./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 4e77c044 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 118c87a61fbb1df2cb9a671e761c9c9d71205fb6 ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................ Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-4e77c04 [2021-10-13 01:10:14,981 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-13 01:10:14,983 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-13 01:10:15,031 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-13 01:10:15,032 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-13 01:10:15,038 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-13 01:10:15,041 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-13 01:10:15,046 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-13 01:10:15,049 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-13 01:10:15,056 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-13 01:10:15,058 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-13 01:10:15,061 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-13 01:10:15,062 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-13 01:10:15,065 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-13 01:10:15,068 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-13 01:10:15,073 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-13 01:10:15,075 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-13 01:10:15,077 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-13 01:10:15,080 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-13 01:10:15,091 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-13 01:10:15,093 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-13 01:10:15,095 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-13 01:10:15,097 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-13 01:10:15,099 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-13 01:10:15,103 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-13 01:10:15,104 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-13 01:10:15,104 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-13 01:10:15,106 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-13 01:10:15,107 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-13 01:10:15,108 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-13 01:10:15,109 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-13 01:10:15,110 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-13 01:10:15,112 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-13 01:10:15,113 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-13 01:10:15,114 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-13 01:10:15,115 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-13 01:10:15,116 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-13 01:10:15,116 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-13 01:10:15,117 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-13 01:10:15,118 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-13 01:10:15,119 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-13 01:10:15,120 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-13 01:10:15,158 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-13 01:10:15,158 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-13 01:10:15,162 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-13 01:10:15,162 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-13 01:10:15,164 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-13 01:10:15,164 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-13 01:10:15,165 INFO L138 SettingsManager]: * Use SBE=true [2021-10-13 01:10:15,165 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-13 01:10:15,165 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-13 01:10:15,166 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-13 01:10:15,167 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-13 01:10:15,167 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-13 01:10:15,168 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-13 01:10:15,168 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-13 01:10:15,168 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-13 01:10:15,169 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-13 01:10:15,169 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-13 01:10:15,169 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-13 01:10:15,170 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-13 01:10:15,170 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-13 01:10:15,170 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-13 01:10:15,171 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-13 01:10:15,171 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-13 01:10:15,172 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-13 01:10:15,172 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-13 01:10:15,172 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-13 01:10:15,173 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-13 01:10:15,173 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-13 01:10:15,173 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-13 01:10:15,174 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-13 01:10:15,174 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 118c87a61fbb1df2cb9a671e761c9c9d71205fb6 [2021-10-13 01:10:15,479 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-13 01:10:15,505 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-13 01:10:15,508 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-13 01:10:15,510 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-13 01:10:15,511 INFO L275 PluginConnector]: CDTParser initialized [2021-10-13 01:10:15,512 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/../../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c [2021-10-13 01:10:15,603 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/data/44992ca97/a1ccae116de94fd29fc7006cb517a889/FLAGf168fe7ee [2021-10-13 01:10:16,225 INFO L306 CDTParser]: Found 1 translation units. [2021-10-13 01:10:16,230 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c [2021-10-13 01:10:16,245 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/data/44992ca97/a1ccae116de94fd29fc7006cb517a889/FLAGf168fe7ee [2021-10-13 01:10:16,477 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/data/44992ca97/a1ccae116de94fd29fc7006cb517a889 [2021-10-13 01:10:16,480 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-13 01:10:16,481 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-13 01:10:16,483 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-13 01:10:16,484 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-13 01:10:16,488 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-13 01:10:16,489 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.10 01:10:16" (1/1) ... [2021-10-13 01:10:16,491 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6bca50ee and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:16, skipping insertion in model container [2021-10-13 01:10:16,491 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.10 01:10:16" (1/1) ... [2021-10-13 01:10:16,500 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-13 01:10:16,559 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-13 01:10:16,807 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c[3321,3334] [2021-10-13 01:10:16,917 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-13 01:10:16,929 INFO L203 MainTranslator]: Completed pre-run [2021-10-13 01:10:16,961 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c[3321,3334] [2021-10-13 01:10:17,074 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-13 01:10:17,111 INFO L208 MainTranslator]: Completed translation [2021-10-13 01:10:17,119 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17 WrapperNode [2021-10-13 01:10:17,121 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-13 01:10:17,123 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-13 01:10:17,123 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-13 01:10:17,124 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-13 01:10:17,133 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,165 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,244 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-13 01:10:17,260 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-13 01:10:17,260 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-13 01:10:17,260 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-13 01:10:17,270 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,270 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,277 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,277 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,293 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,306 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,312 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,325 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-13 01:10:17,338 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-13 01:10:17,338 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-13 01:10:17,338 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-13 01:10:17,346 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (1/1) ... [2021-10-13 01:10:17,359 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-13 01:10:17,377 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/z3 [2021-10-13 01:10:17,397 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-13 01:10:17,415 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-13 01:10:17,456 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-13 01:10:17,456 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-13 01:10:17,457 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-13 01:10:17,457 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-13 01:10:18,573 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-13 01:10:18,573 INFO L299 CfgBuilder]: Removed 196 assume(true) statements. [2021-10-13 01:10:18,576 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.10 01:10:18 BoogieIcfgContainer [2021-10-13 01:10:18,576 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-13 01:10:18,578 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-13 01:10:18,578 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-13 01:10:18,582 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-13 01:10:18,583 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.10 01:10:16" (1/3) ... [2021-10-13 01:10:18,584 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4c752d59 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.10 01:10:18, skipping insertion in model container [2021-10-13 01:10:18,584 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 01:10:17" (2/3) ... [2021-10-13 01:10:18,584 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4c752d59 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.10 01:10:18, skipping insertion in model container [2021-10-13 01:10:18,585 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.10 01:10:18" (3/3) ... [2021-10-13 01:10:18,586 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product59.cil.c [2021-10-13 01:10:18,592 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-13 01:10:18,592 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-13 01:10:18,649 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-13 01:10:18,657 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-13 01:10:18,657 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-13 01:10:18,680 INFO L276 IsEmpty]: Start isEmpty. Operand has 137 states, 133 states have (on average 1.5338345864661653) internal successors, (204), 136 states have internal predecessors, (204), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:18,687 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2021-10-13 01:10:18,688 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:18,688 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:18,689 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:18,696 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:18,696 INFO L82 PathProgramCache]: Analyzing trace with hash 998639577, now seen corresponding path program 1 times [2021-10-13 01:10:18,707 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:18,708 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2103606844] [2021-10-13 01:10:18,709 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:18,710 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:18,884 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:18,990 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:18,991 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:18,991 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2103606844] [2021-10-13 01:10:18,992 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2103606844] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:18,993 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:18,993 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-13 01:10:18,995 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1871065570] [2021-10-13 01:10:19,002 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-13 01:10:19,002 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:19,018 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-13 01:10:19,022 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-13 01:10:19,030 INFO L87 Difference]: Start difference. First operand has 137 states, 133 states have (on average 1.5338345864661653) internal successors, (204), 136 states have internal predecessors, (204), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,080 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:19,081 INFO L93 Difference]: Finished difference Result 268 states and 401 transitions. [2021-10-13 01:10:19,081 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-13 01:10:19,083 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 16 [2021-10-13 01:10:19,083 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:19,095 INFO L225 Difference]: With dead ends: 268 [2021-10-13 01:10:19,095 INFO L226 Difference]: Without dead ends: 133 [2021-10-13 01:10:19,098 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0ms TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-13 01:10:19,113 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 133 states. [2021-10-13 01:10:19,176 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 133 to 133. [2021-10-13 01:10:19,178 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 133 states, 130 states have (on average 1.476923076923077) internal successors, (192), 132 states have internal predecessors, (192), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,181 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 133 states to 133 states and 192 transitions. [2021-10-13 01:10:19,183 INFO L78 Accepts]: Start accepts. Automaton has 133 states and 192 transitions. Word has length 16 [2021-10-13 01:10:19,183 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:19,183 INFO L470 AbstractCegarLoop]: Abstraction has 133 states and 192 transitions. [2021-10-13 01:10:19,184 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,184 INFO L276 IsEmpty]: Start isEmpty. Operand 133 states and 192 transitions. [2021-10-13 01:10:19,185 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2021-10-13 01:10:19,185 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:19,186 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:19,186 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-13 01:10:19,187 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:19,187 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:19,188 INFO L82 PathProgramCache]: Analyzing trace with hash -48117320, now seen corresponding path program 1 times [2021-10-13 01:10:19,188 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:19,188 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [172417462] [2021-10-13 01:10:19,189 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:19,189 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:19,263 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:19,372 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:19,372 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:19,372 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [172417462] [2021-10-13 01:10:19,373 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [172417462] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:19,373 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:19,373 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-13 01:10:19,374 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1066871243] [2021-10-13 01:10:19,375 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 01:10:19,375 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:19,376 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 01:10:19,377 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:19,377 INFO L87 Difference]: Start difference. First operand 133 states and 192 transitions. Second operand has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,401 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:19,401 INFO L93 Difference]: Finished difference Result 133 states and 192 transitions. [2021-10-13 01:10:19,403 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 01:10:19,404 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 17 [2021-10-13 01:10:19,404 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:19,406 INFO L225 Difference]: With dead ends: 133 [2021-10-13 01:10:19,407 INFO L226 Difference]: Without dead ends: 55 [2021-10-13 01:10:19,408 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 5.7ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:19,411 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2021-10-13 01:10:19,419 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2021-10-13 01:10:19,419 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 54 states have (on average 1.462962962962963) internal successors, (79), 54 states have internal predecessors, (79), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,421 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 79 transitions. [2021-10-13 01:10:19,421 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 79 transitions. Word has length 17 [2021-10-13 01:10:19,422 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:19,422 INFO L470 AbstractCegarLoop]: Abstraction has 55 states and 79 transitions. [2021-10-13 01:10:19,422 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,423 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 79 transitions. [2021-10-13 01:10:19,424 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2021-10-13 01:10:19,424 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:19,424 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:19,425 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-13 01:10:19,425 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:19,426 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:19,426 INFO L82 PathProgramCache]: Analyzing trace with hash -1725162559, now seen corresponding path program 1 times [2021-10-13 01:10:19,426 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:19,427 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1747960008] [2021-10-13 01:10:19,427 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:19,427 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:19,464 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:19,556 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:19,557 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:19,557 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1747960008] [2021-10-13 01:10:19,558 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1747960008] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:19,559 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:19,561 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-13 01:10:19,561 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [728292620] [2021-10-13 01:10:19,562 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 01:10:19,563 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:19,565 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 01:10:19,570 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:19,570 INFO L87 Difference]: Start difference. First operand 55 states and 79 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,603 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:19,608 INFO L93 Difference]: Finished difference Result 153 states and 225 transitions. [2021-10-13 01:10:19,610 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 01:10:19,610 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 22 [2021-10-13 01:10:19,610 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:19,612 INFO L225 Difference]: With dead ends: 153 [2021-10-13 01:10:19,615 INFO L226 Difference]: Without dead ends: 104 [2021-10-13 01:10:19,616 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 4.0ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:19,620 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-10-13 01:10:19,634 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 100. [2021-10-13 01:10:19,639 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 99 states have (on average 1.4848484848484849) internal successors, (147), 99 states have internal predecessors, (147), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,646 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 147 transitions. [2021-10-13 01:10:19,647 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 147 transitions. Word has length 22 [2021-10-13 01:10:19,647 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:19,647 INFO L470 AbstractCegarLoop]: Abstraction has 100 states and 147 transitions. [2021-10-13 01:10:19,648 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,648 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 147 transitions. [2021-10-13 01:10:19,650 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-13 01:10:19,650 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:19,651 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:19,651 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-13 01:10:19,651 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:19,652 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:19,653 INFO L82 PathProgramCache]: Analyzing trace with hash 1536171928, now seen corresponding path program 1 times [2021-10-13 01:10:19,653 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:19,654 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [131748673] [2021-10-13 01:10:19,654 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:19,654 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:19,710 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:19,785 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:19,785 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:19,786 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [131748673] [2021-10-13 01:10:19,786 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [131748673] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:19,786 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:19,786 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-13 01:10:19,787 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1190714047] [2021-10-13 01:10:19,787 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 01:10:19,787 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:19,788 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 01:10:19,788 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:19,789 INFO L87 Difference]: Start difference. First operand 100 states and 147 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,888 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:19,888 INFO L93 Difference]: Finished difference Result 235 states and 350 transitions. [2021-10-13 01:10:19,891 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 01:10:19,891 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-13 01:10:19,892 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:19,893 INFO L225 Difference]: With dead ends: 235 [2021-10-13 01:10:19,894 INFO L226 Difference]: Without dead ends: 141 [2021-10-13 01:10:19,895 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 2.8ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:19,895 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 141 states. [2021-10-13 01:10:19,913 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 141 to 139. [2021-10-13 01:10:19,914 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 138 states have (on average 1.4565217391304348) internal successors, (201), 138 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,915 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 201 transitions. [2021-10-13 01:10:19,915 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 201 transitions. Word has length 24 [2021-10-13 01:10:19,915 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:19,916 INFO L470 AbstractCegarLoop]: Abstraction has 139 states and 201 transitions. [2021-10-13 01:10:19,916 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:19,916 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 201 transitions. [2021-10-13 01:10:19,917 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-10-13 01:10:19,918 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:19,918 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:19,918 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-13 01:10:19,919 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:19,919 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:19,919 INFO L82 PathProgramCache]: Analyzing trace with hash 1391898518, now seen corresponding path program 1 times [2021-10-13 01:10:19,920 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:19,920 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2016990153] [2021-10-13 01:10:19,920 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:19,921 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:19,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:19,998 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:19,999 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:19,999 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2016990153] [2021-10-13 01:10:19,999 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2016990153] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:20,000 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:20,000 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-13 01:10:20,000 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [466327666] [2021-10-13 01:10:20,001 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-13 01:10:20,001 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:20,002 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-13 01:10:20,002 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-13 01:10:20,002 INFO L87 Difference]: Start difference. First operand 139 states and 201 transitions. Second operand has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,185 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:20,186 INFO L93 Difference]: Finished difference Result 747 states and 1098 transitions. [2021-10-13 01:10:20,186 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-13 01:10:20,186 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-10-13 01:10:20,187 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:20,193 INFO L225 Difference]: With dead ends: 747 [2021-10-13 01:10:20,193 INFO L226 Difference]: Without dead ends: 614 [2021-10-13 01:10:20,194 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 52.4ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-13 01:10:20,195 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 614 states. [2021-10-13 01:10:20,229 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 614 to 262. [2021-10-13 01:10:20,230 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 262 states, 261 states have (on average 1.4367816091954022) internal successors, (375), 261 states have internal predecessors, (375), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,232 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 262 states to 262 states and 375 transitions. [2021-10-13 01:10:20,232 INFO L78 Accepts]: Start accepts. Automaton has 262 states and 375 transitions. Word has length 25 [2021-10-13 01:10:20,233 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:20,233 INFO L470 AbstractCegarLoop]: Abstraction has 262 states and 375 transitions. [2021-10-13 01:10:20,233 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,233 INFO L276 IsEmpty]: Start isEmpty. Operand 262 states and 375 transitions. [2021-10-13 01:10:20,235 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-10-13 01:10:20,235 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:20,235 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:20,235 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-13 01:10:20,235 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:20,236 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:20,236 INFO L82 PathProgramCache]: Analyzing trace with hash 1188091424, now seen corresponding path program 1 times [2021-10-13 01:10:20,236 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:20,237 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1798604879] [2021-10-13 01:10:20,237 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:20,237 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:20,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:20,316 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:20,316 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:20,316 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1798604879] [2021-10-13 01:10:20,317 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1798604879] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:20,317 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:20,317 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-13 01:10:20,317 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1231672715] [2021-10-13 01:10:20,318 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-13 01:10:20,318 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:20,322 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-13 01:10:20,322 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-13 01:10:20,323 INFO L87 Difference]: Start difference. First operand 262 states and 375 transitions. Second operand has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,519 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:20,520 INFO L93 Difference]: Finished difference Result 768 states and 1102 transitions. [2021-10-13 01:10:20,520 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-10-13 01:10:20,522 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-10-13 01:10:20,522 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:20,528 INFO L225 Difference]: With dead ends: 768 [2021-10-13 01:10:20,528 INFO L226 Difference]: Without dead ends: 766 [2021-10-13 01:10:20,537 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 48.5ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-13 01:10:20,538 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 766 states. [2021-10-13 01:10:20,593 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 766 to 262. [2021-10-13 01:10:20,594 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 262 states, 261 states have (on average 1.4291187739463602) internal successors, (373), 261 states have internal predecessors, (373), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,596 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 262 states to 262 states and 373 transitions. [2021-10-13 01:10:20,596 INFO L78 Accepts]: Start accepts. Automaton has 262 states and 373 transitions. Word has length 26 [2021-10-13 01:10:20,596 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:20,596 INFO L470 AbstractCegarLoop]: Abstraction has 262 states and 373 transitions. [2021-10-13 01:10:20,597 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,597 INFO L276 IsEmpty]: Start isEmpty. Operand 262 states and 373 transitions. [2021-10-13 01:10:20,606 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-10-13 01:10:20,607 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:20,607 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:20,607 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-13 01:10:20,608 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:20,608 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:20,609 INFO L82 PathProgramCache]: Analyzing trace with hash 770731220, now seen corresponding path program 1 times [2021-10-13 01:10:20,609 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:20,614 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [463747608] [2021-10-13 01:10:20,615 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:20,615 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:20,658 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:20,743 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:20,743 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:20,744 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [463747608] [2021-10-13 01:10:20,744 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [463747608] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:20,745 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:20,745 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-13 01:10:20,746 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1970816248] [2021-10-13 01:10:20,746 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-13 01:10:20,746 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:20,747 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-13 01:10:20,747 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-13 01:10:20,748 INFO L87 Difference]: Start difference. First operand 262 states and 373 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,850 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:20,850 INFO L93 Difference]: Finished difference Result 698 states and 980 transitions. [2021-10-13 01:10:20,851 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-10-13 01:10:20,851 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-10-13 01:10:20,852 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:20,855 INFO L225 Difference]: With dead ends: 698 [2021-10-13 01:10:20,855 INFO L226 Difference]: Without dead ends: 442 [2021-10-13 01:10:20,859 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 23.2ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-13 01:10:20,860 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 442 states. [2021-10-13 01:10:20,884 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 442 to 286. [2021-10-13 01:10:20,885 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 286 states, 285 states have (on average 1.3929824561403508) internal successors, (397), 285 states have internal predecessors, (397), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,886 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 286 states to 286 states and 397 transitions. [2021-10-13 01:10:20,887 INFO L78 Accepts]: Start accepts. Automaton has 286 states and 397 transitions. Word has length 34 [2021-10-13 01:10:20,889 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:20,889 INFO L470 AbstractCegarLoop]: Abstraction has 286 states and 397 transitions. [2021-10-13 01:10:20,890 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:20,890 INFO L276 IsEmpty]: Start isEmpty. Operand 286 states and 397 transitions. [2021-10-13 01:10:20,893 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-10-13 01:10:20,894 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:20,894 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:20,894 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-13 01:10:20,895 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:20,895 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:20,895 INFO L82 PathProgramCache]: Analyzing trace with hash 183925206, now seen corresponding path program 1 times [2021-10-13 01:10:20,896 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:20,896 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [416710933] [2021-10-13 01:10:20,896 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:20,897 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:20,934 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:21,012 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:21,013 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:21,013 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [416710933] [2021-10-13 01:10:21,013 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [416710933] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:21,014 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:21,014 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-13 01:10:21,014 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1124281347] [2021-10-13 01:10:21,015 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-13 01:10:21,015 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:21,016 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-13 01:10:21,016 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-13 01:10:21,016 INFO L87 Difference]: Start difference. First operand 286 states and 397 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,154 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:21,155 INFO L93 Difference]: Finished difference Result 782 states and 1065 transitions. [2021-10-13 01:10:21,155 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-10-13 01:10:21,156 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-10-13 01:10:21,156 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:21,160 INFO L225 Difference]: With dead ends: 782 [2021-10-13 01:10:21,160 INFO L226 Difference]: Without dead ends: 502 [2021-10-13 01:10:21,161 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 39.0ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-13 01:10:21,162 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 502 states. [2021-10-13 01:10:21,193 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 502 to 302. [2021-10-13 01:10:21,194 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.372093023255814) internal successors, (413), 301 states have internal predecessors, (413), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,196 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 413 transitions. [2021-10-13 01:10:21,196 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 413 transitions. Word has length 34 [2021-10-13 01:10:21,196 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:21,196 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 413 transitions. [2021-10-13 01:10:21,197 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,197 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 413 transitions. [2021-10-13 01:10:21,198 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-10-13 01:10:21,198 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:21,198 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:21,199 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-13 01:10:21,199 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:21,199 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:21,200 INFO L82 PathProgramCache]: Analyzing trace with hash -1095938472, now seen corresponding path program 1 times [2021-10-13 01:10:21,200 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:21,200 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1239907668] [2021-10-13 01:10:21,200 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:21,201 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:21,220 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:21,250 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:21,251 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:21,251 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1239907668] [2021-10-13 01:10:21,251 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1239907668] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:21,251 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:21,252 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-13 01:10:21,252 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [854114946] [2021-10-13 01:10:21,253 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 01:10:21,253 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:21,253 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 01:10:21,254 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:21,254 INFO L87 Difference]: Start difference. First operand 302 states and 413 transitions. Second operand has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,331 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:21,331 INFO L93 Difference]: Finished difference Result 814 states and 1123 transitions. [2021-10-13 01:10:21,332 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 01:10:21,332 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-10-13 01:10:21,333 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:21,337 INFO L225 Difference]: With dead ends: 814 [2021-10-13 01:10:21,337 INFO L226 Difference]: Without dead ends: 518 [2021-10-13 01:10:21,338 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 2.5ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:21,339 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 518 states. [2021-10-13 01:10:21,399 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 518 to 516. [2021-10-13 01:10:21,401 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 516 states, 515 states have (on average 1.3572815533980582) internal successors, (699), 515 states have internal predecessors, (699), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,404 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 516 states to 516 states and 699 transitions. [2021-10-13 01:10:21,405 INFO L78 Accepts]: Start accepts. Automaton has 516 states and 699 transitions. Word has length 34 [2021-10-13 01:10:21,405 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:21,405 INFO L470 AbstractCegarLoop]: Abstraction has 516 states and 699 transitions. [2021-10-13 01:10:21,406 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,406 INFO L276 IsEmpty]: Start isEmpty. Operand 516 states and 699 transitions. [2021-10-13 01:10:21,407 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-13 01:10:21,407 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:21,407 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:21,408 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-13 01:10:21,408 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:21,409 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:21,409 INFO L82 PathProgramCache]: Analyzing trace with hash 420497238, now seen corresponding path program 1 times [2021-10-13 01:10:21,409 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:21,409 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [858997059] [2021-10-13 01:10:21,410 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:21,410 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:21,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:21,483 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:21,483 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:21,484 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [858997059] [2021-10-13 01:10:21,484 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [858997059] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:21,484 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:21,484 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-13 01:10:21,485 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1141625713] [2021-10-13 01:10:21,485 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-13 01:10:21,485 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:21,486 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-13 01:10:21,486 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-13 01:10:21,487 INFO L87 Difference]: Start difference. First operand 516 states and 699 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,854 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:21,854 INFO L93 Difference]: Finished difference Result 1686 states and 2260 transitions. [2021-10-13 01:10:21,855 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-10-13 01:10:21,855 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-13 01:10:21,858 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:21,866 INFO L225 Difference]: With dead ends: 1686 [2021-10-13 01:10:21,866 INFO L226 Difference]: Without dead ends: 1176 [2021-10-13 01:10:21,868 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 70.5ms TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-10-13 01:10:21,870 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1176 states. [2021-10-13 01:10:21,950 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1176 to 516. [2021-10-13 01:10:21,952 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 516 states, 515 states have (on average 1.3339805825242719) internal successors, (687), 515 states have internal predecessors, (687), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,956 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 516 states to 516 states and 687 transitions. [2021-10-13 01:10:21,956 INFO L78 Accepts]: Start accepts. Automaton has 516 states and 687 transitions. Word has length 35 [2021-10-13 01:10:21,957 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:21,957 INFO L470 AbstractCegarLoop]: Abstraction has 516 states and 687 transitions. [2021-10-13 01:10:21,957 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:21,957 INFO L276 IsEmpty]: Start isEmpty. Operand 516 states and 687 transitions. [2021-10-13 01:10:21,960 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2021-10-13 01:10:21,960 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:21,960 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:21,961 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-13 01:10:21,961 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:21,962 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:21,962 INFO L82 PathProgramCache]: Analyzing trace with hash 325446782, now seen corresponding path program 1 times [2021-10-13 01:10:21,962 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:21,965 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1168153637] [2021-10-13 01:10:21,966 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:21,966 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:21,992 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:22,033 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-13 01:10:22,033 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:22,033 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1168153637] [2021-10-13 01:10:22,034 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1168153637] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:22,034 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:22,034 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-13 01:10:22,035 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1703209432] [2021-10-13 01:10:22,035 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 01:10:22,035 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:22,037 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 01:10:22,038 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:22,038 INFO L87 Difference]: Start difference. First operand 516 states and 687 transitions. Second operand has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:22,169 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:22,169 INFO L93 Difference]: Finished difference Result 606 states and 804 transitions. [2021-10-13 01:10:22,170 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 01:10:22,170 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 52 [2021-10-13 01:10:22,170 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:22,173 INFO L225 Difference]: With dead ends: 606 [2021-10-13 01:10:22,174 INFO L226 Difference]: Without dead ends: 256 [2021-10-13 01:10:22,175 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 2.5ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 01:10:22,175 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 256 states. [2021-10-13 01:10:22,202 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 256 to 256. [2021-10-13 01:10:22,203 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 256 states, 255 states have (on average 1.2823529411764707) internal successors, (327), 255 states have internal predecessors, (327), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:22,205 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 256 states to 256 states and 327 transitions. [2021-10-13 01:10:22,205 INFO L78 Accepts]: Start accepts. Automaton has 256 states and 327 transitions. Word has length 52 [2021-10-13 01:10:22,205 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:22,205 INFO L470 AbstractCegarLoop]: Abstraction has 256 states and 327 transitions. [2021-10-13 01:10:22,206 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:22,206 INFO L276 IsEmpty]: Start isEmpty. Operand 256 states and 327 transitions. [2021-10-13 01:10:22,207 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-13 01:10:22,207 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:22,207 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:22,209 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-13 01:10:22,209 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:22,209 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:22,210 INFO L82 PathProgramCache]: Analyzing trace with hash 507471461, now seen corresponding path program 1 times [2021-10-13 01:10:22,210 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:22,210 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1183393496] [2021-10-13 01:10:22,210 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:22,210 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:22,280 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:22,380 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 01:10:22,380 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:22,381 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1183393496] [2021-10-13 01:10:22,381 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1183393496] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:22,381 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:22,381 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-13 01:10:22,382 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [730930575] [2021-10-13 01:10:22,382 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-13 01:10:22,382 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:22,383 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-13 01:10:22,383 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-10-13 01:10:22,384 INFO L87 Difference]: Start difference. First operand 256 states and 327 transitions. Second operand has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:22,788 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:22,788 INFO L93 Difference]: Finished difference Result 1330 states and 1690 transitions. [2021-10-13 01:10:22,789 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-10-13 01:10:22,789 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-13 01:10:22,790 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:22,799 INFO L225 Difference]: With dead ends: 1330 [2021-10-13 01:10:22,799 INFO L226 Difference]: Without dead ends: 1080 [2021-10-13 01:10:22,800 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 101.1ms TimeCoverageRelationStatistics Valid=47, Invalid=85, Unknown=0, NotChecked=0, Total=132 [2021-10-13 01:10:22,802 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1080 states. [2021-10-13 01:10:22,866 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1080 to 472. [2021-10-13 01:10:22,867 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 472 states, 471 states have (on average 1.2632696390658174) internal successors, (595), 471 states have internal predecessors, (595), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:22,870 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 472 states to 472 states and 595 transitions. [2021-10-13 01:10:22,870 INFO L78 Accepts]: Start accepts. Automaton has 472 states and 595 transitions. Word has length 56 [2021-10-13 01:10:22,871 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:22,871 INFO L470 AbstractCegarLoop]: Abstraction has 472 states and 595 transitions. [2021-10-13 01:10:22,871 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:22,872 INFO L276 IsEmpty]: Start isEmpty. Operand 472 states and 595 transitions. [2021-10-13 01:10:22,873 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-13 01:10:22,873 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 01:10:22,873 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 01:10:22,873 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-10-13 01:10:22,874 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 01:10:22,874 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 01:10:22,875 INFO L82 PathProgramCache]: Analyzing trace with hash 1208536039, now seen corresponding path program 1 times [2021-10-13 01:10:22,875 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 01:10:22,875 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1324967400] [2021-10-13 01:10:22,875 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 01:10:22,876 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 01:10:22,904 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 01:10:22,945 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-10-13 01:10:22,945 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 01:10:22,946 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1324967400] [2021-10-13 01:10:22,946 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1324967400] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 01:10:22,946 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 01:10:22,946 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-13 01:10:22,947 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1147723843] [2021-10-13 01:10:22,947 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-13 01:10:22,947 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 01:10:22,948 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-13 01:10:22,948 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-13 01:10:22,948 INFO L87 Difference]: Start difference. First operand 472 states and 595 transitions. Second operand has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:23,027 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 01:10:23,028 INFO L93 Difference]: Finished difference Result 816 states and 1012 transitions. [2021-10-13 01:10:23,029 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-13 01:10:23,029 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-13 01:10:23,030 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 01:10:23,030 INFO L225 Difference]: With dead ends: 816 [2021-10-13 01:10:23,030 INFO L226 Difference]: Without dead ends: 0 [2021-10-13 01:10:23,031 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 21.4ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-13 01:10:23,032 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-13 01:10:23,032 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-13 01:10:23,032 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:23,032 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-13 01:10:23,032 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 56 [2021-10-13 01:10:23,033 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 01:10:23,033 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-13 01:10:23,033 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 01:10:23,033 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-13 01:10:23,033 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-13 01:10:23,036 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-13 01:10:23,037 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-13 01:10:23,037 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-13 01:10:23,037 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-10-13 01:10:23,039 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-13 01:10:23,045 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:23,047 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:23,599 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:23,600 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:23,601 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:23,602 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:23,603 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,019 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,021 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,021 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,022 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,024 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,025 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,271 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,272 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,273 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,631 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,632 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,632 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,634 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,635 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,636 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,637 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,637 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,639 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,668 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,812 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,813 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,838 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,935 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,935 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,936 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,937 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,937 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,938 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:24,939 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,123 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,125 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,163 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,164 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,165 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,372 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,373 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,374 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,541 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,542 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,545 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,546 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,559 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,560 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,561 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,874 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,875 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,876 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,876 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:25,877 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-13 01:10:32,743 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 185) no Hoare annotation was computed. [2021-10-13 01:10:32,743 INFO L853 garLoopResultBuilder]: At program point L399(lines 394 402) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_isPumpRunning_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse4 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 (= 1 ~systemActive~0) .cse3 (<= 1 ~waterLevel~0) .cse4) (and .cse0 .cse1 .cse2 .cse3 (= 0 ~systemActive~0) .cse4))) [2021-10-13 01:10:32,744 INFO L853 garLoopResultBuilder]: At program point L399-1(lines 394 402) the Hoare annotation is: false [2021-10-13 01:10:32,744 INFO L853 garLoopResultBuilder]: At program point L399-2(lines 394 402) the Hoare annotation is: false [2021-10-13 01:10:32,744 INFO L857 garLoopResultBuilder]: For program point L467(lines 467 471) no Hoare annotation was computed. [2021-10-13 01:10:32,744 INFO L857 garLoopResultBuilder]: For program point L467-2(lines 467 471) no Hoare annotation was computed. [2021-10-13 01:10:32,744 INFO L857 garLoopResultBuilder]: For program point L467-3(lines 467 471) no Hoare annotation was computed. [2021-10-13 01:10:32,744 INFO L857 garLoopResultBuilder]: For program point L302(lines 302 319) no Hoare annotation was computed. [2021-10-13 01:10:32,744 INFO L857 garLoopResultBuilder]: For program point L467-5(lines 467 471) no Hoare annotation was computed. [2021-10-13 01:10:32,745 INFO L857 garLoopResultBuilder]: For program point L302-1(lines 302 319) no Hoare annotation was computed. [2021-10-13 01:10:32,745 INFO L857 garLoopResultBuilder]: For program point L467-6(lines 467 471) no Hoare annotation was computed. [2021-10-13 01:10:32,745 INFO L857 garLoopResultBuilder]: For program point L302-2(lines 302 319) no Hoare annotation was computed. [2021-10-13 01:10:32,745 INFO L857 garLoopResultBuilder]: For program point L302-3(lines 302 319) no Hoare annotation was computed. [2021-10-13 01:10:32,745 INFO L857 garLoopResultBuilder]: For program point L467-8(lines 467 471) no Hoare annotation was computed. [2021-10-13 01:10:32,745 INFO L857 garLoopResultBuilder]: For program point L302-4(lines 302 319) no Hoare annotation was computed. [2021-10-13 01:10:32,745 INFO L857 garLoopResultBuilder]: For program point L302-5(lines 302 319) no Hoare annotation was computed. [2021-10-13 01:10:32,746 INFO L853 garLoopResultBuilder]: At program point L270(lines 269 288) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse3 (= 0 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse2 (= ~methaneLevelCritical~0 1)) (.cse6 (<= 1 ~waterLevel~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse4 .cse3) (and .cse0 .cse5 .cse2 .cse6))) [2021-10-13 01:10:32,746 INFO L857 garLoopResultBuilder]: For program point L270-1(lines 270 276) no Hoare annotation was computed. [2021-10-13 01:10:32,746 INFO L857 garLoopResultBuilder]: For program point L204(lines 203 250) no Hoare annotation was computed. [2021-10-13 01:10:32,746 INFO L853 garLoopResultBuilder]: At program point L270-2(lines 269 288) the Hoare annotation is: false [2021-10-13 01:10:32,746 INFO L853 garLoopResultBuilder]: At program point L270-3(lines 269 288) the Hoare annotation is: false [2021-10-13 01:10:32,746 INFO L853 garLoopResultBuilder]: At program point L138(lines 129 142) the Hoare annotation is: false [2021-10-13 01:10:32,747 INFO L853 garLoopResultBuilder]: At program point L138-1(lines 129 142) the Hoare annotation is: (let ((.cse0 (not (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (.cse5 (<= 1 ~waterLevel~0)) (.cse4 (= ~methaneLevelCritical~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse5) (and .cse1 .cse2 .cse7 .cse3 .cse4) (and .cse1 .cse2 .cse6 .cse7 .cse3))) [2021-10-13 01:10:32,747 INFO L853 garLoopResultBuilder]: At program point L138-2(lines 129 142) the Hoare annotation is: false [2021-10-13 01:10:32,747 INFO L853 garLoopResultBuilder]: At program point L138-3(lines 129 142) the Hoare annotation is: false [2021-10-13 01:10:32,747 INFO L853 garLoopResultBuilder]: At program point L138-4(lines 129 142) the Hoare annotation is: false [2021-10-13 01:10:32,747 INFO L853 garLoopResultBuilder]: At program point L138-5(lines 129 142) the Hoare annotation is: false [2021-10-13 01:10:32,747 INFO L857 garLoopResultBuilder]: For program point L205(lines 205 209) no Hoare annotation was computed. [2021-10-13 01:10:32,747 INFO L857 garLoopResultBuilder]: For program point L239(lines 239 245) no Hoare annotation was computed. [2021-10-13 01:10:32,748 INFO L853 garLoopResultBuilder]: At program point L239-1(lines 270 276) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse7 .cse3 .cse5) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 .cse7 .cse3))) [2021-10-13 01:10:32,748 INFO L857 garLoopResultBuilder]: For program point L306(lines 306 314) no Hoare annotation was computed. [2021-10-13 01:10:32,748 INFO L857 garLoopResultBuilder]: For program point L306-1(lines 306 314) no Hoare annotation was computed. [2021-10-13 01:10:32,748 INFO L857 garLoopResultBuilder]: For program point L306-2(lines 306 314) no Hoare annotation was computed. [2021-10-13 01:10:32,748 INFO L857 garLoopResultBuilder]: For program point L306-3(lines 306 314) no Hoare annotation was computed. [2021-10-13 01:10:32,748 INFO L857 garLoopResultBuilder]: For program point L306-4(lines 306 314) no Hoare annotation was computed. [2021-10-13 01:10:32,748 INFO L857 garLoopResultBuilder]: For program point L306-5(lines 306 314) no Hoare annotation was computed. [2021-10-13 01:10:32,749 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 185) no Hoare annotation was computed. [2021-10-13 01:10:32,749 INFO L853 garLoopResultBuilder]: At program point L473(lines 458 476) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_isLowWaterLevel_#res| 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (< 0 (+ ULTIMATE.start_isLowWaterLevel_~tmp~6 1))) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ULTIMATE.start_isLowWaterLevel_~tmp___0~3 1)) (.cse5 (<= 1 ~waterLevel~0)) (.cse6 (<= |ULTIMATE.start_isLowWaterSensorDry_#res| 0)) (.cse7 (<= 0 |ULTIMATE.start_isLowWaterSensorDry_#res|)) (.cse8 (<= ULTIMATE.start_isLowWaterLevel_~tmp~6 0))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~methaneLevelCritical~0 1) .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 (= ~methaneLevelCritical~0 0) .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8))) [2021-10-13 01:10:32,749 INFO L853 garLoopResultBuilder]: At program point L473-1(lines 458 476) the Hoare annotation is: false [2021-10-13 01:10:32,749 INFO L853 garLoopResultBuilder]: At program point L473-2(lines 458 476) the Hoare annotation is: false [2021-10-13 01:10:32,749 INFO L853 garLoopResultBuilder]: At program point L277(lines 277 283) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 (<= 2 ~waterLevel~0) .cse3))) [2021-10-13 01:10:32,749 INFO L853 garLoopResultBuilder]: At program point L277-1(lines 277 283) the Hoare annotation is: false [2021-10-13 01:10:32,750 INFO L853 garLoopResultBuilder]: At program point L277-2(lines 277 283) the Hoare annotation is: false [2021-10-13 01:10:32,750 INFO L857 garLoopResultBuilder]: For program point L80(lines 80 84) no Hoare annotation was computed. [2021-10-13 01:10:32,750 INFO L857 garLoopResultBuilder]: For program point L213(lines 213 219) no Hoare annotation was computed. [2021-10-13 01:10:32,750 INFO L853 garLoopResultBuilder]: At program point L213-1(lines 213 219) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse8 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse9 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse2 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse7 .cse9) (and .cse0 .cse5 .cse2 .cse6 (<= 2 ~waterLevel~0) .cse3) (and .cse0 .cse1 .cse3 .cse8 .cse4 .cse9))) [2021-10-13 01:10:32,750 INFO L853 garLoopResultBuilder]: At program point L148(lines 143 151) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (<= 1 ~waterLevel~0)) (.cse3 (<= |ULTIMATE.start_isLowWaterSensorDry_#res| 0)) (.cse4 (<= 0 |ULTIMATE.start_isLowWaterSensorDry_#res|))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 1) .cse2 .cse3 .cse4) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1 .cse2 .cse3 .cse4))) [2021-10-13 01:10:32,750 INFO L853 garLoopResultBuilder]: At program point L148-1(lines 143 151) the Hoare annotation is: false [2021-10-13 01:10:32,750 INFO L853 garLoopResultBuilder]: At program point L148-2(lines 143 151) the Hoare annotation is: false [2021-10-13 01:10:32,750 INFO L853 garLoopResultBuilder]: At program point L908-2(lines 908 922) the Hoare annotation is: false [2021-10-13 01:10:32,751 INFO L857 garLoopResultBuilder]: For program point L909(line 909) no Hoare annotation was computed. [2021-10-13 01:10:32,751 INFO L857 garLoopResultBuilder]: For program point L481(lines 481 487) no Hoare annotation was computed. [2021-10-13 01:10:32,751 INFO L853 garLoopResultBuilder]: At program point L481-1(lines 481 487) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 0)) (and .cse0 .cse1 (= ~methaneLevelCritical~0 1)))) [2021-10-13 01:10:32,751 INFO L857 garLoopResultBuilder]: For program point L448(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,751 INFO L857 garLoopResultBuilder]: For program point L448-2(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,751 INFO L857 garLoopResultBuilder]: For program point L448-3(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,751 INFO L857 garLoopResultBuilder]: For program point L448-5(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,751 INFO L857 garLoopResultBuilder]: For program point L448-6(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point L448-8(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point L448-9(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point L448-11(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point L448-12(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point L448-14(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point L448-15(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point L448-17(lines 448 452) no Hoare annotation was computed. [2021-10-13 01:10:32,752 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-13 01:10:32,753 INFO L853 garLoopResultBuilder]: At program point L251(lines 202 252) the Hoare annotation is: false [2021-10-13 01:10:32,753 INFO L857 garLoopResultBuilder]: For program point L185(line 185) no Hoare annotation was computed. [2021-10-13 01:10:32,753 INFO L857 garLoopResultBuilder]: For program point L185-1(line 185) no Hoare annotation was computed. [2021-10-13 01:10:32,753 INFO L857 garLoopResultBuilder]: For program point L185-2(line 185) no Hoare annotation was computed. [2021-10-13 01:10:32,753 INFO L857 garLoopResultBuilder]: For program point L912(lines 912 916) no Hoare annotation was computed. [2021-10-13 01:10:32,753 INFO L857 garLoopResultBuilder]: For program point L912-1(lines 270 276) no Hoare annotation was computed. [2021-10-13 01:10:32,753 INFO L857 garLoopResultBuilder]: For program point L979(lines 979 986) no Hoare annotation was computed. [2021-10-13 01:10:32,753 INFO L860 garLoopResultBuilder]: At program point L979-1(lines 979 986) the Hoare annotation is: true [2021-10-13 01:10:32,753 INFO L857 garLoopResultBuilder]: For program point L56(lines 56 60) no Hoare annotation was computed. [2021-10-13 01:10:32,754 INFO L857 garLoopResultBuilder]: For program point L56-3(lines 56 60) no Hoare annotation was computed. [2021-10-13 01:10:32,754 INFO L857 garLoopResultBuilder]: For program point L56-6(lines 56 60) no Hoare annotation was computed. [2021-10-13 01:10:32,754 INFO L853 garLoopResultBuilder]: At program point L454(lines 439 457) the Hoare annotation is: false [2021-10-13 01:10:32,754 INFO L853 garLoopResultBuilder]: At program point L454-1(lines 439 457) the Hoare annotation is: (let ((.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse6 (<= 1 ~waterLevel~0)) (.cse7 (not (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0))) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse9 (<= 2 ~waterLevel~0)) (.cse4 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse2 .cse3 .cse4 .cse6 .cse7) (and .cse0 .cse1 .cse9 .cse4 .cse5) (and .cse0 .cse1 .cse8 .cse9 .cse4))) [2021-10-13 01:10:32,754 INFO L853 garLoopResultBuilder]: At program point L454-2(lines 439 457) the Hoare annotation is: false [2021-10-13 01:10:32,754 INFO L853 garLoopResultBuilder]: At program point L454-3(lines 439 457) the Hoare annotation is: false [2021-10-13 01:10:32,755 INFO L853 garLoopResultBuilder]: At program point L454-4(lines 439 457) the Hoare annotation is: false [2021-10-13 01:10:32,755 INFO L853 garLoopResultBuilder]: At program point L454-5(lines 439 457) the Hoare annotation is: false [2021-10-13 01:10:32,755 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-13 01:10:32,755 INFO L857 garLoopResultBuilder]: For program point L223(lines 223 229) no Hoare annotation was computed. [2021-10-13 01:10:32,755 INFO L853 garLoopResultBuilder]: At program point L223-1(lines 223 229) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse7 .cse3 .cse5) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 .cse7 .cse3))) [2021-10-13 01:10:32,755 INFO L853 garLoopResultBuilder]: At program point L884(lines 1 991) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-10-13 01:10:32,756 INFO L853 garLoopResultBuilder]: At program point L390(lines 383 393) the Hoare annotation is: false [2021-10-13 01:10:32,756 INFO L853 garLoopResultBuilder]: At program point L390-1(lines 383 393) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 (= |ULTIMATE.start_isMethaneAlarm_#res| 1) (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 .cse3))) [2021-10-13 01:10:32,756 INFO L853 garLoopResultBuilder]: At program point L390-2(lines 383 393) the Hoare annotation is: false [2021-10-13 01:10:32,756 INFO L853 garLoopResultBuilder]: At program point L390-3(lines 383 393) the Hoare annotation is: false [2021-10-13 01:10:32,756 INFO L853 garLoopResultBuilder]: At program point L390-4(lines 383 393) the Hoare annotation is: false [2021-10-13 01:10:32,756 INFO L853 garLoopResultBuilder]: At program point L390-5(lines 383 393) the Hoare annotation is: false [2021-10-13 01:10:32,756 INFO L853 garLoopResultBuilder]: At program point L93(lines 88 96) the Hoare annotation is: false [2021-10-13 01:10:32,757 INFO L853 garLoopResultBuilder]: At program point L93-1(lines 88 96) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)))) [2021-10-13 01:10:32,757 INFO L853 garLoopResultBuilder]: At program point L93-2(lines 88 96) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 1)) (.cse5 (<= 1 ~waterLevel~0)) (.cse8 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse7) (and .cse0 .cse1 .cse4 .cse6 .cse5 .cse8) (and .cse0 .cse2 .cse3 (<= 2 ~waterLevel~0) .cse4))) [2021-10-13 01:10:32,757 INFO L853 garLoopResultBuilder]: At program point L93-3(lines 88 96) the Hoare annotation is: false [2021-10-13 01:10:32,757 INFO L853 garLoopResultBuilder]: At program point L93-4(lines 88 96) the Hoare annotation is: false [2021-10-13 01:10:32,757 INFO L853 garLoopResultBuilder]: At program point L93-5(lines 88 96) the Hoare annotation is: false [2021-10-13 01:10:32,758 INFO L853 garLoopResultBuilder]: At program point L93-6(lines 88 96) the Hoare annotation is: false [2021-10-13 01:10:32,758 INFO L853 garLoopResultBuilder]: At program point L93-7(lines 88 96) the Hoare annotation is: false [2021-10-13 01:10:32,758 INFO L853 garLoopResultBuilder]: At program point L93-8(lines 88 96) the Hoare annotation is: false [2021-10-13 01:10:32,758 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-13 01:10:32,758 INFO L860 garLoopResultBuilder]: At program point L988(lines 969 991) the Hoare annotation is: true [2021-10-13 01:10:32,759 INFO L857 garLoopResultBuilder]: For program point L328(lines 328 345) no Hoare annotation was computed. [2021-10-13 01:10:32,759 INFO L857 garLoopResultBuilder]: For program point L328-1(lines 328 345) no Hoare annotation was computed. [2021-10-13 01:10:32,759 INFO L857 garLoopResultBuilder]: For program point L328-2(lines 328 345) no Hoare annotation was computed. [2021-10-13 01:10:32,759 INFO L857 garLoopResultBuilder]: For program point L163(lines 163 176) no Hoare annotation was computed. [2021-10-13 01:10:32,760 INFO L853 garLoopResultBuilder]: At program point L163-1(lines 1 991) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse8 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse9 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse2 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse7 .cse9) (and .cse0 .cse5 .cse2 .cse6 (<= 2 ~waterLevel~0) .cse3) (and .cse0 .cse1 .cse3 .cse8 .cse4 .cse9))) [2021-10-13 01:10:32,760 INFO L857 garLoopResultBuilder]: For program point L163-2(lines 163 176) no Hoare annotation was computed. [2021-10-13 01:10:32,760 INFO L853 garLoopResultBuilder]: At program point L163-3(lines 1 991) the Hoare annotation is: false [2021-10-13 01:10:32,760 INFO L857 garLoopResultBuilder]: For program point L163-4(lines 163 176) no Hoare annotation was computed. [2021-10-13 01:10:32,760 INFO L853 garLoopResultBuilder]: At program point L163-5(lines 1 991) the Hoare annotation is: false [2021-10-13 01:10:32,761 INFO L853 garLoopResultBuilder]: At program point L956(lines 952 958) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-10-13 01:10:32,761 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-13 01:10:32,761 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 185) no Hoare annotation was computed. [2021-10-13 01:10:32,761 INFO L853 garLoopResultBuilder]: At program point L892(lines 887 895) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-10-13 01:10:32,761 INFO L857 garLoopResultBuilder]: For program point L133(lines 133 139) no Hoare annotation was computed. [2021-10-13 01:10:32,762 INFO L857 garLoopResultBuilder]: For program point L133-1(lines 133 139) no Hoare annotation was computed. [2021-10-13 01:10:32,762 INFO L857 garLoopResultBuilder]: For program point L133-2(lines 133 139) no Hoare annotation was computed. [2021-10-13 01:10:32,762 INFO L857 garLoopResultBuilder]: For program point L133-3(lines 133 139) no Hoare annotation was computed. [2021-10-13 01:10:32,762 INFO L857 garLoopResultBuilder]: For program point L133-4(lines 133 139) no Hoare annotation was computed. [2021-10-13 01:10:32,762 INFO L857 garLoopResultBuilder]: For program point L133-5(lines 133 139) no Hoare annotation was computed. [2021-10-13 01:10:32,763 INFO L857 garLoopResultBuilder]: For program point L365(lines 365 371) no Hoare annotation was computed. [2021-10-13 01:10:32,763 INFO L857 garLoopResultBuilder]: For program point L332(lines 332 340) no Hoare annotation was computed. [2021-10-13 01:10:32,763 INFO L857 garLoopResultBuilder]: For program point L365-2(lines 365 371) no Hoare annotation was computed. [2021-10-13 01:10:32,763 INFO L857 garLoopResultBuilder]: For program point L332-1(lines 332 340) no Hoare annotation was computed. [2021-10-13 01:10:32,763 INFO L857 garLoopResultBuilder]: For program point L332-2(lines 332 340) no Hoare annotation was computed. [2021-10-13 01:10:32,763 INFO L857 garLoopResultBuilder]: For program point L233(lines 233 246) no Hoare annotation was computed. [2021-10-13 01:10:32,764 INFO L857 garLoopResultBuilder]: For program point L365-4(lines 365 371) no Hoare annotation was computed. [2021-10-13 01:10:32,764 INFO L857 garLoopResultBuilder]: For program point L167(lines 167 173) no Hoare annotation was computed. [2021-10-13 01:10:32,764 INFO L857 garLoopResultBuilder]: For program point L365-6(lines 365 371) no Hoare annotation was computed. [2021-10-13 01:10:32,764 INFO L857 garLoopResultBuilder]: For program point L167-2(lines 167 173) no Hoare annotation was computed. [2021-10-13 01:10:32,764 INFO L857 garLoopResultBuilder]: For program point L365-8(lines 365 371) no Hoare annotation was computed. [2021-10-13 01:10:32,765 INFO L857 garLoopResultBuilder]: For program point L68(lines 68 72) no Hoare annotation was computed. [2021-10-13 01:10:32,765 INFO L857 garLoopResultBuilder]: For program point L365-10(lines 365 371) no Hoare annotation was computed. [2021-10-13 01:10:32,765 INFO L857 garLoopResultBuilder]: For program point L167-4(lines 167 173) no Hoare annotation was computed. [2021-10-13 01:10:32,770 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-13 01:10:32,813 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 13.10 01:10:32 BoogieIcfgContainer [2021-10-13 01:10:32,813 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-13 01:10:32,814 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-13 01:10:32,814 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-13 01:10:32,814 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-13 01:10:32,815 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.10 01:10:18" (3/4) ... [2021-10-13 01:10:32,819 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-13 01:10:32,865 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-13 01:10:32,867 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-13 01:10:32,869 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-13 01:10:32,871 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-13 01:10:32,873 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-13 01:10:32,875 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-13 01:10:32,876 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-13 01:10:32,912 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) [2021-10-13 01:10:32,913 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) [2021-10-13 01:10:32,920 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1)) || ((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-13 01:10:32,921 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) || (((((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) [2021-10-13 01:10:32,926 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-13 01:10:32,926 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1) [2021-10-13 01:10:32,930 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((\result == 1 && splverifierCounter == 0) && 0 < tmp + 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) || (((((((((\result == 1 && splverifierCounter == 0) && methaneLevelCritical == 0) && 0 < tmp + 1) && 1 == systemActive) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) [2021-10-13 01:10:32,931 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && !(tmp == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && 1 <= waterLevel) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-13 01:10:32,935 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) [2021-10-13 01:10:32,935 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 1) && methaneLevelCritical == 1) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-13 01:10:33,025 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/witness.graphml [2021-10-13 01:10:33,025 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-13 01:10:33,027 INFO L168 Benchmark]: Toolchain (without parser) took 16544.81 ms. Allocated memory was 115.3 MB in the beginning and 247.5 MB in the end (delta: 132.1 MB). Free memory was 84.9 MB in the beginning and 189.2 MB in the end (delta: -104.3 MB). Peak memory consumption was 26.3 MB. Max. memory is 16.1 GB. [2021-10-13 01:10:33,028 INFO L168 Benchmark]: CDTParser took 0.32 ms. Allocated memory is still 115.3 MB. Free memory is still 71.0 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-13 01:10:33,028 INFO L168 Benchmark]: CACSL2BoogieTranslator took 638.23 ms. Allocated memory is still 115.3 MB. Free memory was 84.6 MB in the beginning and 83.1 MB in the end (delta: 1.5 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-13 01:10:33,029 INFO L168 Benchmark]: Boogie Procedure Inliner took 135.89 ms. Allocated memory is still 115.3 MB. Free memory was 83.1 MB in the beginning and 79.0 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-13 01:10:33,029 INFO L168 Benchmark]: Boogie Preprocessor took 77.10 ms. Allocated memory is still 115.3 MB. Free memory was 79.0 MB in the beginning and 76.0 MB in the end (delta: 3.0 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-13 01:10:33,030 INFO L168 Benchmark]: RCFGBuilder took 1238.67 ms. Allocated memory was 115.3 MB in the beginning and 140.5 MB in the end (delta: 25.2 MB). Free memory was 76.0 MB in the beginning and 89.9 MB in the end (delta: -13.9 MB). Peak memory consumption was 27.0 MB. Max. memory is 16.1 GB. [2021-10-13 01:10:33,030 INFO L168 Benchmark]: TraceAbstraction took 14234.81 ms. Allocated memory was 140.5 MB in the beginning and 247.5 MB in the end (delta: 107.0 MB). Free memory was 89.9 MB in the beginning and 200.7 MB in the end (delta: -110.8 MB). Peak memory consumption was 121.6 MB. Max. memory is 16.1 GB. [2021-10-13 01:10:33,031 INFO L168 Benchmark]: Witness Printer took 212.02 ms. Allocated memory is still 247.5 MB. Free memory was 200.7 MB in the beginning and 189.2 MB in the end (delta: 11.5 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-10-13 01:10:33,034 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.32 ms. Allocated memory is still 115.3 MB. Free memory is still 71.0 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 638.23 ms. Allocated memory is still 115.3 MB. Free memory was 84.6 MB in the beginning and 83.1 MB in the end (delta: 1.5 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 135.89 ms. Allocated memory is still 115.3 MB. Free memory was 83.1 MB in the beginning and 79.0 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 77.10 ms. Allocated memory is still 115.3 MB. Free memory was 79.0 MB in the beginning and 76.0 MB in the end (delta: 3.0 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1238.67 ms. Allocated memory was 115.3 MB in the beginning and 140.5 MB in the end (delta: 25.2 MB). Free memory was 76.0 MB in the beginning and 89.9 MB in the end (delta: -13.9 MB). Peak memory consumption was 27.0 MB. Max. memory is 16.1 GB. * TraceAbstraction took 14234.81 ms. Allocated memory was 140.5 MB in the beginning and 247.5 MB in the end (delta: 107.0 MB). Free memory was 89.9 MB in the beginning and 200.7 MB in the end (delta: -110.8 MB). Peak memory consumption was 121.6 MB. Max. memory is 16.1 GB. * Witness Printer took 212.02 ms. Allocated memory is still 247.5 MB. Free memory was 200.7 MB in the beginning and 189.2 MB in the end (delta: 11.5 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0ms ErrorAutomatonConstructionTimeTotal, 0.0ms FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0ms ErrorAutomatonConstructionTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 185]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 185]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 185]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 137 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 14123.6ms, OverallIterations: 13, TraceHistogramMax: 2, EmptinessCheckTime: 42.4ms, AutomataDifference: 2065.8ms, DeadEndRemovalTime: 0.0ms, HoareAnnotationTime: 9704.9ms, InitialAbstractionConstructionTime: 17.1ms, PartialOrderReductionTime: 0.0ms, HoareTripleCheckerStatistics: 1545 SDtfs, 2185 SDslu, 2768 SDs, 0 SdLazy, 330 SolverSat, 82 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 576.9ms Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 92 GetRequests, 36 SyntacticMatches, 0 SemanticMatches, 56 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 42 ImplicationChecksByTransitivity, 374.3ms Time, 0.0ms BasicInterpolantAutomatonTime, BiggestAbstraction: size=516occurred in iteration=9, InterpolantAutomatonStates: 75, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0ms DumpTime, AutomataMinimizationStatistics: 541.8ms AutomataMinimizationTime, 13 MinimizatonAttempts, 2488 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0ms HoareAnnotationTime, 56 LocationsWithAnnotation, 56 PreInvPairs, 231 NumberOfFragments, 1056 HoareAnnotationTreeSize, 56 FomulaSimplifications, 1156004 FormulaSimplificationTreeSizeReduction, 2877.3ms HoareSimplificationTime, 56 FomulaSimplificationsInter, 189323 FormulaSimplificationTreeSizeReductionInter, 6803.8ms HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 74.0ms SsaConstructionTime, 454.9ms SatisfiabilityAnalysisTime, 897.4ms InterpolantComputationTime, 431 NumberOfCodeBlocks, 431 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 418 ConstructedInterpolants, 0 QuantifiedInterpolants, 760 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 13 InterpolantComputations, 13 PerfectInterpolantSequences, 41/41 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 458]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 223]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 269]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) - InvariantResult [Line: 908]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 394]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 202]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 270]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 458]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 143]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) || (((((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1)) || ((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 269]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 1) && methaneLevelCritical == 1) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: (((((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 143]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 969]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 143]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 481]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) || ((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) - InvariantResult [Line: 979]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 887]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 213]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 439]: Loop Invariant Derived loop invariant: (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && !(tmp == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && 1 <= waterLevel) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 394]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 458]: Loop Invariant Derived loop invariant: (((((((((\result == 1 && splverifierCounter == 0) && 0 < tmp + 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) || (((((((((\result == 1 && splverifierCounter == 0) && methaneLevelCritical == 0) && 0 < tmp + 1) && 1 == systemActive) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 129]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 952]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 269]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 394]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1) RESULT: Ultimate proved your program to be correct! [2021-10-13 01:10:33,119 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_ef853f96-5a70-42a6-b638-421205632847/bin/uautomizer-WNIpwEf4Nt/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...