./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_productSimulator.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 4e77c044 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_productSimulator.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash bb7a46e472d875a33249a5df380376743390ac30 .......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... Execution finished normally Writing output log to file Ultimate.log Writing human readable error path to file UltimateCounterExample.errorpath Result: FALSE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-4e77c04 [2021-10-13 00:38:24,342 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-13 00:38:24,351 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-13 00:38:24,383 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-13 00:38:24,384 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-13 00:38:24,386 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-13 00:38:24,387 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-13 00:38:24,390 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-13 00:38:24,392 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-13 00:38:24,393 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-13 00:38:24,395 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-13 00:38:24,396 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-13 00:38:24,398 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-13 00:38:24,401 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-13 00:38:24,404 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-13 00:38:24,407 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-13 00:38:24,411 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-13 00:38:24,418 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-13 00:38:24,420 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-13 00:38:24,424 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-13 00:38:24,426 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-13 00:38:24,427 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-13 00:38:24,429 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-13 00:38:24,430 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-13 00:38:24,433 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-13 00:38:24,434 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-13 00:38:24,434 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-13 00:38:24,435 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-13 00:38:24,436 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-13 00:38:24,437 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-13 00:38:24,438 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-13 00:38:24,439 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-13 00:38:24,439 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-13 00:38:24,440 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-13 00:38:24,442 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-13 00:38:24,442 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-13 00:38:24,443 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-13 00:38:24,444 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-13 00:38:24,444 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-13 00:38:24,445 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-13 00:38:24,446 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-13 00:38:24,447 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-13 00:38:24,482 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-13 00:38:24,484 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-13 00:38:24,485 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-13 00:38:24,485 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-13 00:38:24,496 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-13 00:38:24,497 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-13 00:38:24,497 INFO L138 SettingsManager]: * Use SBE=true [2021-10-13 00:38:24,497 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-13 00:38:24,498 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-13 00:38:24,498 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-13 00:38:24,499 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-13 00:38:24,499 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-13 00:38:24,500 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-13 00:38:24,500 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-13 00:38:24,500 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-13 00:38:24,500 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-13 00:38:24,500 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-13 00:38:24,501 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-13 00:38:24,501 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-13 00:38:24,501 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-13 00:38:24,501 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-13 00:38:24,502 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-13 00:38:24,502 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-13 00:38:24,502 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-13 00:38:24,502 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-13 00:38:24,503 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-13 00:38:24,503 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-13 00:38:24,503 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-13 00:38:24,503 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-13 00:38:24,505 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-13 00:38:24,506 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> bb7a46e472d875a33249a5df380376743390ac30 [2021-10-13 00:38:24,786 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-13 00:38:24,814 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-13 00:38:24,818 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-13 00:38:24,820 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-13 00:38:24,821 INFO L275 PluginConnector]: CDTParser initialized [2021-10-13 00:38:24,822 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/../../sv-benchmarks/c/product-lines/minepump_spec4_productSimulator.cil.c [2021-10-13 00:38:24,907 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/data/e3e442ebe/777f4ba7028b4bdeaa3aa0478c01522f/FLAG21c826713 [2021-10-13 00:38:25,438 INFO L306 CDTParser]: Found 1 translation units. [2021-10-13 00:38:25,439 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/sv-benchmarks/c/product-lines/minepump_spec4_productSimulator.cil.c [2021-10-13 00:38:25,452 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/data/e3e442ebe/777f4ba7028b4bdeaa3aa0478c01522f/FLAG21c826713 [2021-10-13 00:38:25,750 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/data/e3e442ebe/777f4ba7028b4bdeaa3aa0478c01522f [2021-10-13 00:38:25,752 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-13 00:38:25,753 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-13 00:38:25,756 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-13 00:38:25,756 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-13 00:38:25,760 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-13 00:38:25,761 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.10 12:38:25" (1/1) ... [2021-10-13 00:38:25,762 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@749472ee and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:25, skipping insertion in model container [2021-10-13 00:38:25,763 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.10 12:38:25" (1/1) ... [2021-10-13 00:38:25,771 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-13 00:38:25,825 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-13 00:38:26,159 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/sv-benchmarks/c/product-lines/minepump_spec4_productSimulator.cil.c[9009,9022] [2021-10-13 00:38:26,272 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-13 00:38:26,282 INFO L203 MainTranslator]: Completed pre-run [2021-10-13 00:38:26,316 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/sv-benchmarks/c/product-lines/minepump_spec4_productSimulator.cil.c[9009,9022] [2021-10-13 00:38:26,354 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-13 00:38:26,380 INFO L208 MainTranslator]: Completed translation [2021-10-13 00:38:26,381 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26 WrapperNode [2021-10-13 00:38:26,382 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-13 00:38:26,383 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-13 00:38:26,383 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-13 00:38:26,384 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-13 00:38:26,392 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,413 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,542 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-13 00:38:26,542 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-13 00:38:26,542 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-13 00:38:26,542 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-13 00:38:26,550 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,551 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,564 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,565 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,613 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,675 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,679 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,691 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-13 00:38:26,692 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-13 00:38:26,692 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-13 00:38:26,692 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-13 00:38:26,693 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (1/1) ... [2021-10-13 00:38:26,700 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-13 00:38:26,714 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 [2021-10-13 00:38:26,726 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-13 00:38:26,744 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-13 00:38:26,781 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-13 00:38:26,782 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-13 00:38:26,783 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-13 00:38:26,783 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-13 00:38:28,435 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-13 00:38:28,436 INFO L299 CfgBuilder]: Removed 900 assume(true) statements. [2021-10-13 00:38:28,440 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.10 12:38:28 BoogieIcfgContainer [2021-10-13 00:38:28,440 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-13 00:38:28,444 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-13 00:38:28,444 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-13 00:38:28,447 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-13 00:38:28,448 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.10 12:38:25" (1/3) ... [2021-10-13 00:38:28,449 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7399ab18 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.10 12:38:28, skipping insertion in model container [2021-10-13 00:38:28,449 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.10 12:38:26" (2/3) ... [2021-10-13 00:38:28,450 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7399ab18 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.10 12:38:28, skipping insertion in model container [2021-10-13 00:38:28,450 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.10 12:38:28" (3/3) ... [2021-10-13 00:38:28,452 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_productSimulator.cil.c [2021-10-13 00:38:28,459 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-13 00:38:28,460 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-13 00:38:28,535 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-13 00:38:28,545 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mConcurrency=FINITE_AUTOMATA, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-13 00:38:28,545 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-13 00:38:28,592 INFO L276 IsEmpty]: Start isEmpty. Operand has 470 states, 466 states have (on average 1.5751072961373391) internal successors, (734), 469 states have internal predecessors, (734), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:28,602 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2021-10-13 00:38:28,602 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:28,603 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:28,605 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:28,611 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:28,611 INFO L82 PathProgramCache]: Analyzing trace with hash -1535705576, now seen corresponding path program 1 times [2021-10-13 00:38:28,621 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:28,621 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [291342741] [2021-10-13 00:38:28,622 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:28,623 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:28,773 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:28,930 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:28,931 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:28,931 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [291342741] [2021-10-13 00:38:28,932 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [291342741] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:28,932 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:28,933 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-13 00:38:28,936 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1463135739] [2021-10-13 00:38:28,951 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-13 00:38:28,951 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:28,965 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-13 00:38:28,965 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-13 00:38:28,969 INFO L87 Difference]: Start difference. First operand has 470 states, 466 states have (on average 1.5751072961373391) internal successors, (734), 469 states have internal predecessors, (734), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 11.5) internal successors, (23), 2 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,057 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:29,062 INFO L93 Difference]: Finished difference Result 927 states and 1454 transitions. [2021-10-13 00:38:29,062 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-13 00:38:29,063 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 11.5) internal successors, (23), 2 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 23 [2021-10-13 00:38:29,064 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:29,078 INFO L225 Difference]: With dead ends: 927 [2021-10-13 00:38:29,078 INFO L226 Difference]: Without dead ends: 466 [2021-10-13 00:38:29,083 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0ms TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-13 00:38:29,104 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 466 states. [2021-10-13 00:38:29,154 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 466 to 466. [2021-10-13 00:38:29,157 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 466 states, 463 states have (on average 1.5593952483801297) internal successors, (722), 465 states have internal predecessors, (722), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,164 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 466 states to 466 states and 722 transitions. [2021-10-13 00:38:29,166 INFO L78 Accepts]: Start accepts. Automaton has 466 states and 722 transitions. Word has length 23 [2021-10-13 00:38:29,166 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:29,166 INFO L470 AbstractCegarLoop]: Abstraction has 466 states and 722 transitions. [2021-10-13 00:38:29,166 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 11.5) internal successors, (23), 2 states have internal predecessors, (23), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,167 INFO L276 IsEmpty]: Start isEmpty. Operand 466 states and 722 transitions. [2021-10-13 00:38:29,168 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-13 00:38:29,168 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:29,168 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:29,169 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-13 00:38:29,169 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:29,170 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:29,170 INFO L82 PathProgramCache]: Analyzing trace with hash 1882100476, now seen corresponding path program 1 times [2021-10-13 00:38:29,170 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:29,170 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [296096548] [2021-10-13 00:38:29,171 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:29,171 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:29,220 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:29,300 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:29,301 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:29,301 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [296096548] [2021-10-13 00:38:29,302 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [296096548] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:29,302 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:29,302 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-13 00:38:29,302 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1986717337] [2021-10-13 00:38:29,304 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 00:38:29,304 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:29,305 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 00:38:29,305 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:29,306 INFO L87 Difference]: Start difference. First operand 466 states and 722 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,328 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:29,329 INFO L93 Difference]: Finished difference Result 466 states and 722 transitions. [2021-10-13 00:38:29,329 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 00:38:29,329 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-13 00:38:29,330 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:29,332 INFO L225 Difference]: With dead ends: 466 [2021-10-13 00:38:29,332 INFO L226 Difference]: Without dead ends: 172 [2021-10-13 00:38:29,333 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 3.7ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:29,334 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 172 states. [2021-10-13 00:38:29,345 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 172 to 172. [2021-10-13 00:38:29,346 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 172 states, 171 states have (on average 1.5380116959064327) internal successors, (263), 171 states have internal predecessors, (263), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,347 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 172 states to 172 states and 263 transitions. [2021-10-13 00:38:29,347 INFO L78 Accepts]: Start accepts. Automaton has 172 states and 263 transitions. Word has length 24 [2021-10-13 00:38:29,348 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:29,348 INFO L470 AbstractCegarLoop]: Abstraction has 172 states and 263 transitions. [2021-10-13 00:38:29,348 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 3 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,348 INFO L276 IsEmpty]: Start isEmpty. Operand 172 states and 263 transitions. [2021-10-13 00:38:29,350 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2021-10-13 00:38:29,350 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:29,350 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:29,350 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-13 00:38:29,351 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:29,351 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:29,352 INFO L82 PathProgramCache]: Analyzing trace with hash -1978143563, now seen corresponding path program 1 times [2021-10-13 00:38:29,352 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:29,352 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1315730640] [2021-10-13 00:38:29,352 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:29,353 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:29,413 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:29,503 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:29,504 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:29,504 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1315730640] [2021-10-13 00:38:29,505 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1315730640] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:29,505 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:29,505 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-13 00:38:29,505 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2023612298] [2021-10-13 00:38:29,506 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-13 00:38:29,506 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:29,507 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-13 00:38:29,507 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2021-10-13 00:38:29,507 INFO L87 Difference]: Start difference. First operand 172 states and 263 transitions. Second operand has 7 states, 7 states have (on average 4.285714285714286) internal successors, (30), 6 states have internal predecessors, (30), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,759 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:29,759 INFO L93 Difference]: Finished difference Result 674 states and 1051 transitions. [2021-10-13 00:38:29,761 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-13 00:38:29,761 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.285714285714286) internal successors, (30), 6 states have internal predecessors, (30), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2021-10-13 00:38:29,761 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:29,765 INFO L225 Difference]: With dead ends: 674 [2021-10-13 00:38:29,765 INFO L226 Difference]: Without dead ends: 515 [2021-10-13 00:38:29,766 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 44.5ms TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2021-10-13 00:38:29,767 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 515 states. [2021-10-13 00:38:29,792 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 515 to 193. [2021-10-13 00:38:29,793 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 193 states, 192 states have (on average 1.5416666666666667) internal successors, (296), 192 states have internal predecessors, (296), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,798 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 193 states to 193 states and 296 transitions. [2021-10-13 00:38:29,798 INFO L78 Accepts]: Start accepts. Automaton has 193 states and 296 transitions. Word has length 30 [2021-10-13 00:38:29,799 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:29,799 INFO L470 AbstractCegarLoop]: Abstraction has 193 states and 296 transitions. [2021-10-13 00:38:29,799 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.285714285714286) internal successors, (30), 6 states have internal predecessors, (30), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,799 INFO L276 IsEmpty]: Start isEmpty. Operand 193 states and 296 transitions. [2021-10-13 00:38:29,801 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-13 00:38:29,802 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:29,803 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:29,803 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-13 00:38:29,803 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:29,804 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:29,805 INFO L82 PathProgramCache]: Analyzing trace with hash 1554604317, now seen corresponding path program 1 times [2021-10-13 00:38:29,805 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:29,805 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1278103708] [2021-10-13 00:38:29,806 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:29,806 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:29,853 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:29,899 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:29,899 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:29,899 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1278103708] [2021-10-13 00:38:29,900 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1278103708] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:29,900 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:29,900 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-13 00:38:29,900 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1890977705] [2021-10-13 00:38:29,901 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 00:38:29,901 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:29,901 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 00:38:29,902 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:29,902 INFO L87 Difference]: Start difference. First operand 193 states and 296 transitions. Second operand has 3 states, 3 states have (on average 11.0) internal successors, (33), 2 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:29,999 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:30,000 INFO L93 Difference]: Finished difference Result 384 states and 597 transitions. [2021-10-13 00:38:30,001 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 00:38:30,001 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 11.0) internal successors, (33), 2 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-13 00:38:30,001 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:30,003 INFO L225 Difference]: With dead ends: 384 [2021-10-13 00:38:30,003 INFO L226 Difference]: Without dead ends: 204 [2021-10-13 00:38:30,006 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 2.2ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:30,007 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 204 states. [2021-10-13 00:38:30,020 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 204 to 202. [2021-10-13 00:38:30,020 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 202 states, 201 states have (on average 1.5024875621890548) internal successors, (302), 201 states have internal predecessors, (302), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,022 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 202 states to 202 states and 302 transitions. [2021-10-13 00:38:30,022 INFO L78 Accepts]: Start accepts. Automaton has 202 states and 302 transitions. Word has length 33 [2021-10-13 00:38:30,022 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:30,023 INFO L470 AbstractCegarLoop]: Abstraction has 202 states and 302 transitions. [2021-10-13 00:38:30,023 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 11.0) internal successors, (33), 2 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,023 INFO L276 IsEmpty]: Start isEmpty. Operand 202 states and 302 transitions. [2021-10-13 00:38:30,029 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-13 00:38:30,029 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:30,030 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:30,030 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-13 00:38:30,030 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:30,032 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:30,032 INFO L82 PathProgramCache]: Analyzing trace with hash 965063802, now seen corresponding path program 1 times [2021-10-13 00:38:30,032 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:30,033 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1670903010] [2021-10-13 00:38:30,034 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:30,034 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:30,078 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:30,164 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:30,164 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:30,164 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1670903010] [2021-10-13 00:38:30,165 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1670903010] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:30,165 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:30,165 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-13 00:38:30,165 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1705361066] [2021-10-13 00:38:30,166 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-13 00:38:30,167 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:30,167 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-13 00:38:30,168 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-13 00:38:30,168 INFO L87 Difference]: Start difference. First operand 202 states and 302 transitions. Second operand has 5 states, 5 states have (on average 6.6) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,399 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:30,399 INFO L93 Difference]: Finished difference Result 1090 states and 1655 transitions. [2021-10-13 00:38:30,400 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-13 00:38:30,400 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-13 00:38:30,401 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:30,406 INFO L225 Difference]: With dead ends: 1090 [2021-10-13 00:38:30,407 INFO L226 Difference]: Without dead ends: 901 [2021-10-13 00:38:30,408 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 28.6ms TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-13 00:38:30,409 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 901 states. [2021-10-13 00:38:30,442 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 901 to 349. [2021-10-13 00:38:30,443 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 349 states, 348 states have (on average 1.4913793103448276) internal successors, (519), 348 states have internal predecessors, (519), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,445 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 349 states to 349 states and 519 transitions. [2021-10-13 00:38:30,446 INFO L78 Accepts]: Start accepts. Automaton has 349 states and 519 transitions. Word has length 33 [2021-10-13 00:38:30,447 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:30,447 INFO L470 AbstractCegarLoop]: Abstraction has 349 states and 519 transitions. [2021-10-13 00:38:30,447 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,448 INFO L276 IsEmpty]: Start isEmpty. Operand 349 states and 519 transitions. [2021-10-13 00:38:30,452 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2021-10-13 00:38:30,453 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:30,453 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:30,454 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-13 00:38:30,454 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:30,455 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:30,455 INFO L82 PathProgramCache]: Analyzing trace with hash 421650894, now seen corresponding path program 1 times [2021-10-13 00:38:30,455 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:30,455 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [254734823] [2021-10-13 00:38:30,456 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:30,456 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:30,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:30,558 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-13 00:38:30,559 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:30,559 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [254734823] [2021-10-13 00:38:30,559 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [254734823] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:30,559 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:30,560 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-13 00:38:30,560 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1245204279] [2021-10-13 00:38:30,560 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-13 00:38:30,561 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:30,562 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-13 00:38:30,566 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-13 00:38:30,566 INFO L87 Difference]: Start difference. First operand 349 states and 519 transitions. Second operand has 5 states, 5 states have (on average 11.4) internal successors, (57), 5 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,763 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:30,763 INFO L93 Difference]: Finished difference Result 945 states and 1403 transitions. [2021-10-13 00:38:30,764 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-10-13 00:38:30,765 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 11.4) internal successors, (57), 5 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 59 [2021-10-13 00:38:30,767 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:30,771 INFO L225 Difference]: With dead ends: 945 [2021-10-13 00:38:30,771 INFO L226 Difference]: Without dead ends: 609 [2021-10-13 00:38:30,779 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 31.6ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-13 00:38:30,781 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 609 states. [2021-10-13 00:38:30,814 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 609 to 397. [2021-10-13 00:38:30,815 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 397 states, 396 states have (on average 1.4318181818181819) internal successors, (567), 396 states have internal predecessors, (567), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,818 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 397 states to 397 states and 567 transitions. [2021-10-13 00:38:30,818 INFO L78 Accepts]: Start accepts. Automaton has 397 states and 567 transitions. Word has length 59 [2021-10-13 00:38:30,819 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:30,819 INFO L470 AbstractCegarLoop]: Abstraction has 397 states and 567 transitions. [2021-10-13 00:38:30,820 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 11.4) internal successors, (57), 5 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:30,820 INFO L276 IsEmpty]: Start isEmpty. Operand 397 states and 567 transitions. [2021-10-13 00:38:30,821 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2021-10-13 00:38:30,822 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:30,822 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:30,822 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-13 00:38:30,822 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:30,823 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:30,823 INFO L82 PathProgramCache]: Analyzing trace with hash 1807854288, now seen corresponding path program 1 times [2021-10-13 00:38:30,823 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:30,828 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1998609519] [2021-10-13 00:38:30,828 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:30,829 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:30,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:30,915 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-13 00:38:30,915 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:30,915 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1998609519] [2021-10-13 00:38:30,916 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1998609519] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:30,916 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:30,916 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-13 00:38:30,917 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1864358522] [2021-10-13 00:38:30,918 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-13 00:38:30,918 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:30,919 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-13 00:38:30,919 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-13 00:38:30,919 INFO L87 Difference]: Start difference. First operand 397 states and 567 transitions. Second operand has 4 states, 4 states have (on average 14.25) internal successors, (57), 4 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,078 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:31,079 INFO L93 Difference]: Finished difference Result 855 states and 1226 transitions. [2021-10-13 00:38:31,079 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-13 00:38:31,079 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 14.25) internal successors, (57), 4 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 59 [2021-10-13 00:38:31,080 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:31,083 INFO L225 Difference]: With dead ends: 855 [2021-10-13 00:38:31,083 INFO L226 Difference]: Without dead ends: 471 [2021-10-13 00:38:31,085 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 8.7ms TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-13 00:38:31,085 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 471 states. [2021-10-13 00:38:31,122 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 471 to 349. [2021-10-13 00:38:31,123 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 349 states, 348 states have (on average 1.3994252873563218) internal successors, (487), 348 states have internal predecessors, (487), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,125 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 349 states to 349 states and 487 transitions. [2021-10-13 00:38:31,125 INFO L78 Accepts]: Start accepts. Automaton has 349 states and 487 transitions. Word has length 59 [2021-10-13 00:38:31,125 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:31,126 INFO L470 AbstractCegarLoop]: Abstraction has 349 states and 487 transitions. [2021-10-13 00:38:31,126 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 14.25) internal successors, (57), 4 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,126 INFO L276 IsEmpty]: Start isEmpty. Operand 349 states and 487 transitions. [2021-10-13 00:38:31,127 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2021-10-13 00:38:31,127 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:31,128 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:31,128 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-13 00:38:31,128 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:31,129 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:31,129 INFO L82 PathProgramCache]: Analyzing trace with hash -1785513134, now seen corresponding path program 1 times [2021-10-13 00:38:31,129 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:31,129 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [768837242] [2021-10-13 00:38:31,131 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:31,131 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:31,152 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:31,207 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-13 00:38:31,207 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:31,208 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [768837242] [2021-10-13 00:38:31,208 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [768837242] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:31,208 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:31,208 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-13 00:38:31,209 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2127552738] [2021-10-13 00:38:31,209 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 00:38:31,209 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:31,210 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 00:38:31,210 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:31,210 INFO L87 Difference]: Start difference. First operand 349 states and 487 transitions. Second operand has 3 states, 3 states have (on average 19.0) internal successors, (57), 2 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,299 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:31,299 INFO L93 Difference]: Finished difference Result 870 states and 1242 transitions. [2021-10-13 00:38:31,300 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 00:38:31,300 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 19.0) internal successors, (57), 2 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 59 [2021-10-13 00:38:31,302 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:31,306 INFO L225 Difference]: With dead ends: 870 [2021-10-13 00:38:31,306 INFO L226 Difference]: Without dead ends: 534 [2021-10-13 00:38:31,307 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 1.8ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:31,308 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 534 states. [2021-10-13 00:38:31,350 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 534 to 532. [2021-10-13 00:38:31,353 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 532 states, 531 states have (on average 1.4124293785310735) internal successors, (750), 531 states have internal predecessors, (750), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,356 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 532 states to 532 states and 750 transitions. [2021-10-13 00:38:31,356 INFO L78 Accepts]: Start accepts. Automaton has 532 states and 750 transitions. Word has length 59 [2021-10-13 00:38:31,357 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:31,357 INFO L470 AbstractCegarLoop]: Abstraction has 532 states and 750 transitions. [2021-10-13 00:38:31,357 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 19.0) internal successors, (57), 2 states have internal predecessors, (57), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,357 INFO L276 IsEmpty]: Start isEmpty. Operand 532 states and 750 transitions. [2021-10-13 00:38:31,358 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2021-10-13 00:38:31,358 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:31,359 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:31,359 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-13 00:38:31,359 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:31,360 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:31,360 INFO L82 PathProgramCache]: Analyzing trace with hash 124429653, now seen corresponding path program 1 times [2021-10-13 00:38:31,360 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:31,360 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1254471876] [2021-10-13 00:38:31,360 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:31,361 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:31,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:31,429 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 17 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:31,429 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:31,429 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1254471876] [2021-10-13 00:38:31,430 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1254471876] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-13 00:38:31,430 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-13 00:38:31,430 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-13 00:38:31,430 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1438991022] [2021-10-13 00:38:31,431 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-13 00:38:31,431 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:31,431 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-13 00:38:31,436 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:31,437 INFO L87 Difference]: Start difference. First operand 532 states and 750 transitions. Second operand has 3 states, 3 states have (on average 20.0) internal successors, (60), 3 states have internal predecessors, (60), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,639 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:31,639 INFO L93 Difference]: Finished difference Result 1147 states and 1629 transitions. [2021-10-13 00:38:31,639 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-13 00:38:31,640 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 20.0) internal successors, (60), 3 states have internal predecessors, (60), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 60 [2021-10-13 00:38:31,640 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:31,644 INFO L225 Difference]: With dead ends: 1147 [2021-10-13 00:38:31,644 INFO L226 Difference]: Without dead ends: 628 [2021-10-13 00:38:31,646 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 1.9ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-13 00:38:31,647 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 628 states. [2021-10-13 00:38:31,703 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 628 to 628. [2021-10-13 00:38:31,705 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 628 states, 627 states have (on average 1.3811802232854864) internal successors, (866), 627 states have internal predecessors, (866), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,708 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 628 states to 628 states and 866 transitions. [2021-10-13 00:38:31,709 INFO L78 Accepts]: Start accepts. Automaton has 628 states and 866 transitions. Word has length 60 [2021-10-13 00:38:31,709 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:31,709 INFO L470 AbstractCegarLoop]: Abstraction has 628 states and 866 transitions. [2021-10-13 00:38:31,710 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 20.0) internal successors, (60), 3 states have internal predecessors, (60), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:31,710 INFO L276 IsEmpty]: Start isEmpty. Operand 628 states and 866 transitions. [2021-10-13 00:38:31,711 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 62 [2021-10-13 00:38:31,711 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:31,712 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:31,712 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-13 00:38:31,712 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:31,713 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:31,713 INFO L82 PathProgramCache]: Analyzing trace with hash 417791151, now seen corresponding path program 1 times [2021-10-13 00:38:31,713 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:31,713 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1904161899] [2021-10-13 00:38:31,714 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:31,714 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:31,747 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:31,795 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 15 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:31,796 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-13 00:38:31,796 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1904161899] [2021-10-13 00:38:31,796 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1904161899] provided 0 perfect and 1 imperfect interpolant sequences [2021-10-13 00:38:31,796 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [767277176] [2021-10-13 00:38:31,797 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:31,797 INFO L170 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-10-13 00:38:31,797 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 [2021-10-13 00:38:31,800 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-10-13 00:38:31,816 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-10-13 00:38:31,964 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-13 00:38:31,971 INFO L263 TraceCheckSpWp]: Trace formula consists of 502 conjuncts, 6 conjunts are in the unsatisfiable core [2021-10-13 00:38:31,977 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-10-13 00:38:32,287 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 15 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-13 00:38:32,287 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [767277176] provided 0 perfect and 1 imperfect interpolant sequences [2021-10-13 00:38:32,287 INFO L186 FreeRefinementEngine]: Constructing automaton from 0 perfect and 2 imperfect interpolant sequences. [2021-10-13 00:38:32,288 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [6, 6] total 8 [2021-10-13 00:38:32,288 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1588026023] [2021-10-13 00:38:32,288 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-10-13 00:38:32,289 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-13 00:38:32,289 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-10-13 00:38:32,290 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2021-10-13 00:38:32,290 INFO L87 Difference]: Start difference. First operand 628 states and 866 transitions. Second operand has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:32,819 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-13 00:38:32,819 INFO L93 Difference]: Finished difference Result 2358 states and 3239 transitions. [2021-10-13 00:38:32,820 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2021-10-13 00:38:32,820 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 61 [2021-10-13 00:38:32,820 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-13 00:38:32,832 INFO L225 Difference]: With dead ends: 2358 [2021-10-13 00:38:32,832 INFO L226 Difference]: Without dead ends: 1791 [2021-10-13 00:38:32,834 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 78 GetRequests, 65 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 27 ImplicationChecksByTransitivity, 105.4ms TimeCoverageRelationStatistics Valid=68, Invalid=142, Unknown=0, NotChecked=0, Total=210 [2021-10-13 00:38:32,836 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1791 states. [2021-10-13 00:38:32,918 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1791 to 757. [2021-10-13 00:38:32,920 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 757 states, 756 states have (on average 1.3743386243386244) internal successors, (1039), 756 states have internal predecessors, (1039), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:32,923 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 757 states to 757 states and 1039 transitions. [2021-10-13 00:38:32,924 INFO L78 Accepts]: Start accepts. Automaton has 757 states and 1039 transitions. Word has length 61 [2021-10-13 00:38:32,925 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-13 00:38:32,925 INFO L470 AbstractCegarLoop]: Abstraction has 757 states and 1039 transitions. [2021-10-13 00:38:32,925 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-13 00:38:32,925 INFO L276 IsEmpty]: Start isEmpty. Operand 757 states and 1039 transitions. [2021-10-13 00:38:32,927 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 81 [2021-10-13 00:38:32,927 INFO L504 BasicCegarLoop]: Found error trace [2021-10-13 00:38:32,927 INFO L512 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-13 00:38:32,964 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-10-13 00:38:33,148 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2021-10-13 00:38:33,149 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-13 00:38:33,150 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-13 00:38:33,150 INFO L82 PathProgramCache]: Analyzing trace with hash 1375374740, now seen corresponding path program 2 times [2021-10-13 00:38:33,150 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-13 00:38:33,150 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [563746768] [2021-10-13 00:38:33,150 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-13 00:38:33,150 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-13 00:38:33,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2021-10-13 00:38:33,227 INFO L354 TraceCheck]: Trace is feasible, we will do another trace check, this time with branch encoders. [2021-10-13 00:38:33,294 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2021-10-13 00:38:33,357 INFO L133 FreeRefinementEngine]: Strategy CAMEL found a feasible trace [2021-10-13 00:38:33,358 INFO L626 BasicCegarLoop]: Counterexample is feasible [2021-10-13 00:38:33,359 INFO L764 garLoopResultBuilder]: Registering result UNSAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-13 00:38:33,360 INFO L764 garLoopResultBuilder]: Registering result UNKNOWN for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-13 00:38:33,361 INFO L764 garLoopResultBuilder]: Registering result UNKNOWN for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-13 00:38:33,361 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-13 00:38:33,367 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-13 00:38:33,569 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 13.10 12:38:33 BoogieIcfgContainer [2021-10-13 00:38:33,569 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-13 00:38:33,570 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-13 00:38:33,570 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-13 00:38:33,570 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-13 00:38:33,571 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.10 12:38:28" (3/4) ... [2021-10-13 00:38:33,573 INFO L131 WitnessPrinter]: Generating witness for reachability counterexample [2021-10-13 00:38:33,768 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/witness.graphml [2021-10-13 00:38:33,768 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-13 00:38:33,770 INFO L168 Benchmark]: Toolchain (without parser) took 8015.43 ms. Allocated memory was 86.0 MB in the beginning and 195.0 MB in the end (delta: 109.1 MB). Free memory was 50.6 MB in the beginning and 103.0 MB in the end (delta: -52.4 MB). Peak memory consumption was 56.7 MB. Max. memory is 16.1 GB. [2021-10-13 00:38:33,770 INFO L168 Benchmark]: CDTParser took 0.26 ms. Allocated memory is still 86.0 MB. Free memory was 58.3 MB in the beginning and 58.3 MB in the end (delta: 26.2 kB). There was no memory consumed. Max. memory is 16.1 GB. [2021-10-13 00:38:33,771 INFO L168 Benchmark]: CACSL2BoogieTranslator took 627.06 ms. Allocated memory was 86.0 MB in the beginning and 109.1 MB in the end (delta: 23.1 MB). Free memory was 50.3 MB in the beginning and 76.1 MB in the end (delta: -25.7 MB). Peak memory consumption was 5.6 MB. Max. memory is 16.1 GB. [2021-10-13 00:38:33,774 INFO L168 Benchmark]: Boogie Procedure Inliner took 158.44 ms. Allocated memory is still 109.1 MB. Free memory was 76.1 MB in the beginning and 64.3 MB in the end (delta: 11.8 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-10-13 00:38:33,774 INFO L168 Benchmark]: Boogie Preprocessor took 148.75 ms. Allocated memory is still 109.1 MB. Free memory was 64.3 MB in the beginning and 80.3 MB in the end (delta: -16.0 MB). Peak memory consumption was 14.5 MB. Max. memory is 16.1 GB. [2021-10-13 00:38:33,775 INFO L168 Benchmark]: RCFGBuilder took 1748.45 ms. Allocated memory is still 109.1 MB. Free memory was 80.3 MB in the beginning and 50.8 MB in the end (delta: 29.5 MB). Peak memory consumption was 38.8 MB. Max. memory is 16.1 GB. [2021-10-13 00:38:33,775 INFO L168 Benchmark]: TraceAbstraction took 5125.41 ms. Allocated memory was 109.1 MB in the beginning and 195.0 MB in the end (delta: 86.0 MB). Free memory was 50.3 MB in the beginning and 142.8 MB in the end (delta: -92.5 MB). Peak memory consumption was 89.9 MB. Max. memory is 16.1 GB. [2021-10-13 00:38:33,775 INFO L168 Benchmark]: Witness Printer took 198.14 ms. Allocated memory is still 195.0 MB. Free memory was 142.8 MB in the beginning and 103.0 MB in the end (delta: 39.8 MB). Peak memory consumption was 39.8 MB. Max. memory is 16.1 GB. [2021-10-13 00:38:33,778 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.26 ms. Allocated memory is still 86.0 MB. Free memory was 58.3 MB in the beginning and 58.3 MB in the end (delta: 26.2 kB). There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 627.06 ms. Allocated memory was 86.0 MB in the beginning and 109.1 MB in the end (delta: 23.1 MB). Free memory was 50.3 MB in the beginning and 76.1 MB in the end (delta: -25.7 MB). Peak memory consumption was 5.6 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 158.44 ms. Allocated memory is still 109.1 MB. Free memory was 76.1 MB in the beginning and 64.3 MB in the end (delta: 11.8 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 148.75 ms. Allocated memory is still 109.1 MB. Free memory was 64.3 MB in the beginning and 80.3 MB in the end (delta: -16.0 MB). Peak memory consumption was 14.5 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1748.45 ms. Allocated memory is still 109.1 MB. Free memory was 80.3 MB in the beginning and 50.8 MB in the end (delta: 29.5 MB). Peak memory consumption was 38.8 MB. Max. memory is 16.1 GB. * TraceAbstraction took 5125.41 ms. Allocated memory was 109.1 MB in the beginning and 195.0 MB in the end (delta: 86.0 MB). Free memory was 50.3 MB in the beginning and 142.8 MB in the end (delta: -92.5 MB). Peak memory consumption was 89.9 MB. Max. memory is 16.1 GB. * Witness Printer took 198.14 ms. Allocated memory is still 195.0 MB. Free memory was 142.8 MB in the beginning and 103.0 MB in the end (delta: 39.8 MB). Peak memory consumption was 39.8 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0ms ErrorAutomatonConstructionTimeTotal, 0.0ms FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0ms ErrorAutomatonConstructionTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - CounterExampleResult [Line: 604]: a call to reach_error is reachable a call to reach_error is reachable We found a FailurePath: [L42] int cleanupTimeShifts = 4; [L147] int __SELECTED_FEATURE_base ; [L148] int __SELECTED_FEATURE_highWaterSensor ; [L149] int __SELECTED_FEATURE_lowWaterSensor ; [L150] int __SELECTED_FEATURE_methaneQuery ; [L151] int __SELECTED_FEATURE_methaneAlarm ; [L152] int __SELECTED_FEATURE_stopCommand ; [L153] int __SELECTED_FEATURE_startCommand ; [L154] int __GUIDSL_ROOT_PRODUCTION ; [L192] int pumpRunning = 0; [L193] int systemActive = 1; [L778] static struct __ACC__ERR *head = (struct __ACC__ERR *)0; [L975] int waterLevel = 1; [L976] int methaneLevelCritical = 0; VAL [__GUIDSL_ROOT_PRODUCTION=0, __SELECTED_FEATURE_base=0, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L123] int retValue_acc ; [L124] int tmp ; [L1109] __GUIDSL_ROOT_PRODUCTION = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=0, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1094] __SELECTED_FEATURE_base = 1 [L1080] int retValue_acc ; [L1081] int choice = __VERIFIER_nondet_int(); [L1084] retValue_acc = choice [L1085] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=0, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1095] __SELECTED_FEATURE_highWaterSensor = select_one() [L1080] int retValue_acc ; [L1081] int choice = __VERIFIER_nondet_int(); [L1084] retValue_acc = choice [L1085] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1096] __SELECTED_FEATURE_lowWaterSensor = select_one() [L1080] int retValue_acc ; [L1081] int choice = __VERIFIER_nondet_int(); [L1084] retValue_acc = choice [L1085] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1097] __SELECTED_FEATURE_methaneQuery = select_one() [L1080] int retValue_acc ; [L1081] int choice = __VERIFIER_nondet_int(); [L1084] retValue_acc = choice [L1085] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1098] __SELECTED_FEATURE_methaneAlarm = select_one() [L1080] int retValue_acc ; [L1081] int choice = __VERIFIER_nondet_int(); [L1084] retValue_acc = choice [L1085] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1099] __SELECTED_FEATURE_stopCommand = select_one() [L1080] int retValue_acc ; [L1081] int choice = __VERIFIER_nondet_int(); [L1084] retValue_acc = choice [L1085] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L1100] __SELECTED_FEATURE_startCommand = select_one() [L1114] int retValue_acc ; [L1117] retValue_acc = __SELECTED_FEATURE_base [L1118] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L130] tmp = valid_product() [L132] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L524] int splverifierCounter ; [L525] int tmp ; [L526] int tmp___0 ; [L527] int tmp___1 ; [L528] int tmp___2 ; [L531] splverifierCounter = 0 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L533] COND TRUE 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L535] COND TRUE splverifierCounter < 4 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L541] tmp = __VERIFIER_nondet_int() [L543] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=1] [L993] COND TRUE waterLevel < 2 [L994] waterLevel = waterLevel + 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L551] tmp___0 = __VERIFIER_nondet_int() [L553] COND FALSE !(\read(tmp___0)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L561] tmp___2 = __VERIFIER_nondet_int() [L563] COND FALSE !(\read(tmp___2)) [L573] tmp___1 = __VERIFIER_nondet_int() [L575] COND FALSE !(\read(tmp___1)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L199] COND FALSE !(\read(pumpRunning)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L206] COND TRUE \read(systemActive) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L342] COND FALSE !(\read(__SELECTED_FEATURE_methaneAlarm)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L299] COND FALSE !(\read(__SELECTED_FEATURE_lowWaterSensor)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L256] COND TRUE \read(__SELECTED_FEATURE_highWaterSensor) [L228] int tmp ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L231] COND TRUE ! pumpRunning [L462] int retValue_acc ; [L463] int tmp ; [L464] int tmp___0 ; [L1055] int retValue_acc ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L1058] COND FALSE !(waterLevel < 2) [L1062] retValue_acc = 0 [L1063] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L468] tmp = isHighWaterSensorDry() [L470] COND FALSE !(\read(tmp)) [L473] tmp___0 = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L475] retValue_acc = tmp___0 [L476] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L233] tmp = isHighWaterLevel() [L235] COND TRUE \read(tmp) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=0, systemActive=1, waterLevel=2] [L384] COND FALSE !(\read(__SELECTED_FEATURE_methaneQuery)) [L359] pumpRunning = 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L158] int tmp ; [L159] int tmp___0 ; [L1046] int retValue_acc ; [L1049] retValue_acc = waterLevel [L1050] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L163] tmp = getWaterLevel() [L165] COND FALSE !(tmp == 0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L533] COND TRUE 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L535] COND TRUE splverifierCounter < 4 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L541] tmp = __VERIFIER_nondet_int() [L543] COND FALSE !(\read(tmp)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L551] tmp___0 = __VERIFIER_nondet_int() [L553] COND FALSE !(\read(tmp___0)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L561] tmp___2 = __VERIFIER_nondet_int() [L563] COND FALSE !(\read(tmp___2)) [L573] tmp___1 = __VERIFIER_nondet_int() [L575] COND FALSE !(\read(tmp___1)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L199] COND TRUE \read(pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=2] [L981] COND TRUE waterLevel > 0 [L982] waterLevel = waterLevel - 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L206] COND TRUE \read(systemActive) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L342] COND FALSE !(\read(__SELECTED_FEATURE_methaneAlarm)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L299] COND FALSE !(\read(__SELECTED_FEATURE_lowWaterSensor)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L256] COND TRUE \read(__SELECTED_FEATURE_highWaterSensor) [L228] int tmp ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L231] COND FALSE !(! pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L158] int tmp ; [L159] int tmp___0 ; [L1046] int retValue_acc ; [L1049] retValue_acc = waterLevel [L1050] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L163] tmp = getWaterLevel() [L165] COND FALSE !(tmp == 0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L533] COND TRUE 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L535] COND TRUE splverifierCounter < 4 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L541] tmp = __VERIFIER_nondet_int() [L543] COND FALSE !(\read(tmp)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L551] tmp___0 = __VERIFIER_nondet_int() [L553] COND FALSE !(\read(tmp___0)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L561] tmp___2 = __VERIFIER_nondet_int() [L563] COND FALSE !(\read(tmp___2)) [L573] tmp___1 = __VERIFIER_nondet_int() [L575] COND FALSE !(\read(tmp___1)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L199] COND TRUE \read(pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=1] [L981] COND TRUE waterLevel > 0 [L982] waterLevel = waterLevel - 1 VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L206] COND TRUE \read(systemActive) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L342] COND FALSE !(\read(__SELECTED_FEATURE_methaneAlarm)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L299] COND FALSE !(\read(__SELECTED_FEATURE_lowWaterSensor)) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L256] COND TRUE \read(__SELECTED_FEATURE_highWaterSensor) [L228] int tmp ; VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L231] COND FALSE !(! pumpRunning) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L158] int tmp ; [L159] int tmp___0 ; [L1046] int retValue_acc ; [L1049] retValue_acc = waterLevel [L1050] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L163] tmp = getWaterLevel() [L165] COND TRUE tmp == 0 [L417] int retValue_acc ; [L420] retValue_acc = pumpRunning [L421] return (retValue_acc); VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L167] tmp___0 = isPumpRunning() [L169] COND TRUE \read(tmp___0) VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] [L604] reach_error() VAL [__GUIDSL_ROOT_PRODUCTION=1, __SELECTED_FEATURE_base=1, __SELECTED_FEATURE_highWaterSensor=1, __SELECTED_FEATURE_lowWaterSensor=0, __SELECTED_FEATURE_methaneAlarm=0, __SELECTED_FEATURE_methaneQuery=0, __SELECTED_FEATURE_startCommand=0, __SELECTED_FEATURE_stopCommand=0, cleanupTimeShifts=4, head={0:0}, methaneLevelCritical=0, pumpRunning=1, systemActive=1, waterLevel=0] - UnprovableResult [Line: 604]: Unable to prove that call to reach_error is unreachable Unable to prove that call to reach_error is unreachable Reason: Not analyzed. - UnprovableResult [Line: 604]: Unable to prove that call to reach_error is unreachable Unable to prove that call to reach_error is unreachable Reason: Not analyzed. - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 470 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 4832.0ms, OverallIterations: 11, TraceHistogramMax: 3, EmptinessCheckTime: 44.4ms, AutomataDifference: 2006.1ms, DeadEndRemovalTime: 0.0ms, HoareAnnotationTime: 0.0ms, InitialAbstractionConstructionTime: 36.6ms, PartialOrderReductionTime: 0.0ms, HoareTripleCheckerStatistics: 3365 SDtfs, 5797 SDslu, 5837 SDs, 0 SdLazy, 547 SolverSat, 227 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 802.9ms Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 122 GetRequests, 82 SyntacticMatches, 0 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 32 ImplicationChecksByTransitivity, 228.8ms Time, 0.0ms BasicInterpolantAutomatonTime, BiggestAbstraction: size=757occurred in iteration=10, InterpolantAutomatonStates: 51, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0ms DumpTime, AutomataMinimizationStatistics: 444.4ms AutomataMinimizationTime, 10 MinimizatonAttempts, 2246 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 99.7ms SsaConstructionTime, 507.8ms SatisfiabilityAnalysisTime, 1016.9ms InterpolantComputationTime, 582 NumberOfCodeBlocks, 582 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 491 ConstructedInterpolants, 0 QuantifiedInterpolants, 917 SizeOfPredicates, 3 NumberOfNonLiveVariables, 502 ConjunctsInSsa, 6 ConjunctsInUnsatCore, 11 InterpolantComputations, 9 PerfectInterpolantSequences, 98/104 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be incorrect! [2021-10-13 00:38:33,836 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b1882b55-9c28-46db-a1c2-b1e69f43f73c/bin/uautomizer-WNIpwEf4Nt/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...