28 03:15:48,497 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:48,497 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:48,498 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:48,498 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:48,498 INFO L87 Difference]: Start difference. First operand 148 states and 236 transitions. Second operand 3 states. [2020-11-28 03:15:48,527 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:48,527 INFO L93 Difference]: Finished difference Result 349 states and 556 transitions. [2020-11-28 03:15:48,528 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:48,528 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 48 [2020-11-28 03:15:48,528 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:48,530 INFO L225 Difference]: With dead ends: 349 [2020-11-28 03:15:48,530 INFO L226 Difference]: Without dead ends: 249 [2020-11-28 03:15:48,531 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:48,532 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 249 states. [2020-11-28 03:15:48,540 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 249 to 178. [2020-11-28 03:15:48,540 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 178 states. [2020-11-28 03:15:48,541 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 178 states to 178 states and 290 transitions. [2020-11-28 03:15:48,541 INFO L78 Accepts]: Start accepts. Automaton has 178 states and 290 transitions. Word has length 48 [2020-11-28 03:15:48,541 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:48,542 INFO L481 AbstractCegarLoop]: Abstraction has 178 states and 290 transitions. [2020-11-28 03:15:48,542 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:48,542 INFO L276 IsEmpty]: Start isEmpty. Operand 178 states and 290 transitions. [2020-11-28 03:15:48,543 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2020-11-28 03:15:48,543 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:48,543 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:48,543 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2020-11-28 03:15:48,543 INFO L429 AbstractCegarLoop]: === Iteration 8 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:48,544 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:48,544 INFO L82 PathProgramCache]: Analyzing trace with hash -326279457, now seen corresponding path program 1 times [2020-11-28 03:15:48,544 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:48,544 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [971342073] [2020-11-28 03:15:48,545 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:48,579 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:48,621 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2020-11-28 03:15:48,621 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [971342073] [2020-11-28 03:15:48,621 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:48,621 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:48,622 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [876900088] [2020-11-28 03:15:48,622 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:48,622 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:48,623 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:48,623 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:48,623 INFO L87 Difference]: Start difference. First operand 178 states and 290 transitions. Second operand 3 states. [2020-11-28 03:15:48,644 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:48,644 INFO L93 Difference]: Finished difference Result 403 states and 656 transitions. [2020-11-28 03:15:48,644 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:48,644 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 49 [2020-11-28 03:15:48,645 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:48,646 INFO L225 Difference]: With dead ends: 403 [2020-11-28 03:15:48,646 INFO L226 Difference]: Without dead ends: 249 [2020-11-28 03:15:48,647 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:48,650 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 249 states. [2020-11-28 03:15:48,659 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 249 to 178. [2020-11-28 03:15:48,659 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 178 states. [2020-11-28 03:15:48,660 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 178 states to 178 states and 288 transitions. [2020-11-28 03:15:48,660 INFO L78 Accepts]: Start accepts. Automaton has 178 states and 288 transitions. Word has length 49 [2020-11-28 03:15:48,660 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:48,660 INFO L481 AbstractCegarLoop]: Abstraction has 178 states and 288 transitions. [2020-11-28 03:15:48,660 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:48,660 INFO L276 IsEmpty]: Start isEmpty. Operand 178 states and 288 transitions. [2020-11-28 03:15:48,661 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2020-11-28 03:15:48,662 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:48,662 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:48,662 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2020-11-28 03:15:48,662 INFO L429 AbstractCegarLoop]: === Iteration 9 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:48,663 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:48,663 INFO L82 PathProgramCache]: Analyzing trace with hash -867360645, now seen corresponding path program 2 times [2020-11-28 03:15:48,663 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:48,668 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1822063260] [2020-11-28 03:15:48,668 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:48,705 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:48,824 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2020-11-28 03:15:48,825 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1822063260] [2020-11-28 03:15:48,825 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:48,825 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2020-11-28 03:15:48,825 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [346738847] [2020-11-28 03:15:48,826 INFO L461 AbstractCegarLoop]: Interpolant automaton has 10 states [2020-11-28 03:15:48,826 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:48,826 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2020-11-28 03:15:48,826 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2020-11-28 03:15:48,826 INFO L87 Difference]: Start difference. First operand 178 states and 288 transitions. Second operand 10 states. [2020-11-28 03:15:49,883 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:49,883 INFO L93 Difference]: Finished difference Result 621 states and 896 transitions. [2020-11-28 03:15:49,884 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2020-11-28 03:15:49,884 INFO L78 Accepts]: Start accepts. Automaton has 10 states. Word has length 49 [2020-11-28 03:15:49,885 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:49,888 INFO L225 Difference]: With dead ends: 621 [2020-11-28 03:15:49,888 INFO L226 Difference]: Without dead ends: 572 [2020-11-28 03:15:49,889 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 34 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 31 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 205 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=290, Invalid=766, Unknown=0, NotChecked=0, Total=1056 [2020-11-28 03:15:49,891 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 572 states. [2020-11-28 03:15:49,921 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 572 to 212. [2020-11-28 03:15:49,921 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 212 states. [2020-11-28 03:15:49,922 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 212 states to 212 states and 335 transitions. [2020-11-28 03:15:49,922 INFO L78 Accepts]: Start accepts. Automaton has 212 states and 335 transitions. Word has length 49 [2020-11-28 03:15:49,923 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:49,923 INFO L481 AbstractCegarLoop]: Abstraction has 212 states and 335 transitions. [2020-11-28 03:15:49,923 INFO L482 AbstractCegarLoop]: Interpolant automaton has 10 states. [2020-11-28 03:15:49,923 INFO L276 IsEmpty]: Start isEmpty. Operand 212 states and 335 transitions. [2020-11-28 03:15:49,926 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2020-11-28 03:15:49,926 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:49,927 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:49,927 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2020-11-28 03:15:49,927 INFO L429 AbstractCegarLoop]: === Iteration 10 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:49,928 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:49,928 INFO L82 PathProgramCache]: Analyzing trace with hash -1932642042, now seen corresponding path program 1 times [2020-11-28 03:15:49,928 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:49,928 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [523462853] [2020-11-28 03:15:49,929 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:49,964 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:50,021 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2020-11-28 03:15:50,021 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [523462853] [2020-11-28 03:15:50,022 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:50,022 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2020-11-28 03:15:50,022 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1333541121] [2020-11-28 03:15:50,022 INFO L461 AbstractCegarLoop]: Interpolant automaton has 6 states [2020-11-28 03:15:50,022 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:50,023 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2020-11-28 03:15:50,023 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2020-11-28 03:15:50,023 INFO L87 Difference]: Start difference. First operand 212 states and 335 transitions. Second operand 6 states. [2020-11-28 03:15:50,137 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:50,137 INFO L93 Difference]: Finished difference Result 344 states and 516 transitions. [2020-11-28 03:15:50,138 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2020-11-28 03:15:50,138 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 50 [2020-11-28 03:15:50,139 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:50,140 INFO L225 Difference]: With dead ends: 344 [2020-11-28 03:15:50,141 INFO L226 Difference]: Without dead ends: 255 [2020-11-28 03:15:50,141 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=34, Invalid=56, Unknown=0, NotChecked=0, Total=90 [2020-11-28 03:15:50,143 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 255 states. [2020-11-28 03:15:50,168 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 255 to 208. [2020-11-28 03:15:50,168 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 208 states. [2020-11-28 03:15:50,171 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 208 states to 208 states and 328 transitions. [2020-11-28 03:15:50,172 INFO L78 Accepts]: Start accepts. Automaton has 208 states and 328 transitions. Word has length 50 [2020-11-28 03:15:50,172 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:50,172 INFO L481 AbstractCegarLoop]: Abstraction has 208 states and 328 transitions. [2020-11-28 03:15:50,172 INFO L482 AbstractCegarLoop]: Interpolant automaton has 6 states. [2020-11-28 03:15:50,172 INFO L276 IsEmpty]: Start isEmpty. Operand 208 states and 328 transitions. [2020-11-28 03:15:50,173 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 51 [2020-11-28 03:15:50,173 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:50,173 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:50,174 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2020-11-28 03:15:50,174 INFO L429 AbstractCegarLoop]: === Iteration 11 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:50,174 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:50,174 INFO L82 PathProgramCache]: Analyzing trace with hash -1701439479, now seen corresponding path program 1 times [2020-11-28 03:15:50,175 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:50,175 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1556169533] [2020-11-28 03:15:50,175 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:50,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:50,294 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2020-11-28 03:15:50,294 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1556169533] [2020-11-28 03:15:50,294 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:50,295 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2020-11-28 03:15:50,295 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [505472272] [2020-11-28 03:15:50,295 INFO L461 AbstractCegarLoop]: Interpolant automaton has 5 states [2020-11-28 03:15:50,296 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:50,297 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2020-11-28 03:15:50,297 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2020-11-28 03:15:50,297 INFO L87 Difference]: Start difference. First operand 208 states and 328 transitions. Second operand 5 states. [2020-11-28 03:15:50,470 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:50,470 INFO L93 Difference]: Finished difference Result 523 states and 798 transitions. [2020-11-28 03:15:50,471 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2020-11-28 03:15:50,471 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 50 [2020-11-28 03:15:50,471 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:50,475 INFO L225 Difference]: With dead ends: 523 [2020-11-28 03:15:50,475 INFO L226 Difference]: Without dead ends: 441 [2020-11-28 03:15:50,476 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2020-11-28 03:15:50,477 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 441 states. [2020-11-28 03:15:50,518 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 441 to 361. [2020-11-28 03:15:50,518 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 361 states. [2020-11-28 03:15:50,519 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 361 states to 361 states and 571 transitions. [2020-11-28 03:15:50,520 INFO L78 Accepts]: Start accepts. Automaton has 361 states and 571 transitions. Word has length 50 [2020-11-28 03:15:50,520 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:50,520 INFO L481 AbstractCegarLoop]: Abstraction has 361 states and 571 transitions. [2020-11-28 03:15:50,520 INFO L482 AbstractCegarLoop]: Interpolant automaton has 5 states. [2020-11-28 03:15:50,521 INFO L276 IsEmpty]: Start isEmpty. Operand 361 states and 571 transitions. [2020-11-28 03:15:50,521 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2020-11-28 03:15:50,522 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:50,522 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:50,522 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2020-11-28 03:15:50,522 INFO L429 AbstractCegarLoop]: === Iteration 12 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:50,523 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:50,523 INFO L82 PathProgramCache]: Analyzing trace with hash -1663962474, now seen corresponding path program 1 times [2020-11-28 03:15:50,523 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:50,523 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [56001385] [2020-11-28 03:15:50,524 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:50,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:50,628 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2020-11-28 03:15:50,629 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [56001385] [2020-11-28 03:15:50,629 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:50,629 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2020-11-28 03:15:50,629 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1762632605] [2020-11-28 03:15:50,630 INFO L461 AbstractCegarLoop]: Interpolant automaton has 9 states [2020-11-28 03:15:50,630 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:50,630 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2020-11-28 03:15:50,630 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=57, Unknown=0, NotChecked=0, Total=72 [2020-11-28 03:15:50,631 INFO L87 Difference]: Start difference. First operand 361 states and 571 transitions. Second operand 9 states. [2020-11-28 03:15:51,459 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:51,460 INFO L93 Difference]: Finished difference Result 890 states and 1295 transitions. [2020-11-28 03:15:51,460 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2020-11-28 03:15:51,460 INFO L78 Accepts]: Start accepts. Automaton has 9 states. Word has length 51 [2020-11-28 03:15:51,461 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:51,465 INFO L225 Difference]: With dead ends: 890 [2020-11-28 03:15:51,465 INFO L226 Difference]: Without dead ends: 732 [2020-11-28 03:15:51,466 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 23 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 87 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=189, Invalid=411, Unknown=0, NotChecked=0, Total=600 [2020-11-28 03:15:51,467 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 732 states. [2020-11-28 03:15:51,525 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 732 to 440. [2020-11-28 03:15:51,525 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 440 states. [2020-11-28 03:15:51,527 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 440 states to 440 states and 681 transitions. [2020-11-28 03:15:51,528 INFO L78 Accepts]: Start accepts. Automaton has 440 states and 681 transitions. Word has length 51 [2020-11-28 03:15:51,529 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:51,529 INFO L481 AbstractCegarLoop]: Abstraction has 440 states and 681 transitions. [2020-11-28 03:15:51,529 INFO L482 AbstractCegarLoop]: Interpolant automaton has 9 states. [2020-11-28 03:15:51,530 INFO L276 IsEmpty]: Start isEmpty. Operand 440 states and 681 transitions. [2020-11-28 03:15:51,530 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2020-11-28 03:15:51,531 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:51,531 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:51,531 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2020-11-28 03:15:51,531 INFO L429 AbstractCegarLoop]: === Iteration 13 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:51,532 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:51,532 INFO L82 PathProgramCache]: Analyzing trace with hash 1224175828, now seen corresponding path program 1 times [2020-11-28 03:15:51,532 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:51,533 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [493498216] [2020-11-28 03:15:51,533 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:51,559 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:51,594 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2020-11-28 03:15:51,594 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [493498216] [2020-11-28 03:15:51,594 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:51,594 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2020-11-28 03:15:51,595 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [912488012] [2020-11-28 03:15:51,595 INFO L461 AbstractCegarLoop]: Interpolant automaton has 4 states [2020-11-28 03:15:51,595 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:51,596 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2020-11-28 03:15:51,596 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2020-11-28 03:15:51,596 INFO L87 Difference]: Start difference. First operand 440 states and 681 transitions. Second operand 4 states. [2020-11-28 03:15:51,664 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:51,664 INFO L93 Difference]: Finished difference Result 531 states and 797 transitions. [2020-11-28 03:15:51,665 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2020-11-28 03:15:51,665 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 52 [2020-11-28 03:15:51,665 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:51,668 INFO L225 Difference]: With dead ends: 531 [2020-11-28 03:15:51,668 INFO L226 Difference]: Without dead ends: 347 [2020-11-28 03:15:51,669 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2020-11-28 03:15:51,670 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 347 states. [2020-11-28 03:15:51,697 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 347 to 312. [2020-11-28 03:15:51,698 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 312 states. [2020-11-28 03:15:51,699 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 312 states to 312 states and 490 transitions. [2020-11-28 03:15:51,699 INFO L78 Accepts]: Start accepts. Automaton has 312 states and 490 transitions. Word has length 52 [2020-11-28 03:15:51,699 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:51,700 INFO L481 AbstractCegarLoop]: Abstraction has 312 states and 490 transitions. [2020-11-28 03:15:51,700 INFO L482 AbstractCegarLoop]: Interpolant automaton has 4 states. [2020-11-28 03:15:51,700 INFO L276 IsEmpty]: Start isEmpty. Operand 312 states and 490 transitions. [2020-11-28 03:15:51,701 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 58 [2020-11-28 03:15:51,701 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:51,701 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:51,701 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2020-11-28 03:15:51,701 INFO L429 AbstractCegarLoop]: === Iteration 14 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:51,702 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:51,702 INFO L82 PathProgramCache]: Analyzing trace with hash -944544913, now seen corresponding path program 1 times [2020-11-28 03:15:51,702 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:51,702 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1133661005] [2020-11-28 03:15:51,703 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:51,739 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:51,780 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2020-11-28 03:15:51,781 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1133661005] [2020-11-28 03:15:51,781 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:51,781 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:51,781 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1735720902] [2020-11-28 03:15:51,781 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:51,782 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:51,782 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:51,782 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:51,782 INFO L87 Difference]: Start difference. First operand 312 states and 490 transitions. Second operand 3 states. [2020-11-28 03:15:51,847 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:51,848 INFO L93 Difference]: Finished difference Result 855 states and 1352 transitions. [2020-11-28 03:15:51,848 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:51,848 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 57 [2020-11-28 03:15:51,849 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:51,852 INFO L225 Difference]: With dead ends: 855 [2020-11-28 03:15:51,852 INFO L226 Difference]: Without dead ends: 569 [2020-11-28 03:15:51,853 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:51,854 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 569 states. [2020-11-28 03:15:51,889 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 569 to 424. [2020-11-28 03:15:51,889 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 424 states. [2020-11-28 03:15:51,891 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 424 states to 424 states and 691 transitions. [2020-11-28 03:15:51,891 INFO L78 Accepts]: Start accepts. Automaton has 424 states and 691 transitions. Word has length 57 [2020-11-28 03:15:51,892 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:51,892 INFO L481 AbstractCegarLoop]: Abstraction has 424 states and 691 transitions. [2020-11-28 03:15:51,892 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:51,892 INFO L276 IsEmpty]: Start isEmpty. Operand 424 states and 691 transitions. [2020-11-28 03:15:51,895 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2020-11-28 03:15:51,895 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:51,896 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:51,896 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2020-11-28 03:15:51,896 INFO L429 AbstractCegarLoop]: === Iteration 15 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:51,897 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:51,897 INFO L82 PathProgramCache]: Analyzing trace with hash 328528683, now seen corresponding path program 1 times [2020-11-28 03:15:51,897 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:51,898 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1268773328] [2020-11-28 03:15:51,898 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:51,920 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:51,948 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2020-11-28 03:15:51,948 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1268773328] [2020-11-28 03:15:51,948 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:51,948 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:51,949 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [756896119] [2020-11-28 03:15:51,949 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:51,949 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:51,949 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:51,950 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:51,950 INFO L87 Difference]: Start difference. First operand 424 states and 691 transitions. Second operand 3 states. [2020-11-28 03:15:52,046 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:52,046 INFO L93 Difference]: Finished difference Result 1181 states and 1941 transitions. [2020-11-28 03:15:52,047 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:52,047 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 58 [2020-11-28 03:15:52,047 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:52,052 INFO L225 Difference]: With dead ends: 1181 [2020-11-28 03:15:52,052 INFO L226 Difference]: Without dead ends: 787 [2020-11-28 03:15:52,054 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:52,056 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 787 states. [2020-11-28 03:15:52,103 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 787 to 642. [2020-11-28 03:15:52,103 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 642 states. [2020-11-28 03:15:52,109 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 642 states to 642 states and 1080 transitions. [2020-11-28 03:15:52,109 INFO L78 Accepts]: Start accepts. Automaton has 642 states and 1080 transitions. Word has length 58 [2020-11-28 03:15:52,109 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:52,109 INFO L481 AbstractCegarLoop]: Abstraction has 642 states and 1080 transitions. [2020-11-28 03:15:52,110 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:52,110 INFO L276 IsEmpty]: Start isEmpty. Operand 642 states and 1080 transitions. [2020-11-28 03:15:52,114 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2020-11-28 03:15:52,115 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:52,115 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:52,115 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2020-11-28 03:15:52,115 INFO L429 AbstractCegarLoop]: === Iteration 16 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:52,116 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:52,116 INFO L82 PathProgramCache]: Analyzing trace with hash 87613521, now seen corresponding path program 1 times [2020-11-28 03:15:52,116 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:52,116 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1717162233] [2020-11-28 03:15:52,116 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:52,136 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:52,173 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2020-11-28 03:15:52,173 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1717162233] [2020-11-28 03:15:52,173 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:52,174 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:52,174 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [77637773] [2020-11-28 03:15:52,174 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:52,174 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:52,175 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:52,175 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:52,175 INFO L87 Difference]: Start difference. First operand 642 states and 1080 transitions. Second operand 3 states. [2020-11-28 03:15:52,298 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:52,298 INFO L93 Difference]: Finished difference Result 1821 states and 3086 transitions. [2020-11-28 03:15:52,299 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:52,299 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 59 [2020-11-28 03:15:52,299 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:52,306 INFO L225 Difference]: With dead ends: 1821 [2020-11-28 03:15:52,306 INFO L226 Difference]: Without dead ends: 1213 [2020-11-28 03:15:52,308 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:52,310 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1213 states. [2020-11-28 03:15:52,393 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1213 to 1068. [2020-11-28 03:15:52,393 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1068 states. [2020-11-28 03:15:52,398 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1068 states to 1068 states and 1833 transitions. [2020-11-28 03:15:52,399 INFO L78 Accepts]: Start accepts. Automaton has 1068 states and 1833 transitions. Word has length 59 [2020-11-28 03:15:52,399 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:52,399 INFO L481 AbstractCegarLoop]: Abstraction has 1068 states and 1833 transitions. [2020-11-28 03:15:52,399 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:52,399 INFO L276 IsEmpty]: Start isEmpty. Operand 1068 states and 1833 transitions. [2020-11-28 03:15:52,401 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2020-11-28 03:15:52,402 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:52,402 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:52,402 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15 [2020-11-28 03:15:52,402 INFO L429 AbstractCegarLoop]: === Iteration 17 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:52,403 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:52,403 INFO L82 PathProgramCache]: Analyzing trace with hash -1318592951, now seen corresponding path program 1 times [2020-11-28 03:15:52,403 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:52,403 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [685441081] [2020-11-28 03:15:52,403 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:52,425 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:52,457 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2020-11-28 03:15:52,457 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [685441081] [2020-11-28 03:15:52,457 INFO L219 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2020-11-28 03:15:52,457 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2020-11-28 03:15:52,458 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1873983469] [2020-11-28 03:15:52,458 INFO L461 AbstractCegarLoop]: Interpolant automaton has 3 states [2020-11-28 03:15:52,458 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:52,458 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2020-11-28 03:15:52,459 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:52,459 INFO L87 Difference]: Start difference. First operand 1068 states and 1833 transitions. Second operand 3 states. [2020-11-28 03:15:52,617 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:52,617 INFO L93 Difference]: Finished difference Result 3077 states and 5307 transitions. [2020-11-28 03:15:52,618 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2020-11-28 03:15:52,618 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 60 [2020-11-28 03:15:52,618 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:52,631 INFO L225 Difference]: With dead ends: 3077 [2020-11-28 03:15:52,631 INFO L226 Difference]: Without dead ends: 2047 [2020-11-28 03:15:52,633 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2020-11-28 03:15:52,636 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2047 states. [2020-11-28 03:15:52,766 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2047 to 1902. [2020-11-28 03:15:52,766 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 1902 states. [2020-11-28 03:15:52,774 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1902 states to 1902 states and 3290 transitions. [2020-11-28 03:15:52,775 INFO L78 Accepts]: Start accepts. Automaton has 1902 states and 3290 transitions. Word has length 60 [2020-11-28 03:15:52,775 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:52,775 INFO L481 AbstractCegarLoop]: Abstraction has 1902 states and 3290 transitions. [2020-11-28 03:15:52,775 INFO L482 AbstractCegarLoop]: Interpolant automaton has 3 states. [2020-11-28 03:15:52,775 INFO L276 IsEmpty]: Start isEmpty. Operand 1902 states and 3290 transitions. [2020-11-28 03:15:52,778 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2020-11-28 03:15:52,779 INFO L414 BasicCegarLoop]: Found error trace [2020-11-28 03:15:52,779 INFO L422 BasicCegarLoop]: trace histogram [3, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2020-11-28 03:15:52,779 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable16 [2020-11-28 03:15:52,779 INFO L429 AbstractCegarLoop]: === Iteration 18 === [ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2020-11-28 03:15:52,779 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2020-11-28 03:15:52,780 INFO L82 PathProgramCache]: Analyzing trace with hash 1559369011, now seen corresponding path program 1 times [2020-11-28 03:15:52,780 INFO L162 FreeRefinementEngine]: Executing refinement strategy CAMEL [2020-11-28 03:15:52,780 INFO L353 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1208781111] [2020-11-28 03:15:52,780 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2020-11-28 03:15:52,804 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:52,844 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 4 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2020-11-28 03:15:52,844 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1208781111] [2020-11-28 03:15:52,844 INFO L353 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [303996322] [2020-11-28 03:15:52,845 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY No working directory specified, using /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/z3 Starting monitored process 3 with z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 3 with z3 -smt2 -in SMTLIB2_COMPLIANT=true [2020-11-28 03:15:53,201 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2020-11-28 03:15:53,213 INFO L263 TraceCheckSpWp]: Trace formula consists of 794 conjuncts, 4 conjunts are in the unsatisfiable core [2020-11-28 03:15:53,218 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2020-11-28 03:15:53,329 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2020-11-28 03:15:53,331 INFO L219 FreeRefinementEngine]: Constructing automaton from 0 perfect and 2 imperfect interpolant sequences. [2020-11-28 03:15:53,331 INFO L232 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5] total 8 [2020-11-28 03:15:53,333 INFO L155 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1855552944] [2020-11-28 03:15:53,333 INFO L461 AbstractCegarLoop]: Interpolant automaton has 8 states [2020-11-28 03:15:53,333 INFO L142 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2020-11-28 03:15:53,335 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2020-11-28 03:15:53,336 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2020-11-28 03:15:53,336 INFO L87 Difference]: Start difference. First operand 1902 states and 3290 transitions. Second operand 8 states. [2020-11-28 03:15:53,863 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2020-11-28 03:15:53,863 INFO L93 Difference]: Finished difference Result 2773 states and 4552 transitions. [2020-11-28 03:15:53,864 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2020-11-28 03:15:53,864 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 61 [2020-11-28 03:15:53,864 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2020-11-28 03:15:53,864 INFO L225 Difference]: With dead ends: 2773 [2020-11-28 03:15:53,864 INFO L226 Difference]: Without dead ends: 0 [2020-11-28 03:15:53,867 INFO L677 BasicCegarLoop]: 0 DeclaredPredicates, 79 GetRequests, 62 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 42 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=89, Invalid=253, Unknown=0, NotChecked=0, Total=342 [2020-11-28 03:15:53,868 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2020-11-28 03:15:53,868 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2020-11-28 03:15:53,868 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 0 states. [2020-11-28 03:15:53,868 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2020-11-28 03:15:53,868 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 61 [2020-11-28 03:15:53,868 INFO L84 Accepts]: Finished accepts. word is rejected. [2020-11-28 03:15:53,869 INFO L481 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2020-11-28 03:15:53,869 INFO L482 AbstractCegarLoop]: Interpolant automaton has 8 states. [2020-11-28 03:15:53,869 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2020-11-28 03:15:53,869 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2020-11-28 03:15:54,069 WARN L518 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable17 [2020-11-28 03:15:54,071 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2020-11-28 03:15:54,251 WARN L193 SmtUtils]: Spent 173.00 ms on a formula simplification. DAG size of input: 121 DAG size of output: 82 [2020-11-28 03:15:54,598 WARN L193 SmtUtils]: Spent 273.00 ms on a formula simplification. DAG size of input: 159 DAG size of output: 110 [2020-11-28 03:15:55,256 WARN L193 SmtUtils]: Spent 224.00 ms on a formula simplification. DAG size of input: 159 DAG size of output: 110 [2020-11-28 03:15:55,463 WARN L193 SmtUtils]: Spent 205.00 ms on a formula simplification. DAG size of input: 157 DAG size of output: 114 [2020-11-28 03:15:55,684 WARN L193 SmtUtils]: Spent 109.00 ms on a formula simplification. DAG size of input: 107 DAG size of output: 80 [2020-11-28 03:15:56,151 WARN L193 SmtUtils]: Spent 210.00 ms on a formula simplification. DAG size of input: 159 DAG size of output: 110 [2020-11-28 03:15:56,490 WARN L193 SmtUtils]: Spent 200.00 ms on a formula simplification. DAG size of input: 157 DAG size of output: 114 [2020-11-28 03:15:56,827 WARN L193 SmtUtils]: Spent 115.00 ms on a formula simplification. DAG size of input: 122 DAG size of output: 62 [2020-11-28 03:15:57,020 WARN L193 SmtUtils]: Spent 190.00 ms on a formula simplification. DAG size of input: 159 DAG size of output: 110 [2020-11-28 03:15:57,467 WARN L193 SmtUtils]: Spent 445.00 ms on a formula simplification. DAG size of input: 208 DAG size of output: 162 [2020-11-28 03:15:57,899 WARN L193 SmtUtils]: Spent 430.00 ms on a formula simplification. DAG size of input: 222 DAG size of output: 180 [2020-11-28 03:15:58,395 WARN L193 SmtUtils]: Spent 360.00 ms on a formula simplification. DAG size of input: 75 DAG size of output: 37 [2020-11-28 03:15:58,593 WARN L193 SmtUtils]: Spent 195.00 ms on a formula simplification. DAG size of input: 55 DAG size of output: 13 [2020-11-28 03:15:59,220 WARN L193 SmtUtils]: Spent 625.00 ms on a formula simplification. DAG size of input: 105 DAG size of output: 37 [2020-11-28 03:15:59,460 WARN L193 SmtUtils]: Spent 230.00 ms on a formula simplification. DAG size of input: 77 DAG size of output: 22 [2020-11-28 03:15:59,711 WARN L193 SmtUtils]: Spent 250.00 ms on a formula simplification. DAG size of input: 77 DAG size of output: 30 [2020-11-28 03:16:00,032 WARN L193 SmtUtils]: Spent 319.00 ms on a formula simplification. DAG size of input: 76 DAG size of output: 28 [2020-11-28 03:16:00,289 WARN L193 SmtUtils]: Spent 255.00 ms on a formula simplification. DAG size of input: 75 DAG size of output: 32 [2020-11-28 03:16:00,515 WARN L193 SmtUtils]: Spent 206.00 ms on a formula simplification. DAG size of input: 76 DAG size of output: 38 [2020-11-28 03:16:00,698 WARN L193 SmtUtils]: Spent 181.00 ms on a formula simplification. DAG size of input: 63 DAG size of output: 24 [2020-11-28 03:16:01,122 WARN L193 SmtUtils]: Spent 400.00 ms on a formula simplification. DAG size of input: 105 DAG size of output: 37 [2020-11-28 03:16:01,646 WARN L193 SmtUtils]: Spent 522.00 ms on a formula simplification. DAG size of input: 108 DAG size of output: 35 [2020-11-28 03:16:01,940 WARN L193 SmtUtils]: Spent 286.00 ms on a formula simplification. DAG size of input: 71 DAG size of output: 32 [2020-11-28 03:16:02,109 WARN L193 SmtUtils]: Spent 168.00 ms on a formula simplification. DAG size of input: 61 DAG size of output: 17 [2020-11-28 03:16:02,379 WARN L193 SmtUtils]: Spent 252.00 ms on a formula simplification. DAG size of input: 78 DAG size of output: 17 [2020-11-28 03:16:02,881 WARN L193 SmtUtils]: Spent 185.00 ms on a formula simplification. DAG size of input: 64 DAG size of output: 20 [2020-11-28 03:16:03,400 WARN L193 SmtUtils]: Spent 468.00 ms on a formula simplification. DAG size of input: 105 DAG size of output: 37 [2020-11-28 03:16:03,702 WARN L193 SmtUtils]: Spent 145.00 ms on a formula simplification. DAG size of input: 63 DAG size of output: 22 [2020-11-28 03:16:04,189 WARN L193 SmtUtils]: Spent 441.00 ms on a formula simplification. DAG size of input: 108 DAG size of output: 35 [2020-11-28 03:16:04,341 WARN L193 SmtUtils]: Spent 151.00 ms on a formula simplification. DAG size of input: 63 DAG size of output: 24 [2020-11-28 03:16:04,558 WARN L193 SmtUtils]: Spent 213.00 ms on a formula simplification. DAG size of input: 79 DAG size of output: 41 [2020-11-28 03:16:04,769 WARN L193 SmtUtils]: Spent 209.00 ms on a formula simplification. DAG size of input: 79 DAG size of output: 41 [2020-11-28 03:16:04,977 WARN L193 SmtUtils]: Spent 206.00 ms on a formula simplification. DAG size of input: 75 DAG size of output: 37 [2020-11-28 03:16:05,162 WARN L193 SmtUtils]: Spent 183.00 ms on a formula simplification. DAG size of input: 59 DAG size of output: 26 [2020-11-28 03:16:05,552 WARN L193 SmtUtils]: Spent 384.00 ms on a formula simplification. DAG size of input: 105 DAG size of output: 37 [2020-11-28 03:16:06,260 WARN L193 SmtUtils]: Spent 705.00 ms on a formula simplification. DAG size of input: 154 DAG size of output: 16 [2020-11-28 03:16:07,235 WARN L193 SmtUtils]: Spent 973.00 ms on a formula simplification. DAG size of input: 177 DAG size of output: 17 [2020-11-28 03:16:07,441 WARN L193 SmtUtils]: Spent 204.00 ms on a formula simplification. DAG size of input: 75 DAG size of output: 37 [2020-11-28 03:16:07,651 WARN L193 SmtUtils]: Spent 207.00 ms on a formula simplification. DAG size of input: 79 DAG size of output: 41 [2020-11-28 03:16:07,699 INFO L274 CegarLoopResult]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 3) no Hoare annotation was computed. [2020-11-28 03:16:07,699 INFO L274 CegarLoopResult]: For program point L498(lines 498 502) no Hoare annotation was computed. [2020-11-28 03:16:07,700 INFO L270 CegarLoopResult]: At program point L498-2(lines 491 506) the Hoare annotation is: (and (not (= ULTIMATE.start_setClientId_~handle 1)) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (not (= ~__ste_email_to0~0 1)) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,700 INFO L274 CegarLoopResult]: For program point L498-3(lines 498 502) no Hoare annotation was computed. [2020-11-28 03:16:07,700 INFO L270 CegarLoopResult]: At program point L498-5(lines 491 506) the Hoare annotation is: (and (= ~__ste_email_to0~0 2) (= ULTIMATE.start_setEmailTo_~handle 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (= |ULTIMATE.start_createEmail_#res| 1) (= ULTIMATE.start_setEmailTo_~value 2) (= ~rjh~0 2) (= ULTIMATE.start_outgoing_~msg 1) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,700 INFO L274 CegarLoopResult]: For program point L498-6(lines 498 502) no Hoare annotation was computed. [2020-11-28 03:16:07,700 INFO L270 CegarLoopResult]: At program point L498-8(lines 491 506) the Hoare annotation is: (let ((.cse1 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse2 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse0 (= 2 ULTIMATE.start_createEmail_~to)) (.cse3 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse4 (= ~rjh~0 2)) (.cse5 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse0 .cse1 .cse2 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0)) .cse3 (not (= |ULTIMATE.start_isReadable_#res| 0)) .cse4 .cse5) (and (= ~__ste_email_to0~0 2) .cse1 .cse2 .cse0 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse3 .cse4 .cse5))) [2020-11-28 03:16:07,700 INFO L274 CegarLoopResult]: For program point L3(line 3) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L3-1(line 3) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L532(lines 532 540) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L532-2(lines 532 540) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L532-4(lines 532 540) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L2184(lines 2184 2200) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L2184-1(lines 2184 2200) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L368(lines 368 372) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L335(lines 335 339) no Hoare annotation was computed. [2020-11-28 03:16:07,701 INFO L270 CegarLoopResult]: At program point L368-1(lines 243 386) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,701 INFO L274 CegarLoopResult]: For program point L535(lines 535 539) no Hoare annotation was computed. [2020-11-28 03:16:07,702 INFO L270 CegarLoopResult]: At program point L535-2(lines 528 543) the Hoare annotation is: (and (= ~__ste_email_to0~0 2) (not (= ULTIMATE.start_setClientId_~handle 1)) (= ULTIMATE.start_setEmailTo_~handle 1) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (= ULTIMATE.start_setEmailTo_~value 2) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,702 INFO L274 CegarLoopResult]: For program point L535-3(lines 535 539) no Hoare annotation was computed. [2020-11-28 03:16:07,702 INFO L270 CegarLoopResult]: At program point L535-5(lines 528 543) the Hoare annotation is: (let ((.cse0 (= 2 ULTIMATE.start_createEmail_~to)) (.cse1 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse2 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse4 (= ULTIMATE.start_getEmailTo_~handle 1)) (.cse5 (= ~rjh~0 2)) (.cse6 (= ULTIMATE.start_outgoing_~msg 1)) (.cse7 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) (= 2 |ULTIMATE.start_getEmailTo_#res|) .cse3 .cse4 .cse5 .cse6 .cse7))) [2020-11-28 03:16:07,702 INFO L274 CegarLoopResult]: For program point L535-6(lines 535 539) no Hoare annotation was computed. [2020-11-28 03:16:07,702 INFO L270 CegarLoopResult]: At program point L535-8(lines 528 543) the Hoare annotation is: (and (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= |ULTIMATE.start_createEmail_#res| 1) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,702 INFO L270 CegarLoopResult]: At program point L305(lines 295 381) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,702 INFO L270 CegarLoopResult]: At program point L272(lines 262 384) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,702 INFO L274 CegarLoopResult]: For program point L173(lines 173 180) no Hoare annotation was computed. [2020-11-28 03:16:07,702 INFO L274 CegarLoopResult]: For program point L2188(lines 2188 2199) no Hoare annotation was computed. [2020-11-28 03:16:07,702 INFO L277 CegarLoopResult]: At program point L173-1(lines 173 180) the Hoare annotation is: true [2020-11-28 03:16:07,703 INFO L274 CegarLoopResult]: For program point L2188-1(lines 2188 2199) no Hoare annotation was computed. [2020-11-28 03:16:07,703 INFO L274 CegarLoopResult]: For program point L2255(lines 2255 2267) no Hoare annotation was computed. [2020-11-28 03:16:07,703 INFO L274 CegarLoopResult]: For program point L2255-2(lines 2255 2267) no Hoare annotation was computed. [2020-11-28 03:16:07,703 INFO L274 CegarLoopResult]: For program point L2255-4(lines 2255 2267) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L439(lines 439 450) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L439-1(lines 439 450) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L270 CegarLoopResult]: At program point L341(lines 331 378) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L2258(lines 2258 2266) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L2258-2(lines 2258 2266) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L2192(lines 2192 2198) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L2258-4(lines 2258 2266) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L2192-1(lines 2192 2198) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L310(lines 310 317) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L270 CegarLoopResult]: At program point L2391(lines 2386 2394) the Hoare annotation is: (let ((.cse0 (= 2 ULTIMATE.start_createEmail_~to)) (.cse1 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse2 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse4 (= ULTIMATE.start_outgoing_~msg 1)) (.cse5 (= ~rjh~0 2)) (.cse6 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse3 .cse4 .cse5 .cse6) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse0 .cse1 .cse2 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0)) .cse3 (not (= |ULTIMATE.start_isReadable_#res| 0)) .cse4 .cse5 .cse6))) [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L277(lines 277 281) no Hoare annotation was computed. [2020-11-28 03:16:07,704 INFO L274 CegarLoopResult]: For program point L244(lines 243 386) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L476(lines 476 487) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L443(lines 443 449) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L476-1(lines 476 487) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L443-1(lines 443 449) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L245(lines 245 249) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L2261(lines 2261 2265) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L2261-3(lines 2261 2265) no Hoare annotation was computed. [2020-11-28 03:16:07,705 INFO L270 CegarLoopResult]: At program point L2261-2(lines 1 2541) the Hoare annotation is: (and (= ~__ste_client_forwardReceiver1~0 0) (not (= ~__ste_email_to0~0 1)) (not (= ~rjh~0 1)) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,705 INFO L270 CegarLoopResult]: At program point L2261-5(lines 1 2541) the Hoare annotation is: (and (= ~__ste_client_forwardReceiver1~0 0) (not (= ~__ste_email_to0~0 1)) (= ~rjh~0 ULTIMATE.start_setClientId_~handle) (= ~rjh~0 2)) [2020-11-28 03:16:07,705 INFO L274 CegarLoopResult]: For program point L2261-6(lines 2261 2265) no Hoare annotation was computed. [2020-11-28 03:16:07,706 INFO L270 CegarLoopResult]: At program point L2261-8(lines 1 2541) the Hoare annotation is: (and (= ~__ste_client_forwardReceiver1~0 0) (not (= ULTIMATE.start_setClientId_~handle 1)) (not (= ~__ste_email_to0~0 1)) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,706 INFO L274 CegarLoopResult]: For program point L346(lines 346 350) no Hoare annotation was computed. [2020-11-28 03:16:07,706 INFO L277 CegarLoopResult]: At program point L181(lines 163 183) the Hoare annotation is: true [2020-11-28 03:16:07,706 INFO L270 CegarLoopResult]: At program point L2197-1(lines 2180 2203) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse1 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse2 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= 2 ULTIMATE.start_createEmail_~to) .cse0 .cse1 .cse2 (= ~rjh~0 2) .cse3) (and .cse0 .cse1 (not (= ~rjh~0 1)) .cse2 (not (= ULTIMATE.start_createEmail_~to 1)) .cse3 (= |ULTIMATE.start_getClientForwardReceiver_#res| 0)))) [2020-11-28 03:16:07,706 INFO L270 CegarLoopResult]: At program point L2197(lines 2180 2203) the Hoare annotation is: (and (= ULTIMATE.start_setEmailTo_~handle 1) (= 2 ULTIMATE.start_incoming_~client) (= ULTIMATE.start_setEmailTo_~value 2) (= ~rjh~0 2) (= ULTIMATE.start_outgoing_~msg 1) (not (= ULTIMATE.start_setClientId_~handle 2)) (= ~__ste_email_to0~0 2) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) (= 2 |ULTIMATE.start_getEmailTo_#res|) (= |ULTIMATE.start_createEmail_#res| 1) (= ULTIMATE.start_getEmailTo_~handle 1)) [2020-11-28 03:16:07,706 INFO L274 CegarLoopResult]: For program point L513(lines 513 524) no Hoare annotation was computed. [2020-11-28 03:16:07,706 INFO L274 CegarLoopResult]: For program point L480(lines 480 486) no Hoare annotation was computed. [2020-11-28 03:16:07,706 INFO L274 CegarLoopResult]: For program point L513-1(lines 513 524) no Hoare annotation was computed. [2020-11-28 03:16:07,706 INFO L274 CegarLoopResult]: For program point L513-2(lines 513 524) no Hoare annotation was computed. [2020-11-28 03:16:07,707 INFO L274 CegarLoopResult]: For program point L480-1(lines 480 486) no Hoare annotation was computed. [2020-11-28 03:16:07,707 INFO L274 CegarLoopResult]: For program point L513-3(lines 513 524) no Hoare annotation was computed. [2020-11-28 03:16:07,707 INFO L274 CegarLoopResult]: For program point L2231-1(lines 2231 2247) no Hoare annotation was computed. [2020-11-28 03:16:07,707 INFO L274 CegarLoopResult]: For program point L2231(lines 2231 2247) no Hoare annotation was computed. [2020-11-28 03:16:07,707 INFO L274 CegarLoopResult]: For program point L117(lines 117 125) no Hoare annotation was computed. [2020-11-28 03:16:07,707 INFO L270 CegarLoopResult]: At program point L448(lines 435 453) the Hoare annotation is: (let ((.cse5 (= 2 ULTIMATE.start_createEmail_~to)) (.cse6 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse7 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse0 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0))) (.cse8 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse9 (= ULTIMATE.start_getEmailTo_~handle 1)) (.cse1 (not (= |ULTIMATE.start_isReadable_#res| 0))) (.cse2 (= ~rjh~0 2)) (.cse3 (= ULTIMATE.start_outgoing_~msg 1)) (.cse4 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 (= 2 ULTIMATE.start_incoming_~client) .cse1 .cse2 .cse3 .cse4 (= ~__ste_email_to0~0 2) .cse5 .cse6 .cse7 (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) (= 2 |ULTIMATE.start_getEmailTo_#res|) .cse8 .cse9) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse5 .cse6 .cse7 .cse0 .cse8 .cse9 .cse1 .cse2 .cse3 .cse4))) [2020-11-28 03:16:07,707 INFO L277 CegarLoopResult]: At program point L448-1(lines 435 453) the Hoare annotation is: true [2020-11-28 03:16:07,707 INFO L270 CegarLoopResult]: At program point L283(lines 273 383) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,708 INFO L270 CegarLoopResult]: At program point L2530(lines 1 2541) the Hoare annotation is: (and (= ~__ste_client_forwardReceiver1~0 0) (not (= ~__ste_email_to0~0 1)) (not (= ~rjh~0 1))) [2020-11-28 03:16:07,708 INFO L274 CegarLoopResult]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2020-11-28 03:16:07,708 INFO L274 CegarLoopResult]: For program point L251(lines 251 385) no Hoare annotation was computed. [2020-11-28 03:16:07,708 INFO L274 CegarLoopResult]: For program point L517(lines 517 523) no Hoare annotation was computed. [2020-11-28 03:16:07,708 INFO L274 CegarLoopResult]: For program point L517-1(lines 517 523) no Hoare annotation was computed. [2020-11-28 03:16:07,708 INFO L274 CegarLoopResult]: For program point L517-2(lines 517 523) no Hoare annotation was computed. [2020-11-28 03:16:07,708 INFO L274 CegarLoopResult]: For program point L517-3(lines 517 523) no Hoare annotation was computed. [2020-11-28 03:16:07,708 INFO L270 CegarLoopResult]: At program point L2400(lines 2395 2403) the Hoare annotation is: (let ((.cse0 (= 2 ULTIMATE.start_createEmail_~to)) (.cse1 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse2 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse4 (= ULTIMATE.start_outgoing_~msg 1)) (.cse5 (= ~rjh~0 2)) (.cse6 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse3 .cse4 .cse5 .cse6) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse0 .cse1 .cse2 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0)) .cse3 (not (= |ULTIMATE.start_isReadable_#res| 0)) .cse4 .cse5 .cse6))) [2020-11-28 03:16:07,708 INFO L270 CegarLoopResult]: At program point L352(lines 342 377) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,709 INFO L270 CegarLoopResult]: At program point L319(lines 306 380) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,709 INFO L274 CegarLoopResult]: For program point L2235-1(lines 2235 2246) no Hoare annotation was computed. [2020-11-28 03:16:07,709 INFO L274 CegarLoopResult]: For program point L2235(lines 2235 2246) no Hoare annotation was computed. [2020-11-28 03:16:07,709 INFO L270 CegarLoopResult]: At program point L485(lines 472 490) the Hoare annotation is: (let ((.cse5 (= 2 ULTIMATE.start_createEmail_~to)) (.cse6 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse7 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse0 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0))) (.cse8 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse9 (= ULTIMATE.start_getEmailTo_~handle 1)) (.cse1 (not (= |ULTIMATE.start_isReadable_#res| 0))) (.cse2 (= ~rjh~0 2)) (.cse3 (= ULTIMATE.start_outgoing_~msg 1)) (.cse4 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 (= 2 ULTIMATE.start_incoming_~client) .cse1 .cse2 .cse3 .cse4 (= ~__ste_email_to0~0 2) .cse5 .cse6 .cse7 (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) (= 2 |ULTIMATE.start_getEmailTo_#res|) .cse8 .cse9) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse5 .cse6 .cse7 .cse0 .cse8 .cse9 .cse1 .cse2 .cse3 .cse4))) [2020-11-28 03:16:07,709 INFO L277 CegarLoopResult]: At program point L485-1(lines 472 490) the Hoare annotation is: true [2020-11-28 03:16:07,709 INFO L270 CegarLoopResult]: At program point L387(lines 242 388) the Hoare annotation is: (and (not (= ULTIMATE.start_setClientId_~handle 1)) (not (= ~__ste_email_to0~0 1)) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,709 INFO L274 CegarLoopResult]: For program point L288(lines 288 292) no Hoare annotation was computed. [2020-11-28 03:16:07,709 INFO L274 CegarLoopResult]: For program point L255(lines 255 259) no Hoare annotation was computed. [2020-11-28 03:16:07,710 INFO L270 CegarLoopResult]: At program point L2337-1(lines 1 2541) the Hoare annotation is: (let ((.cse0 (= 2 ULTIMATE.start_createEmail_~to)) (.cse1 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse2 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse4 (= ULTIMATE.start_outgoing_~msg 1)) (.cse5 (= ~rjh~0 2)) (.cse6 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse3 .cse4 .cse5 .cse6) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse0 .cse1 .cse2 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0)) .cse3 (not (= |ULTIMATE.start_isReadable_#res| 0)) .cse4 .cse5 .cse6))) [2020-11-28 03:16:07,710 INFO L274 CegarLoopResult]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2020-11-28 03:16:07,710 INFO L274 CegarLoopResult]: For program point L2337(lines 2337 2344) no Hoare annotation was computed. [2020-11-28 03:16:07,710 INFO L274 CegarLoopResult]: For program point L2337-2(lines 2337 2344) no Hoare annotation was computed. [2020-11-28 03:16:07,710 INFO L270 CegarLoopResult]: At program point L2503(lines 2492 2506) the Hoare annotation is: (and (= ~__ste_email_to0~0 2) (= ULTIMATE.start_setEmailTo_~handle 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (= |ULTIMATE.start_createEmail_#res| 1) (= ULTIMATE.start_setEmailTo_~value 2) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,710 INFO L274 CegarLoopResult]: For program point L2239-1(lines 2239 2245) no Hoare annotation was computed. [2020-11-28 03:16:07,710 INFO L274 CegarLoopResult]: For program point L2239(lines 2239 2245) no Hoare annotation was computed. [2020-11-28 03:16:07,710 INFO L270 CegarLoopResult]: At program point L522(lines 509 527) the Hoare annotation is: (and (= ~__ste_email_to0~0 2) (= ULTIMATE.start_setEmailTo_~handle 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (= 2 |ULTIMATE.start_getEmailTo_#res|) (= |ULTIMATE.start_createEmail_#res| 1) (= ULTIMATE.start_setEmailTo_~value 2) (= ULTIMATE.start_getEmailTo_~handle 1) (= ~rjh~0 2) (= ULTIMATE.start_outgoing_~msg 1) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,711 INFO L270 CegarLoopResult]: At program point L522-1(lines 509 527) the Hoare annotation is: (let ((.cse1 (= 2 ULTIMATE.start_createEmail_~to)) (.cse2 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0))) (.cse4 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse5 (not (= |ULTIMATE.start_isReadable_#res| 0))) (.cse6 (= ULTIMATE.start_outgoing_~msg 1)) (.cse7 (= ~rjh~0 2)) (.cse8 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 .cse3 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse4 .cse5 .cse6 .cse7 .cse8) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse1 .cse2 .cse0 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8))) [2020-11-28 03:16:07,711 INFO L270 CegarLoopResult]: At program point L522-2(lines 509 527) the Hoare annotation is: (and (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= |ULTIMATE.start_createEmail_#res| 1) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,711 INFO L277 CegarLoopResult]: At program point L522-3(lines 509 527) the Hoare annotation is: true [2020-11-28 03:16:07,711 INFO L277 CegarLoopResult]: At program point L2471-1(lines 2446 2473) the Hoare annotation is: true [2020-11-28 03:16:07,711 INFO L270 CegarLoopResult]: At program point L2471(lines 2446 2473) the Hoare annotation is: (let ((.cse1 (= 2 ULTIMATE.start_createEmail_~to)) (.cse2 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0))) (.cse4 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse5 (not (= |ULTIMATE.start_isReadable_#res| 0))) (.cse6 (= ULTIMATE.start_outgoing_~msg 1)) (.cse7 (= ~rjh~0 2)) (.cse8 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 .cse3 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse4 .cse5 .cse6 .cse7 .cse8) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse1 .cse2 .cse0 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8))) [2020-11-28 03:16:07,711 INFO L274 CegarLoopResult]: For program point L357(lines 357 361) no Hoare annotation was computed. [2020-11-28 03:16:07,711 INFO L274 CegarLoopResult]: For program point L324(lines 324 328) no Hoare annotation was computed. [2020-11-28 03:16:07,712 INFO L274 CegarLoopResult]: For program point L1183(lines 1183 1189) no Hoare annotation was computed. [2020-11-28 03:16:07,712 INFO L274 CegarLoopResult]: For program point L1183-2(lines 1183 1189) no Hoare annotation was computed. [2020-11-28 03:16:07,712 INFO L270 CegarLoopResult]: At program point L2538(lines 2533 2541) the Hoare annotation is: (and (= ~__ste_client_forwardReceiver1~0 0) (not (= ~__ste_email_to0~0 1)) (not (= ~rjh~0 1))) [2020-11-28 03:16:07,712 INFO L274 CegarLoopResult]: For program point L2208(lines 2208 2220) no Hoare annotation was computed. [2020-11-28 03:16:07,712 INFO L270 CegarLoopResult]: At program point L160(lines 140 162) the Hoare annotation is: (and (= ~__ste_client_forwardReceiver1~0 0) (not (= ULTIMATE.start_setClientId_~handle 1)) (not (= ~__ste_email_to0~0 1)) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,712 INFO L274 CegarLoopResult]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2020-11-28 03:16:07,712 INFO L270 CegarLoopResult]: At program point L294(lines 284 382) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,712 INFO L270 CegarLoopResult]: At program point L261(lines 251 385) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,713 INFO L270 CegarLoopResult]: At program point L2409(lines 2404 2412) the Hoare annotation is: (let ((.cse0 (= 2 ULTIMATE.start_createEmail_~to)) (.cse1 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse2 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse4 (= ULTIMATE.start_outgoing_~msg 1)) (.cse5 (= ~rjh~0 2)) (.cse6 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse3 .cse4 .cse5 .cse6) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse0 .cse1 .cse2 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0)) .cse3 (not (= |ULTIMATE.start_isReadable_#res| 0)) .cse4 .cse5 .cse6))) [2020-11-28 03:16:07,713 INFO L270 CegarLoopResult]: At program point L2244(lines 2227 2250) the Hoare annotation is: (and (= ~__ste_email_to0~0 2) (= ULTIMATE.start_setEmailTo_~handle 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (= |ULTIMATE.start_createEmail_#res| 1) (= ULTIMATE.start_setEmailTo_~value 2) (= ~rjh~0 2) (= ULTIMATE.start_outgoing_~msg 1) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,713 INFO L274 CegarLoopResult]: For program point L2211(lines 2211 2219) no Hoare annotation was computed. [2020-11-28 03:16:07,713 INFO L270 CegarLoopResult]: At program point L2244-1(lines 2227 2250) the Hoare annotation is: (let ((.cse1 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse2 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse0 (= 2 ULTIMATE.start_createEmail_~to)) (.cse3 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse4 (= ~rjh~0 2)) (.cse5 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse0 .cse1 .cse2 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0)) .cse3 (not (= |ULTIMATE.start_isReadable_#res| 0)) .cse4 .cse5) (and (= ~__ste_email_to0~0 2) .cse1 .cse2 .cse0 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse3 .cse4 .cse5))) [2020-11-28 03:16:07,713 INFO L274 CegarLoopResult]: For program point L-1(line -1) no Hoare annotation was computed. [2020-11-28 03:16:07,713 INFO L274 CegarLoopResult]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 3) no Hoare annotation was computed. [2020-11-28 03:16:07,713 INFO L274 CegarLoopResult]: For program point L495(lines 495 503) no Hoare annotation was computed. [2020-11-28 03:16:07,713 INFO L274 CegarLoopResult]: For program point L495-2(lines 495 503) no Hoare annotation was computed. [2020-11-28 03:16:07,714 INFO L270 CegarLoopResult]: At program point L363(lines 353 376) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,714 INFO L274 CegarLoopResult]: For program point L495-4(lines 495 503) no Hoare annotation was computed. [2020-11-28 03:16:07,714 INFO L270 CegarLoopResult]: At program point L330(lines 320 379) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,714 INFO L274 CegarLoopResult]: For program point L2214(lines 2214 2218) no Hoare annotation was computed. [2020-11-28 03:16:07,714 INFO L274 CegarLoopResult]: For program point L199(line 199) no Hoare annotation was computed. [2020-11-28 03:16:07,714 INFO L274 CegarLoopResult]: For program point L199-1(line 199) no Hoare annotation was computed. [2020-11-28 03:16:07,714 INFO L270 CegarLoopResult]: At program point L2214-2(lines 1 2541) the Hoare annotation is: (let ((.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse1 (not (= ~__ste_email_to0~0 1))) (.cse2 (= ~rjh~0 2)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 .cse1 .cse2 (= ULTIMATE.start_test_~op1~0 1) .cse3) (and .cse0 (= ULTIMATE.start_test_~op1~0 0) .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,715 INFO L270 CegarLoopResult]: At program point L2479-1(lines 2474 2482) the Hoare annotation is: (let ((.cse1 (= 2 ULTIMATE.start_createEmail_~to)) (.cse2 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse0 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse3 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0))) (.cse4 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse5 (not (= |ULTIMATE.start_isReadable_#res| 0))) (.cse6 (= ULTIMATE.start_outgoing_~msg 1)) (.cse7 (= ~rjh~0 2)) (.cse8 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= ~__ste_email_to0~0 2) .cse0 .cse1 .cse2 .cse3 (= 2 ULTIMATE.start_incoming_~client) (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) .cse4 .cse5 .cse6 .cse7 .cse8) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse1 .cse2 .cse0 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8))) [2020-11-28 03:16:07,715 INFO L270 CegarLoopResult]: At program point L2479(lines 2474 2482) the Hoare annotation is: (let ((.cse4 (= 2 ULTIMATE.start_createEmail_~to)) (.cse5 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse6 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse7 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse8 (= ULTIMATE.start_getEmailTo_~handle 1)) (.cse0 (not (= |ULTIMATE.start_isReadable_#res| 0))) (.cse1 (= ~rjh~0 2)) (.cse2 (= ULTIMATE.start_outgoing_~msg 1)) (.cse3 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and (= 2 ULTIMATE.start_incoming_~client) .cse0 .cse1 .cse2 .cse3 (= ~__ste_email_to0~0 2) .cse4 .cse5 .cse6 (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) (= 2 |ULTIMATE.start_getEmailTo_#res|) .cse7 .cse8) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse4 .cse5 .cse6 .cse7 .cse8 .cse0 .cse1 .cse2 .cse3))) [2020-11-28 03:16:07,715 INFO L277 CegarLoopResult]: At program point L2479-3(lines 2474 2482) the Hoare annotation is: true [2020-11-28 03:16:07,715 INFO L270 CegarLoopResult]: At program point L2479-2(lines 2474 2482) the Hoare annotation is: (and (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= |ULTIMATE.start_createEmail_#res| 1) (not (= |ULTIMATE.start_isReadable_#res| 0)) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,715 INFO L274 CegarLoopResult]: For program point L299(lines 299 303) no Hoare annotation was computed. [2020-11-28 03:16:07,715 INFO L270 CegarLoopResult]: At program point L2314(lines 1 2541) the Hoare annotation is: (and (= ULTIMATE.start_setEmailTo_~handle 1) (= 2 ULTIMATE.start_incoming_~client) (= ULTIMATE.start_setEmailTo_~value 2) (= ~rjh~0 2) (= ULTIMATE.start_outgoing_~msg 1) (not (= ULTIMATE.start_setClientId_~handle 2)) (= ~__ste_email_to0~0 2) (not (= ULTIMATE.start_setClientId_~handle 1)) (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (= 2 |ULTIMATE.start_getEmailTo_#res|) (= |ULTIMATE.start_createEmail_#res| 1) (= ULTIMATE.start_getEmailTo_~handle 1)) [2020-11-28 03:16:07,715 INFO L274 CegarLoopResult]: For program point L266(lines 266 270) no Hoare annotation was computed. [2020-11-28 03:16:07,716 INFO L270 CegarLoopResult]: At program point L200(lines 1175 1192) the Hoare annotation is: (let ((.cse5 (= 2 ULTIMATE.start_createEmail_~to)) (.cse6 (= ULTIMATE.start_createEmail_~msg~0 1)) (.cse7 (not (= ULTIMATE.start_setClientId_~handle 1))) (.cse0 (not (= ULTIMATE.start___utac_acc__DecryptForward_spec__1_~tmp~6 0))) (.cse8 (= |ULTIMATE.start_createEmail_#res| 1)) (.cse9 (= ULTIMATE.start_getEmailTo_~handle 1)) (.cse1 (not (= |ULTIMATE.start_isReadable_#res| 0))) (.cse2 (= ~rjh~0 2)) (.cse3 (= ULTIMATE.start_outgoing_~msg 1)) (.cse4 (not (= ULTIMATE.start_setClientId_~handle 2)))) (or (and .cse0 (= 2 ULTIMATE.start_incoming_~client) .cse1 .cse2 .cse3 .cse4 (= ~__ste_email_to0~0 2) .cse5 .cse6 .cse7 (= 2 ULTIMATE.start_getClientForwardReceiver_~handle) (= 2 |ULTIMATE.start_getEmailTo_#res|) .cse8 .cse9) (and (= ULTIMATE.start_setEmailTo_~handle 1) .cse5 .cse6 .cse7 .cse0 .cse8 .cse9 .cse1 .cse2 .cse3 .cse4))) [2020-11-28 03:16:07,716 INFO L270 CegarLoopResult]: At program point L2314-1(lines 1 2541) the Hoare annotation is: (and (= 2 ULTIMATE.start_createEmail_~to) (= ULTIMATE.start_createEmail_~msg~0 1) (not (= ULTIMATE.start_setClientId_~handle 1)) (= |ULTIMATE.start_createEmail_#res| 1) (= ~rjh~0 2) (not (= ULTIMATE.start_setClientId_~handle 2))) [2020-11-28 03:16:07,721 INFO L277 CegarLoopResult]: At program point L200-1(lines 1175 1192) the Hoare annotation is: true [2020-11-28 03:16:07,776 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.11 03:16:07 BoogieIcfgContainer [2020-11-28 03:16:07,776 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2020-11-28 03:16:07,777 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2020-11-28 03:16:07,777 INFO L271 PluginConnector]: Initializing Witness Printer... [2020-11-28 03:16:07,777 INFO L275 PluginConnector]: Witness Printer initialized [2020-11-28 03:16:07,778 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 03:15:46" (3/4) ... [2020-11-28 03:16:07,781 INFO L137 WitnessPrinter]: Generating witness for correct program [2020-11-28 03:16:07,805 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 71 nodes and edges [2020-11-28 03:16:07,807 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 38 nodes and edges [2020-11-28 03:16:07,808 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2020-11-28 03:16:07,810 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2020-11-28 03:16:07,812 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2020-11-28 03:16:07,814 INFO L902 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2020-11-28 03:16:07,844 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && \result == 1) && value == 2) && rjh == 2) && !(handle == 2) [2020-11-28 03:16:07,844 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && \result == 1) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2) [2020-11-28 03:16:07,845 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && \result == 1) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2) [2020-11-28 03:16:07,845 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && 2 == \result) && \result == 1) && value == 2) && handle == 1) && rjh == 2) && msg == 1) && !(handle == 2) [2020-11-28 03:16:07,846 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((handle == 1 && 2 == client) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && !(handle == 1)) && 2 == to) && msg == 1) && 2 == \result) && \result == 1) && handle == 1 [2020-11-28 03:16:07,846 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((handle == 1 && 2 == client) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1 [2020-11-28 03:16:07,846 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,846 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && \result == 1) && handle == 1) && rjh == 2) && msg == 1) && !(handle == 2)) || (((((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) && rjh == 2) && msg == 1) && !(handle == 2)) [2020-11-28 03:16:07,847 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,847 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,847 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((2 == client && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) [2020-11-28 03:16:07,848 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,848 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((!(tmp == 0) && 2 == client) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || ((((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) [2020-11-28 03:16:07,848 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && rjh == 2) && !(handle == 2)) || ((((((((__ste_email_to0 == 2 && msg == 1) && !(handle == 1)) && 2 == to) && 2 == client) && 2 == handle) && \result == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,849 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((!(tmp == 0) && 2 == client) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || ((((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) [2020-11-28 03:16:07,849 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && rjh == 2) && !(handle == 2)) || ((((((((__ste_email_to0 == 2 && msg == 1) && !(handle == 1)) && 2 == to) && 2 == client) && 2 == handle) && \result == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,849 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((!(tmp == 0) && 2 == client) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || ((((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) [2020-11-28 03:16:07,849 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2) [2020-11-28 03:16:07,850 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((__ste_email_to0 == 2 && !(handle == 1)) && 2 == to) && msg == 1) && !(tmp == 0)) && 2 == client) && 2 == handle) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,850 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2) [2020-11-28 03:16:07,850 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2)) || ((((((msg == 1 && !(handle == 1)) && !(rjh == 1)) && \result == 1) && !(to == 1)) && !(handle == 2)) && \result == 0) [2020-11-28 03:16:07,851 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((__ste_email_to0 == 2 && !(handle == 1)) && 2 == to) && msg == 1) && !(tmp == 0)) && 2 == client) && 2 == handle) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,851 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((__ste_email_to0 == 2 && !(handle == 1)) && 2 == to) && msg == 1) && !(tmp == 0)) && 2 == client) && 2 == handle) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) [2020-11-28 03:16:07,851 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2) [2020-11-28 03:16:07,851 WARN L221 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && !(\result == 0)) && rjh == 2) && !(handle == 2) [2020-11-28 03:16:07,927 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud-vcloud-master/worker/run_dir_b5a3808f-2283-4e14-b464-816a0ba98798/bin/uautomizer/witness.graphml [2020-11-28 03:16:07,928 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2020-11-28 03:16:07,932 INFO L168 Benchmark]: Toolchain (without parser) took 24490.21 ms. Allocated memory was 79.7 MB in the beginning and 339.7 MB in the end (delta: 260.0 MB). Free memory was 45.1 MB in the beginning and 196.2 MB in the end (delta: -151.2 MB). Peak memory consumption was 109.0 MB. Max. memory is 16.1 GB. [2020-11-28 03:16:07,932 INFO L168 Benchmark]: CDTParser took 0.31 ms. Allocated memory is still 79.7 MB. Free memory was 53.5 MB in the beginning and 53.5 MB in the end (delta: 26.7 kB). There was no memory consumed. Max. memory is 16.1 GB. [2020-11-28 03:16:07,933 INFO L168 Benchmark]: CACSL2BoogieTranslator took 893.16 ms. Allocated memory was 79.7 MB in the beginning and 96.5 MB in the end (delta: 16.8 MB). Free memory was 45.0 MB in the beginning and 44.2 MB in the end (delta: 756.7 kB). Peak memory consumption was 17.1 MB. Max. memory is 16.1 GB. [2020-11-28 03:16:07,933 INFO L168 Benchmark]: Boogie Procedure Inliner took 133.40 ms. Allocated memory is still 96.5 MB. Free memory was 44.2 MB in the beginning and 39.2 MB in the end (delta: 5.0 MB). Peak memory consumption was 6.3 MB. Max. memory is 16.1 GB. [2020-11-28 03:16:07,933 INFO L168 Benchmark]: Boogie Preprocessor took 62.85 ms. Allocated memory is still 96.5 MB. Free memory was 39.2 MB in the beginning and 35.8 MB in the end (delta: 3.4 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2020-11-28 03:16:07,934 INFO L168 Benchmark]: RCFGBuilder took 1515.63 ms. Allocated memory is still 96.5 MB. Free memory was 35.8 MB in the beginning and 56.2 MB in the end (delta: -20.4 MB). Peak memory consumption was 11.4 MB. Max. memory is 16.1 GB. [2020-11-28 03:16:07,934 INFO L168 Benchmark]: TraceAbstraction took 21723.62 ms. Allocated memory was 96.5 MB in the beginning and 339.7 MB in the end (delta: 243.3 MB). Free memory was 56.2 MB in the beginning and 213.0 MB in the end (delta: -156.8 MB). Peak memory consumption was 201.5 MB. Max. memory is 16.1 GB. [2020-11-28 03:16:07,936 INFO L168 Benchmark]: Witness Printer took 151.58 ms. Allocated memory is still 339.7 MB. Free memory was 213.0 MB in the beginning and 196.2 MB in the end (delta: 16.8 MB). Peak memory consumption was 16.8 MB. Max. memory is 16.1 GB. [2020-11-28 03:16:07,938 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.31 ms. Allocated memory is still 79.7 MB. Free memory was 53.5 MB in the beginning and 53.5 MB in the end (delta: 26.7 kB). There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 893.16 ms. Allocated memory was 79.7 MB in the beginning and 96.5 MB in the end (delta: 16.8 MB). Free memory was 45.0 MB in the beginning and 44.2 MB in the end (delta: 756.7 kB). Peak memory consumption was 17.1 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 133.40 ms. Allocated memory is still 96.5 MB. Free memory was 44.2 MB in the beginning and 39.2 MB in the end (delta: 5.0 MB). Peak memory consumption was 6.3 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 62.85 ms. Allocated memory is still 96.5 MB. Free memory was 39.2 MB in the beginning and 35.8 MB in the end (delta: 3.4 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1515.63 ms. Allocated memory is still 96.5 MB. Free memory was 35.8 MB in the beginning and 56.2 MB in the end (delta: -20.4 MB). Peak memory consumption was 11.4 MB. Max. memory is 16.1 GB. * TraceAbstraction took 21723.62 ms. Allocated memory was 96.5 MB in the beginning and 339.7 MB in the end (delta: 243.3 MB). Free memory was 56.2 MB in the beginning and 213.0 MB in the end (delta: -156.8 MB). Peak memory consumption was 201.5 MB. Max. memory is 16.1 GB. * Witness Printer took 151.58 ms. Allocated memory is still 339.7 MB. Free memory was 213.0 MB in the beginning and 196.2 MB in the end (delta: 16.8 MB). Peak memory consumption was 16.8 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - PositiveResult [Line: 3]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - PositiveResult [Line: 3]: call of __VERIFIER_error() unreachable For all program executions holds that call of __VERIFIER_error() unreachable at this location - AllSpecificationsHoldResult: All specifications hold 2 specifications checked. All of them hold - InvariantResult [Line: 2474]: Loop Invariant Derived loop invariant: (((((((((((__ste_email_to0 == 2 && !(handle == 1)) && 2 == to) && msg == 1) && !(tmp == 0)) && 2 == client) && 2 == handle) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 242]: Loop Invariant Derived loop invariant: ((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (__ste_client_forwardReceiver1 == 0 && !(__ste_email_to0 == 1)) && !(rjh == 1) - InvariantResult [Line: 2386]: Loop Invariant Derived loop invariant: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 2474]: Loop Invariant Derived loop invariant: (((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && !(\result == 0)) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 2474]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((((((((((handle == 1 && 2 == client) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && !(handle == 1)) && 2 == to) && msg == 1) && 2 == \result) && \result == 1) && handle == 1 - InvariantResult [Line: 509]: Loop Invariant Derived loop invariant: ((((((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && 2 == \result) && \result == 1) && value == 2) && handle == 1) && rjh == 2) && msg == 1) && !(handle == 2) - InvariantResult [Line: 2180]: Loop Invariant Derived loop invariant: ((((((((((((handle == 1 && 2 == client) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: (((__ste_client_forwardReceiver1 == 0 && !(handle == 1)) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 2474]: Loop Invariant Derived loop invariant: ((((((((((((2 == client && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) - InvariantResult [Line: 491]: Loop Invariant Derived loop invariant: ((((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && \result == 1) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((__ste_client_forwardReceiver1 == 0 && !(handle == 1)) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 2533]: Loop Invariant Derived loop invariant: (__ste_client_forwardReceiver1 == 0 && !(__ste_email_to0 == 1)) && !(rjh == 1) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 491]: Loop Invariant Derived loop invariant: ((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && rjh == 2) && !(handle == 2)) || ((((((((__ste_email_to0 == 2 && msg == 1) && !(handle == 1)) && 2 == to) && 2 == client) && 2 == handle) && \result == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((__ste_client_forwardReceiver1 == 0 && !(__ste_email_to0 == 1)) && !(rjh == 1)) && !(handle == 2) - InvariantResult [Line: 528]: Loop Invariant Derived loop invariant: ((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && \result == 1) && handle == 1) && rjh == 2) && msg == 1) && !(handle == 2)) || (((((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) && rjh == 2) && msg == 1) && !(handle == 2)) - InvariantResult [Line: 491]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && 2 == to) && msg == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((__ste_client_forwardReceiver1 == 0 && !(__ste_email_to0 == 1)) && rjh == handle) && rjh == 2 - InvariantResult [Line: 528]: Loop Invariant Derived loop invariant: ((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 251]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 262]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 273]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 284]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 353]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 342]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 528]: Loop Invariant Derived loop invariant: ((((((__ste_email_to0 == 2 && !(handle == 1)) && handle == 1) && 2 == to) && msg == 1) && value == 2) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 331]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 320]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 2395]: Loop Invariant Derived loop invariant: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 306]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 2492]: Loop Invariant Derived loop invariant: (((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && \result == 1) && value == 2) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 173]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 295]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 472]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 2227]: Loop Invariant Derived loop invariant: ((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && rjh == 2) && !(handle == 2)) || ((((((((__ste_email_to0 == 2 && msg == 1) && !(handle == 1)) && 2 == to) && 2 == client) && 2 == handle) && \result == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 2227]: Loop Invariant Derived loop invariant: ((((((((__ste_email_to0 == 2 && handle == 1) && !(handle == 1)) && 2 == to) && msg == 1) && \result == 1) && value == 2) && rjh == 2) && msg == 1) && !(handle == 2) - InvariantResult [Line: 1175]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 1175]: Loop Invariant Derived loop invariant: (((((((((((((!(tmp == 0) && 2 == client) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || ((((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) - InvariantResult [Line: 435]: Loop Invariant Derived loop invariant: (((((((((((((!(tmp == 0) && 2 == client) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || ((((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) - InvariantResult [Line: 435]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 509]: Loop Invariant Derived loop invariant: (((((((((((__ste_email_to0 == 2 && !(handle == 1)) && 2 == to) && msg == 1) && !(tmp == 0)) && 2 == client) && 2 == handle) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 2180]: Loop Invariant Derived loop invariant: (((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2)) || ((((((msg == 1 && !(handle == 1)) && !(rjh == 1)) && \result == 1) && !(to == 1)) && !(handle == 2)) && \result == 0) - InvariantResult [Line: 2404]: Loop Invariant Derived loop invariant: (((((((((__ste_email_to0 == 2 && 2 == to) && msg == 1) && !(handle == 1)) && 2 == client) && 2 == handle) && \result == 1) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 509]: Loop Invariant Derived loop invariant: ((((2 == to && msg == 1) && !(handle == 1)) && \result == 1) && rjh == 2) && !(handle == 2) - InvariantResult [Line: 2446]: Loop Invariant Derived loop invariant: (((((((((((__ste_email_to0 == 2 && !(handle == 1)) && 2 == to) && msg == 1) && !(tmp == 0)) && 2 == client) && 2 == handle) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) || (((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && !(\result == 0)) && msg == 1) && rjh == 2) && !(handle == 2)) - InvariantResult [Line: 509]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 2446]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 472]: Loop Invariant Derived loop invariant: (((((((((((((!(tmp == 0) && 2 == client) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) && __ste_email_to0 == 2) && 2 == to) && msg == 1) && !(handle == 1)) && 2 == handle) && 2 == \result) && \result == 1) && handle == 1) || ((((((((((handle == 1 && 2 == to) && msg == 1) && !(handle == 1)) && !(tmp == 0)) && \result == 1) && handle == 1) && !(\result == 0)) && rjh == 2) && msg == 1) && !(handle == 2)) - InvariantResult [Line: 243]: Loop Invariant Derived loop invariant: ((((!(handle == 1) && !(__ste_email_to0 == 1)) && rjh == 2) && op1 == 1) && !(handle == 2)) || ((((!(handle == 1) && op1 == 0) && !(__ste_email_to0 == 1)) && rjh == 2) && !(handle == 2)) - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 136 locations, 2 error locations. Started 1 CEGAR loops. VerificationResult: SAFE, OverallTime: 7.9s, OverallIterations: 18, TraceHistogramMax: 3, AutomataDifference: 3.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 13.6s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 4019 SDtfs, 5361 SDslu, 7163 SDs, 0 SdLazy, 578 SolverSat, 92 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 1.0s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 239 GetRequests, 137 SyntacticMatches, 0 SemanticMatches, 102 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 341 ImplicationChecksByTransitivity, 1.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1902occurred in iteration=17, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 18 MinimizatonAttempts, 1713 StatesRemovedByMinimization, 15 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 54 LocationsWithAnnotation, 54 PreInvPairs, 1243 NumberOfFragments, 2030 HoareAnnotationTreeSize, 54 FomulaSimplifications, 79664078 FormulaSimplificationTreeSizeReduction, 3.9s HoareSimplificationTime, 54 FomulaSimplificationsInter, 1285270 FormulaSimplificationTreeSizeReductionInter, 9.6s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.3s SsaConstructionTime, 0.8s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 971 NumberOfCodeBlocks, 971 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 951 ConstructedInterpolants, 0 QuantifiedInterpolants, 73196 SizeOfPredicates, 2 NumberOfNonLiveVariables, 1528 ConjunctsInSsa, 7 ConjunctsInUnsatCore, 20 InterpolantComputations, 16 PerfectInterpolantSequences, 95/109 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be correct! Received shutdown request...