./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e943c265 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 449370313253a0d5d7b509b2cd15e912fe8e85dcb7140575e7078385cf7fc6cf ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................ Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-e943c26 [2021-10-21 20:05:56,689 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-21 20:05:56,693 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-21 20:05:56,769 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-21 20:05:56,770 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-21 20:05:56,772 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-21 20:05:56,774 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-21 20:05:56,778 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-21 20:05:56,781 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-21 20:05:56,783 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-21 20:05:56,785 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-21 20:05:56,788 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-21 20:05:56,789 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-21 20:05:56,791 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-21 20:05:56,794 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-21 20:05:56,797 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-21 20:05:56,799 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-21 20:05:56,801 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-21 20:05:56,805 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-21 20:05:56,810 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-21 20:05:56,814 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-21 20:05:56,822 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-21 20:05:56,825 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-21 20:05:56,826 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-21 20:05:56,833 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-21 20:05:56,834 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-21 20:05:56,834 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-21 20:05:56,836 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-21 20:05:56,838 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-21 20:05:56,840 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-21 20:05:56,840 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-21 20:05:56,842 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-21 20:05:56,843 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-21 20:05:56,845 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-21 20:05:56,847 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-21 20:05:56,848 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-21 20:05:56,849 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-21 20:05:56,850 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-21 20:05:56,851 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-21 20:05:56,852 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-21 20:05:56,854 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-21 20:05:56,855 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-21 20:05:56,889 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-21 20:05:56,889 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-21 20:05:56,890 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-21 20:05:56,890 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-21 20:05:56,891 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-21 20:05:56,892 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-21 20:05:56,892 INFO L138 SettingsManager]: * Use SBE=true [2021-10-21 20:05:56,892 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-21 20:05:56,893 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-21 20:05:56,893 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-21 20:05:56,894 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-21 20:05:56,894 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-21 20:05:56,894 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-21 20:05:56,895 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-21 20:05:56,895 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-21 20:05:56,895 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-21 20:05:56,895 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-21 20:05:56,896 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-21 20:05:56,896 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-21 20:05:56,896 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-21 20:05:56,897 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-21 20:05:56,897 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-21 20:05:56,897 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-21 20:05:56,897 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-21 20:05:56,898 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-21 20:05:56,898 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-21 20:05:56,898 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-21 20:05:56,898 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-21 20:05:56,899 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-21 20:05:56,899 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-21 20:05:56,899 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-21 20:05:56,899 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-21 20:05:56,900 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 449370313253a0d5d7b509b2cd15e912fe8e85dcb7140575e7078385cf7fc6cf [2021-10-21 20:05:57,281 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-21 20:05:57,316 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-21 20:05:57,321 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-21 20:05:57,323 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-21 20:05:57,325 INFO L275 PluginConnector]: CDTParser initialized [2021-10-21 20:05:57,326 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c [2021-10-21 20:05:57,446 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/data/04c68f298/a1aa5c3e66a844e6b1e69709e165ab59/FLAG06550cbfc [2021-10-21 20:05:58,161 INFO L306 CDTParser]: Found 1 translation units. [2021-10-21 20:05:58,163 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c [2021-10-21 20:05:58,204 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/data/04c68f298/a1aa5c3e66a844e6b1e69709e165ab59/FLAG06550cbfc [2021-10-21 20:05:58,415 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/data/04c68f298/a1aa5c3e66a844e6b1e69709e165ab59 [2021-10-21 20:05:58,421 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-21 20:05:58,425 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-21 20:05:58,429 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-21 20:05:58,430 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-21 20:05:58,436 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-21 20:05:58,437 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.10 08:05:58" (1/1) ... [2021-10-21 20:05:58,440 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@7ac06ef9 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:58, skipping insertion in model container [2021-10-21 20:05:58,441 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.10 08:05:58" (1/1) ... [2021-10-21 20:05:58,451 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-21 20:05:58,553 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-21 20:05:58,962 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c[7477,7490] [2021-10-21 20:05:59,044 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-21 20:05:59,062 INFO L203 MainTranslator]: Completed pre-run [2021-10-21 20:05:59,120 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c[7477,7490] [2021-10-21 20:05:59,173 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-21 20:05:59,201 INFO L208 MainTranslator]: Completed translation [2021-10-21 20:05:59,201 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59 WrapperNode [2021-10-21 20:05:59,202 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-21 20:05:59,203 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-21 20:05:59,204 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-21 20:05:59,204 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-21 20:05:59,218 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,243 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,325 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-21 20:05:59,327 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-21 20:05:59,328 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-21 20:05:59,337 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-21 20:05:59,349 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,349 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,371 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,372 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,387 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,397 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,401 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,420 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-21 20:05:59,422 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-21 20:05:59,422 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-21 20:05:59,422 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-21 20:05:59,424 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (1/1) ... [2021-10-21 20:05:59,453 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-21 20:05:59,470 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/z3 [2021-10-21 20:05:59,489 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-21 20:05:59,493 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-21 20:05:59,543 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-21 20:05:59,543 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-21 20:05:59,544 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-21 20:05:59,544 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-21 20:06:00,749 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-21 20:06:00,749 INFO L299 CfgBuilder]: Removed 122 assume(true) statements. [2021-10-21 20:06:00,752 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.10 08:06:00 BoogieIcfgContainer [2021-10-21 20:06:00,753 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-21 20:06:00,755 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-21 20:06:00,756 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-21 20:06:00,761 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-21 20:06:00,761 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.10 08:05:58" (1/3) ... [2021-10-21 20:06:00,762 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@690b7ede and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.10 08:06:00, skipping insertion in model container [2021-10-21 20:06:00,763 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:05:59" (2/3) ... [2021-10-21 20:06:00,763 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@690b7ede and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.10 08:06:00, skipping insertion in model container [2021-10-21 20:06:00,764 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.10 08:06:00" (3/3) ... [2021-10-21 20:06:00,766 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product42.cil.c [2021-10-21 20:06:00,774 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-21 20:06:00,774 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-21 20:06:00,842 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-21 20:06:00,850 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-21 20:06:00,851 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-21 20:06:00,875 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:00,884 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-21 20:06:00,884 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:00,885 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:00,886 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:00,894 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:00,895 INFO L82 PathProgramCache]: Analyzing trace with hash -1623272414, now seen corresponding path program 1 times [2021-10-21 20:06:00,909 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:00,910 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [11744422] [2021-10-21 20:06:00,910 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:00,912 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:01,171 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:01,299 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:01,300 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:01,300 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [11744422] [2021-10-21 20:06:01,301 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [11744422] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:01,301 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:01,302 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-21 20:06:01,304 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [629340056] [2021-10-21 20:06:01,312 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-21 20:06:01,312 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:01,332 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-21 20:06:01,333 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-21 20:06:01,336 INFO L87 Difference]: Start difference. First operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:01,374 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:01,374 INFO L93 Difference]: Finished difference Result 180 states and 269 transitions. [2021-10-21 20:06:01,375 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-21 20:06:01,377 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-21 20:06:01,377 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:01,393 INFO L225 Difference]: With dead ends: 180 [2021-10-21 20:06:01,393 INFO L226 Difference]: Without dead ends: 89 [2021-10-21 20:06:01,397 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0ms TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-21 20:06:01,421 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2021-10-21 20:06:01,450 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2021-10-21 20:06:01,455 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 86 states have (on average 1.4651162790697674) internal successors, (126), 88 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:01,461 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 126 transitions. [2021-10-21 20:06:01,466 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 126 transitions. Word has length 18 [2021-10-21 20:06:01,467 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:01,469 INFO L470 AbstractCegarLoop]: Abstraction has 89 states and 126 transitions. [2021-10-21 20:06:01,469 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:01,470 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 126 transitions. [2021-10-21 20:06:01,473 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-21 20:06:01,474 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:01,474 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:01,475 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-21 20:06:01,475 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:01,480 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:01,481 INFO L82 PathProgramCache]: Analyzing trace with hash 352621777, now seen corresponding path program 1 times [2021-10-21 20:06:01,481 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:01,482 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1979542816] [2021-10-21 20:06:01,482 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:01,483 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:01,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:01,693 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:01,695 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:01,695 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1979542816] [2021-10-21 20:06:01,696 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1979542816] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:01,696 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:01,697 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-21 20:06:01,697 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [391408790] [2021-10-21 20:06:01,699 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-21 20:06:01,700 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:01,701 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-21 20:06:01,703 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:06:01,704 INFO L87 Difference]: Start difference. First operand 89 states and 126 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:01,731 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:01,735 INFO L93 Difference]: Finished difference Result 89 states and 126 transitions. [2021-10-21 20:06:01,736 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-21 20:06:01,737 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-21 20:06:01,737 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:01,738 INFO L225 Difference]: With dead ends: 89 [2021-10-21 20:06:01,740 INFO L226 Difference]: Without dead ends: 39 [2021-10-21 20:06:01,742 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 6.0ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:06:01,745 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-21 20:06:01,751 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-21 20:06:01,752 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 38 states have internal predecessors, (55), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:01,753 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 55 transitions. [2021-10-21 20:06:01,753 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 55 transitions. Word has length 19 [2021-10-21 20:06:01,754 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:01,754 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 55 transitions. [2021-10-21 20:06:01,755 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:01,755 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 55 transitions. [2021-10-21 20:06:01,756 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-21 20:06:01,756 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:01,757 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:01,757 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-21 20:06:01,758 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:01,758 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:01,758 INFO L82 PathProgramCache]: Analyzing trace with hash 1246279967, now seen corresponding path program 1 times [2021-10-21 20:06:01,759 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:01,759 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [711109792] [2021-10-21 20:06:01,759 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:01,760 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:01,843 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:01,927 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:01,928 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:01,929 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [711109792] [2021-10-21 20:06:01,929 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [711109792] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:01,929 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:01,930 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:06:01,930 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1638066182] [2021-10-21 20:06:01,931 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:06:01,931 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:01,932 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:06:01,933 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:06:01,934 INFO L87 Difference]: Start difference. First operand 39 states and 55 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,007 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:02,007 INFO L93 Difference]: Finished difference Result 72 states and 104 transitions. [2021-10-21 20:06:02,008 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-21 20:06:02,008 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-21 20:06:02,009 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:02,010 INFO L225 Difference]: With dead ends: 72 [2021-10-21 20:06:02,010 INFO L226 Difference]: Without dead ends: 39 [2021-10-21 20:06:02,011 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 38.8ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-21 20:06:02,012 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-21 20:06:02,019 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-21 20:06:02,020 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4210526315789473) internal successors, (54), 38 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,021 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 54 transitions. [2021-10-21 20:06:02,021 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 54 transitions. Word has length 24 [2021-10-21 20:06:02,022 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:02,022 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 54 transitions. [2021-10-21 20:06:02,022 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,023 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 54 transitions. [2021-10-21 20:06:02,024 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-10-21 20:06:02,024 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:02,025 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:02,025 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-21 20:06:02,026 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:02,026 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:02,027 INFO L82 PathProgramCache]: Analyzing trace with hash 607128155, now seen corresponding path program 1 times [2021-10-21 20:06:02,027 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:02,027 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1573801599] [2021-10-21 20:06:02,028 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:02,028 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:02,063 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:02,116 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:02,116 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:02,117 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1573801599] [2021-10-21 20:06:02,117 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1573801599] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:02,118 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:02,118 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-21 20:06:02,118 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1613989130] [2021-10-21 20:06:02,119 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-21 20:06:02,119 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:02,120 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-21 20:06:02,120 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:06:02,121 INFO L87 Difference]: Start difference. First operand 39 states and 54 transitions. Second operand has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,172 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:02,173 INFO L93 Difference]: Finished difference Result 95 states and 135 transitions. [2021-10-21 20:06:02,173 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-21 20:06:02,174 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-10-21 20:06:02,174 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:02,180 INFO L225 Difference]: With dead ends: 95 [2021-10-21 20:06:02,180 INFO L226 Difference]: Without dead ends: 62 [2021-10-21 20:06:02,182 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 4.9ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:06:02,182 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2021-10-21 20:06:02,203 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 60. [2021-10-21 20:06:02,204 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 60 states, 59 states have (on average 1.423728813559322) internal successors, (84), 59 states have internal predecessors, (84), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,205 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 60 states to 60 states and 84 transitions. [2021-10-21 20:06:02,205 INFO L78 Accepts]: Start accepts. Automaton has 60 states and 84 transitions. Word has length 25 [2021-10-21 20:06:02,205 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:02,206 INFO L470 AbstractCegarLoop]: Abstraction has 60 states and 84 transitions. [2021-10-21 20:06:02,206 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,206 INFO L276 IsEmpty]: Start isEmpty. Operand 60 states and 84 transitions. [2021-10-21 20:06:02,207 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-10-21 20:06:02,208 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:02,208 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:02,208 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-21 20:06:02,208 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:02,213 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:02,213 INFO L82 PathProgramCache]: Analyzing trace with hash 1327381871, now seen corresponding path program 1 times [2021-10-21 20:06:02,214 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:02,214 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1743563312] [2021-10-21 20:06:02,215 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:02,215 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:02,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:02,388 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:02,389 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:02,389 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1743563312] [2021-10-21 20:06:02,390 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1743563312] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:02,390 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:02,390 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-21 20:06:02,391 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2017967601] [2021-10-21 20:06:02,392 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:06:02,392 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:02,393 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:06:02,393 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:06:02,394 INFO L87 Difference]: Start difference. First operand 60 states and 84 transitions. Second operand has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,587 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:02,588 INFO L93 Difference]: Finished difference Result 320 states and 467 transitions. [2021-10-21 20:06:02,589 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-21 20:06:02,589 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 31 [2021-10-21 20:06:02,590 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:02,596 INFO L225 Difference]: With dead ends: 320 [2021-10-21 20:06:02,596 INFO L226 Difference]: Without dead ends: 266 [2021-10-21 20:06:02,602 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 45.6ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:06:02,604 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 266 states. [2021-10-21 20:06:02,645 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 266 to 108. [2021-10-21 20:06:02,647 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 107 states have (on average 1.4018691588785046) internal successors, (150), 107 states have internal predecessors, (150), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,648 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 150 transitions. [2021-10-21 20:06:02,649 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 150 transitions. Word has length 31 [2021-10-21 20:06:02,650 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:02,650 INFO L470 AbstractCegarLoop]: Abstraction has 108 states and 150 transitions. [2021-10-21 20:06:02,651 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,651 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 150 transitions. [2021-10-21 20:06:02,659 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-21 20:06:02,659 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:02,659 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:02,659 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-21 20:06:02,660 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:02,660 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:02,661 INFO L82 PathProgramCache]: Analyzing trace with hash -1796495249, now seen corresponding path program 1 times [2021-10-21 20:06:02,661 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:02,661 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1780981287] [2021-10-21 20:06:02,661 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:02,662 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:02,710 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:02,806 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:02,807 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:02,807 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1780981287] [2021-10-21 20:06:02,808 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1780981287] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:02,808 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:02,808 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-21 20:06:02,809 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1117111484] [2021-10-21 20:06:02,812 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-21 20:06:02,818 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:02,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-21 20:06:02,819 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-21 20:06:02,820 INFO L87 Difference]: Start difference. First operand 108 states and 150 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,890 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:02,891 INFO L93 Difference]: Finished difference Result 343 states and 483 transitions. [2021-10-21 20:06:02,892 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-21 20:06:02,892 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-21 20:06:02,893 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:02,902 INFO L225 Difference]: With dead ends: 343 [2021-10-21 20:06:02,902 INFO L226 Difference]: Without dead ends: 241 [2021-10-21 20:06:02,903 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 13.8ms TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:06:02,905 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 241 states. [2021-10-21 20:06:02,926 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 241 to 108. [2021-10-21 20:06:02,927 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 107 states have (on average 1.3925233644859814) internal successors, (149), 107 states have internal predecessors, (149), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,928 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 149 transitions. [2021-10-21 20:06:02,928 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 149 transitions. Word has length 32 [2021-10-21 20:06:02,928 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:02,929 INFO L470 AbstractCegarLoop]: Abstraction has 108 states and 149 transitions. [2021-10-21 20:06:02,929 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:02,929 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 149 transitions. [2021-10-21 20:06:02,930 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-21 20:06:02,930 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:02,931 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:02,931 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-21 20:06:02,931 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:02,932 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:02,932 INFO L82 PathProgramCache]: Analyzing trace with hash -1538329811, now seen corresponding path program 1 times [2021-10-21 20:06:02,932 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:02,933 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1912834271] [2021-10-21 20:06:02,933 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:02,933 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:02,957 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:03,040 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:03,041 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:03,042 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1912834271] [2021-10-21 20:06:03,042 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1912834271] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:03,042 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:03,042 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-21 20:06:03,043 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1218439988] [2021-10-21 20:06:03,043 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-21 20:06:03,044 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:03,045 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-21 20:06:03,045 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-21 20:06:03,046 INFO L87 Difference]: Start difference. First operand 108 states and 149 transitions. Second operand has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:03,203 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:03,203 INFO L93 Difference]: Finished difference Result 386 states and 542 transitions. [2021-10-21 20:06:03,204 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-21 20:06:03,205 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-21 20:06:03,208 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:03,211 INFO L225 Difference]: With dead ends: 386 [2021-10-21 20:06:03,211 INFO L226 Difference]: Without dead ends: 284 [2021-10-21 20:06:03,215 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 100.3ms TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-10-21 20:06:03,216 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 284 states. [2021-10-21 20:06:03,247 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 284 to 111. [2021-10-21 20:06:03,248 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 111 states, 110 states have (on average 1.3727272727272728) internal successors, (151), 110 states have internal predecessors, (151), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:03,249 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 111 states to 111 states and 151 transitions. [2021-10-21 20:06:03,249 INFO L78 Accepts]: Start accepts. Automaton has 111 states and 151 transitions. Word has length 32 [2021-10-21 20:06:03,249 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:03,250 INFO L470 AbstractCegarLoop]: Abstraction has 111 states and 151 transitions. [2021-10-21 20:06:03,250 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:03,250 INFO L276 IsEmpty]: Start isEmpty. Operand 111 states and 151 transitions. [2021-10-21 20:06:03,253 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-21 20:06:03,253 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:03,254 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:03,254 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-21 20:06:03,254 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:03,256 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:03,256 INFO L82 PathProgramCache]: Analyzing trace with hash -1048057311, now seen corresponding path program 1 times [2021-10-21 20:06:03,258 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:03,258 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [120662027] [2021-10-21 20:06:03,260 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:03,260 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:03,300 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:03,397 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:03,397 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:03,397 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [120662027] [2021-10-21 20:06:03,398 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [120662027] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:03,398 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:03,398 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:06:03,399 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1024314337] [2021-10-21 20:06:03,399 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-21 20:06:03,400 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:03,401 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-21 20:06:03,401 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-21 20:06:03,401 INFO L87 Difference]: Start difference. First operand 111 states and 151 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:03,774 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:03,774 INFO L93 Difference]: Finished difference Result 814 states and 1107 transitions. [2021-10-21 20:06:03,775 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-21 20:06:03,776 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-21 20:06:03,777 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:03,784 INFO L225 Difference]: With dead ends: 814 [2021-10-21 20:06:03,784 INFO L226 Difference]: Without dead ends: 709 [2021-10-21 20:06:03,786 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 125.1ms TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-21 20:06:03,788 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 709 states. [2021-10-21 20:06:03,851 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 709 to 202. [2021-10-21 20:06:03,852 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 202 states, 201 states have (on average 1.3532338308457712) internal successors, (272), 201 states have internal predecessors, (272), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:03,853 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 202 states to 202 states and 272 transitions. [2021-10-21 20:06:03,854 INFO L78 Accepts]: Start accepts. Automaton has 202 states and 272 transitions. Word has length 35 [2021-10-21 20:06:03,854 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:03,854 INFO L470 AbstractCegarLoop]: Abstraction has 202 states and 272 transitions. [2021-10-21 20:06:03,855 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:03,855 INFO L276 IsEmpty]: Start isEmpty. Operand 202 states and 272 transitions. [2021-10-21 20:06:03,858 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-21 20:06:03,858 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:03,858 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:03,859 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-21 20:06:03,860 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:03,860 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:03,860 INFO L82 PathProgramCache]: Analyzing trace with hash -367998941, now seen corresponding path program 1 times [2021-10-21 20:06:03,861 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:03,861 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [324451272] [2021-10-21 20:06:03,861 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:03,862 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:03,901 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:03,978 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:03,979 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:03,979 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [324451272] [2021-10-21 20:06:03,980 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [324451272] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:03,980 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:03,980 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:06:03,981 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1031474716] [2021-10-21 20:06:03,981 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:06:03,982 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:03,983 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:06:03,983 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:06:03,985 INFO L87 Difference]: Start difference. First operand 202 states and 272 transitions. Second operand has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:04,235 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:04,236 INFO L93 Difference]: Finished difference Result 516 states and 713 transitions. [2021-10-21 20:06:04,236 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-21 20:06:04,237 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-21 20:06:04,237 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:04,238 INFO L225 Difference]: With dead ends: 516 [2021-10-21 20:06:04,238 INFO L226 Difference]: Without dead ends: 104 [2021-10-21 20:06:04,244 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 29.0ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-21 20:06:04,244 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-10-21 20:06:04,264 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 97. [2021-10-21 20:06:04,265 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 97 states, 96 states have (on average 1.25) internal successors, (120), 96 states have internal predecessors, (120), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:04,266 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 97 states to 97 states and 120 transitions. [2021-10-21 20:06:04,266 INFO L78 Accepts]: Start accepts. Automaton has 97 states and 120 transitions. Word has length 35 [2021-10-21 20:06:04,269 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:04,270 INFO L470 AbstractCegarLoop]: Abstraction has 97 states and 120 transitions. [2021-10-21 20:06:04,270 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:04,270 INFO L276 IsEmpty]: Start isEmpty. Operand 97 states and 120 transitions. [2021-10-21 20:06:04,272 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-21 20:06:04,273 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:06:04,274 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:06:04,274 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-21 20:06:04,275 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:06:04,275 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:06:04,276 INFO L82 PathProgramCache]: Analyzing trace with hash -1326928741, now seen corresponding path program 1 times [2021-10-21 20:06:04,276 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:06:04,279 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [254908984] [2021-10-21 20:06:04,279 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:06:04,280 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:06:04,323 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:06:04,402 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:06:04,405 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:06:04,406 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [254908984] [2021-10-21 20:06:04,406 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [254908984] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:06:04,406 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:06:04,406 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:06:04,407 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [513586781] [2021-10-21 20:06:04,407 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:06:04,409 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:06:04,410 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:06:04,410 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:06:04,411 INFO L87 Difference]: Start difference. First operand 97 states and 120 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:04,605 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:06:04,605 INFO L93 Difference]: Finished difference Result 229 states and 283 transitions. [2021-10-21 20:06:04,606 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-10-21 20:06:04,606 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-21 20:06:04,606 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:06:04,606 INFO L225 Difference]: With dead ends: 229 [2021-10-21 20:06:04,607 INFO L226 Difference]: Without dead ends: 0 [2021-10-21 20:06:04,607 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 44.5ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:06:04,607 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-21 20:06:04,608 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-21 20:06:04,608 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:04,608 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-21 20:06:04,609 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 36 [2021-10-21 20:06:04,609 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:06:04,609 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-21 20:06:04,609 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:06:04,609 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-21 20:06:04,610 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-21 20:06:04,612 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-21 20:06:04,613 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-21 20:06:04,613 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-21 20:06:04,614 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-21 20:06:04,616 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-21 20:06:04,622 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,003 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,071 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,072 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,086 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,087 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,197 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,198 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,198 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,199 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,221 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,222 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,370 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,371 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,393 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,394 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,395 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,628 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,631 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,632 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,633 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,744 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,745 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,747 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,748 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,749 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,750 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,886 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,886 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:05,936 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,001 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,002 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,013 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,014 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,016 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,017 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,018 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,019 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,021 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:06,315 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:06:10,657 INFO L857 garLoopResultBuilder]: For program point L415(lines 415 419) no Hoare annotation was computed. [2021-10-21 20:06:10,658 INFO L857 garLoopResultBuilder]: For program point L415-3(lines 415 419) no Hoare annotation was computed. [2021-10-21 20:06:10,659 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-10-21 20:06:10,659 INFO L857 garLoopResultBuilder]: For program point L415-6(lines 415 419) no Hoare annotation was computed. [2021-10-21 20:06:10,659 INFO L857 garLoopResultBuilder]: For program point L928(lines 928 941) no Hoare annotation was computed. [2021-10-21 20:06:10,660 INFO L853 garLoopResultBuilder]: At program point L928-1(lines 1 945) the Hoare annotation is: (let ((.cse3 (<= ~waterLevel~0 1)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse7 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse6 .cse8) (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse4 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse5 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse6 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse7 .cse8) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse6 .cse8 (= ~pumpRunning~0 1)))) [2021-10-21 20:06:10,660 INFO L857 garLoopResultBuilder]: For program point L928-2(lines 928 941) no Hoare annotation was computed. [2021-10-21 20:06:10,661 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-21 20:06:10,661 INFO L853 garLoopResultBuilder]: At program point L928-3(lines 1 945) the Hoare annotation is: false [2021-10-21 20:06:10,662 INFO L857 garLoopResultBuilder]: For program point L928-4(lines 928 941) no Hoare annotation was computed. [2021-10-21 20:06:10,662 INFO L853 garLoopResultBuilder]: At program point L928-5(lines 1 945) the Hoare annotation is: false [2021-10-21 20:06:10,662 INFO L857 garLoopResultBuilder]: For program point L185(lines 185 191) no Hoare annotation was computed. [2021-10-21 20:06:10,663 INFO L853 garLoopResultBuilder]: At program point L185-1(lines 185 191) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-21 20:06:10,663 INFO L857 garLoopResultBuilder]: For program point L269(lines 269 286) no Hoare annotation was computed. [2021-10-21 20:06:10,664 INFO L857 garLoopResultBuilder]: For program point L269-1(lines 269 286) no Hoare annotation was computed. [2021-10-21 20:06:10,664 INFO L857 garLoopResultBuilder]: For program point L203(lines 203 207) no Hoare annotation was computed. [2021-10-21 20:06:10,664 INFO L857 garLoopResultBuilder]: For program point L269-2(lines 269 286) no Hoare annotation was computed. [2021-10-21 20:06:10,665 INFO L853 garLoopResultBuilder]: At program point L203-2(lines 237 243) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-21 20:06:10,667 INFO L853 garLoopResultBuilder]: At program point L484(lines 479 487) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse0 .cse1 (= ~pumpRunning~0 0) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) .cse2 .cse3) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse2 .cse3 (= ~pumpRunning~0 1)))) [2021-10-21 20:06:10,667 INFO L853 garLoopResultBuilder]: At program point L484-1(lines 479 487) the Hoare annotation is: false [2021-10-21 20:06:10,668 INFO L853 garLoopResultBuilder]: At program point L484-2(lines 479 487) the Hoare annotation is: false [2021-10-21 20:06:10,668 INFO L853 garLoopResultBuilder]: At program point L534(lines 1 945) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-21 20:06:10,669 INFO L853 garLoopResultBuilder]: At program point L237(lines 236 255) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-21 20:06:10,670 INFO L857 garLoopResultBuilder]: For program point L237-1(lines 237 243) no Hoare annotation was computed. [2021-10-21 20:06:10,670 INFO L853 garLoopResultBuilder]: At program point L237-2(lines 236 255) the Hoare annotation is: false [2021-10-21 20:06:10,671 INFO L853 garLoopResultBuilder]: At program point L237-3(lines 236 255) the Hoare annotation is: false [2021-10-21 20:06:10,671 INFO L853 garLoopResultBuilder]: At program point L452(lines 447 455) the Hoare annotation is: (let ((.cse5 (<= ~waterLevel~0 1)) (.cse10 (= ~methaneLevelCritical~0 1)) (.cse14 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse9 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse6 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0))) (.cse11 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse12 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse13 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 .cse9 .cse6 .cse10 .cse11 .cse7 .cse12 .cse13 .cse14 .cse8) (and .cse0 .cse1 .cse2 .cse5 .cse6 .cse10 .cse7 .cse14 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse9 .cse6 .cse11 .cse7 .cse12 .cse13 .cse8))) [2021-10-21 20:06:10,673 INFO L853 garLoopResultBuilder]: At program point L452-1(lines 447 455) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse7 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse3 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse4 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse5 .cse6) (and .cse0 .cse1 .cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse7 .cse4 .cse6) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse4 .cse6 (= ~pumpRunning~0 1)) (and .cse0 .cse1 .cse2 .cse7 .cse3 .cse4 .cse5 .cse6))) [2021-10-21 20:06:10,674 INFO L853 garLoopResultBuilder]: At program point L452-2(lines 447 455) the Hoare annotation is: false [2021-10-21 20:06:10,674 INFO L853 garLoopResultBuilder]: At program point L452-3(lines 447 455) the Hoare annotation is: false [2021-10-21 20:06:10,675 INFO L853 garLoopResultBuilder]: At program point L452-4(lines 447 455) the Hoare annotation is: false [2021-10-21 20:06:10,675 INFO L853 garLoopResultBuilder]: At program point L452-5(lines 447 455) the Hoare annotation is: false [2021-10-21 20:06:10,676 INFO L857 garLoopResultBuilder]: For program point L932(lines 932 938) no Hoare annotation was computed. [2021-10-21 20:06:10,676 INFO L857 garLoopResultBuilder]: For program point L932-2(lines 932 938) no Hoare annotation was computed. [2021-10-21 20:06:10,676 INFO L857 garLoopResultBuilder]: For program point L932-4(lines 932 938) no Hoare annotation was computed. [2021-10-21 20:06:10,677 INFO L857 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2021-10-21 20:06:10,677 INFO L860 garLoopResultBuilder]: At program point L140-1(lines 140 147) the Hoare annotation is: true [2021-10-21 20:06:10,677 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-21 20:06:10,678 INFO L857 garLoopResultBuilder]: For program point L306(lines 306 312) no Hoare annotation was computed. [2021-10-21 20:06:10,679 INFO L857 garLoopResultBuilder]: For program point L273(lines 273 281) no Hoare annotation was computed. [2021-10-21 20:06:10,679 INFO L857 garLoopResultBuilder]: For program point L273-1(lines 273 281) no Hoare annotation was computed. [2021-10-21 20:06:10,679 INFO L857 garLoopResultBuilder]: For program point L306-2(lines 306 312) no Hoare annotation was computed. [2021-10-21 20:06:10,680 INFO L857 garLoopResultBuilder]: For program point L273-2(lines 273 281) no Hoare annotation was computed. [2021-10-21 20:06:10,680 INFO L857 garLoopResultBuilder]: For program point L306-4(lines 306 312) no Hoare annotation was computed. [2021-10-21 20:06:10,680 INFO L857 garLoopResultBuilder]: For program point L389(lines 389 393) no Hoare annotation was computed. [2021-10-21 20:06:10,681 INFO L857 garLoopResultBuilder]: For program point L389-2(lines 389 393) no Hoare annotation was computed. [2021-10-21 20:06:10,681 INFO L857 garLoopResultBuilder]: For program point L389-3(lines 389 393) no Hoare annotation was computed. [2021-10-21 20:06:10,682 INFO L857 garLoopResultBuilder]: For program point L389-5(lines 389 393) no Hoare annotation was computed. [2021-10-21 20:06:10,682 INFO L857 garLoopResultBuilder]: For program point L389-6(lines 389 393) no Hoare annotation was computed. [2021-10-21 20:06:10,682 INFO L857 garLoopResultBuilder]: For program point L389-8(lines 389 393) no Hoare annotation was computed. [2021-10-21 20:06:10,683 INFO L857 garLoopResultBuilder]: For program point L439(lines 439 443) no Hoare annotation was computed. [2021-10-21 20:06:10,683 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-10-21 20:06:10,684 INFO L853 garLoopResultBuilder]: At program point L340(lines 335 343) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ULTIMATE.start_test_~splverifierCounter~0 0) (= ULTIMATE.start_activatePump_~tmp~3 0) (= |ULTIMATE.start_valid_product_#res| 1) (= |ULTIMATE.start_isPumpRunning_#res| 1) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 1)) [2021-10-21 20:06:10,684 INFO L853 garLoopResultBuilder]: At program point L340-1(lines 335 343) the Hoare annotation is: false [2021-10-21 20:06:10,684 INFO L853 garLoopResultBuilder]: At program point L340-2(lines 335 343) the Hoare annotation is: false [2021-10-21 20:06:10,687 INFO L857 garLoopResultBuilder]: For program point L175(lines 175 181) no Hoare annotation was computed. [2021-10-21 20:06:10,688 INFO L853 garLoopResultBuilder]: At program point L175-1(lines 175 181) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1) (= ~methaneLevelCritical~0 1) .cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-21 20:06:10,688 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-21 20:06:10,689 INFO L857 garLoopResultBuilder]: For program point L507(line 507) no Hoare annotation was computed. [2021-10-21 20:06:10,689 INFO L857 garLoopResultBuilder]: For program point L507-1(line 507) no Hoare annotation was computed. [2021-10-21 20:06:10,689 INFO L857 garLoopResultBuilder]: For program point L507-2(line 507) no Hoare annotation was computed. [2021-10-21 20:06:10,690 INFO L853 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: false [2021-10-21 20:06:10,690 INFO L853 garLoopResultBuilder]: At program point L244(lines 244 250) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse6 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse3 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse4 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse5) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse6 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse4 .cse5) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse4 .cse5 (= ~pumpRunning~0 1)))) [2021-10-21 20:06:10,690 INFO L853 garLoopResultBuilder]: At program point L244-1(lines 244 250) the Hoare annotation is: false [2021-10-21 20:06:10,691 INFO L853 garLoopResultBuilder]: At program point L244-2(lines 244 250) the Hoare annotation is: false [2021-10-21 20:06:10,692 INFO L857 garLoopResultBuilder]: For program point L492(lines 492 498) no Hoare annotation was computed. [2021-10-21 20:06:10,696 INFO L857 garLoopResultBuilder]: For program point L492-1(lines 492 498) no Hoare annotation was computed. [2021-10-21 20:06:10,696 INFO L857 garLoopResultBuilder]: For program point L492-2(lines 492 498) no Hoare annotation was computed. [2021-10-21 20:06:10,696 INFO L857 garLoopResultBuilder]: For program point L195(lines 195 208) no Hoare annotation was computed. [2021-10-21 20:06:10,697 INFO L857 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2021-10-21 20:06:10,697 INFO L853 garLoopResultBuilder]: At program point L542(lines 537 545) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (not (= 0 ~systemActive~0))) [2021-10-21 20:06:10,698 INFO L857 garLoopResultBuilder]: For program point L922(lines 922 942) no Hoare annotation was computed. [2021-10-21 20:06:10,698 INFO L857 garLoopResultBuilder]: For program point L922-2(lines 922 942) no Hoare annotation was computed. [2021-10-21 20:06:10,698 INFO L857 garLoopResultBuilder]: For program point L922-4(lines 922 942) no Hoare annotation was computed. [2021-10-21 20:06:10,699 INFO L853 garLoopResultBuilder]: At program point L113(lines 109 115) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (not (= 0 ~systemActive~0))) [2021-10-21 20:06:10,699 INFO L857 garLoopResultBuilder]: For program point L427(lines 427 431) no Hoare annotation was computed. [2021-10-21 20:06:10,699 INFO L853 garLoopResultBuilder]: At program point L213(lines 164 214) the Hoare annotation is: false [2021-10-21 20:06:10,700 INFO L853 garLoopResultBuilder]: At program point L395(lines 380 398) the Hoare annotation is: (let ((.cse4 (<= ~waterLevel~0 1)) (.cse7 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse8 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse9 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse11 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse4 .cse7 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse8 .cse7 .cse9 .cse5 .cse10 .cse11 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse8 .cse9 .cse5 .cse10 .cse11 .cse6))) [2021-10-21 20:06:10,700 INFO L853 garLoopResultBuilder]: At program point L395-1(lines 380 398) the Hoare annotation is: false [2021-10-21 20:06:10,700 INFO L853 garLoopResultBuilder]: At program point L395-2(lines 380 398) the Hoare annotation is: false [2021-10-21 20:06:10,701 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-21 20:06:10,701 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-10-21 20:06:10,701 INFO L857 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2021-10-21 20:06:10,702 INFO L857 garLoopResultBuilder]: For program point L66-1(lines 237 243) no Hoare annotation was computed. [2021-10-21 20:06:10,702 INFO L860 garLoopResultBuilder]: At program point L149(lines 130 152) the Hoare annotation is: true [2021-10-21 20:06:10,702 INFO L853 garLoopResultBuilder]: At program point L331(lines 324 334) the Hoare annotation is: (let ((.cse3 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse6 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse8 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse9 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse12 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse13 (= ~methaneLevelCritical~0 0)) (.cse14 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse15 (<= ~waterLevel~0 1)) (.cse4 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0))) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse11 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11) (and .cse0 .cse1 .cse2 .cse12 .cse13 .cse3 .cse4 .cse6 .cse7 .cse8 .cse9 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse12 .cse13 .cse15 .cse4 .cse7 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse15 .cse4 .cse5 .cse7 .cse10 .cse11))) [2021-10-21 20:06:10,704 INFO L853 garLoopResultBuilder]: At program point L331-1(lines 324 334) the Hoare annotation is: false [2021-10-21 20:06:10,705 INFO L853 garLoopResultBuilder]: At program point L331-2(lines 324 334) the Hoare annotation is: false [2021-10-21 20:06:10,705 INFO L857 garLoopResultBuilder]: For program point L166(lines 165 212) no Hoare annotation was computed. [2021-10-21 20:06:10,705 INFO L853 garLoopResultBuilder]: At program point L497(lines 488 501) the Hoare annotation is: (let ((.cse8 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse7 .cse8 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse8 .cse3 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse7 .cse4 .cse5 .cse6))) [2021-10-21 20:06:10,706 INFO L853 garLoopResultBuilder]: At program point L497-1(lines 488 501) the Hoare annotation is: false [2021-10-21 20:06:10,706 INFO L853 garLoopResultBuilder]: At program point L497-2(lines 488 501) the Hoare annotation is: false [2021-10-21 20:06:10,706 INFO L857 garLoopResultBuilder]: For program point L167(lines 167 171) no Hoare annotation was computed. [2021-10-21 20:06:10,715 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-21 20:06:10,796 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.10 08:06:10 BoogieIcfgContainer [2021-10-21 20:06:10,811 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-21 20:06:10,812 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-21 20:06:10,813 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-21 20:06:10,813 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-21 20:06:10,814 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.10 08:06:00" (3/4) ... [2021-10-21 20:06:10,820 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-21 20:06:10,873 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-21 20:06:10,875 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-21 20:06:10,877 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-21 20:06:10,878 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-21 20:06:10,880 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-21 20:06:10,881 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-21 20:06:10,883 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-21 20:06:10,924 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) [2021-10-21 20:06:10,925 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) [2021-10-21 20:06:10,925 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-21 20:06:10,927 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-21 20:06:10,928 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-21 20:06:10,929 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-21 20:06:10,931 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-21 20:06:10,932 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-21 20:06:10,935 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) [2021-10-21 20:06:10,937 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && \result == 0) && !(0 == systemActive)) [2021-10-21 20:06:10,938 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-21 20:06:10,939 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) [2021-10-21 20:06:10,951 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1 [2021-10-21 20:06:10,953 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && !(0 == systemActive)) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) [2021-10-21 20:06:10,955 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && \result == 0) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) [2021-10-21 20:06:11,064 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/witness.graphml [2021-10-21 20:06:11,065 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-21 20:06:11,068 INFO L168 Benchmark]: Toolchain (without parser) took 12641.76 ms. Allocated memory was 96.5 MB in the beginning and 199.2 MB in the end (delta: 102.8 MB). Free memory was 65.0 MB in the beginning and 116.3 MB in the end (delta: -51.3 MB). Peak memory consumption was 52.2 MB. Max. memory is 16.1 GB. [2021-10-21 20:06:11,069 INFO L168 Benchmark]: CDTParser took 0.46 ms. Allocated memory is still 96.5 MB. Free memory is still 49.7 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-21 20:06:11,071 INFO L168 Benchmark]: CACSL2BoogieTranslator took 772.85 ms. Allocated memory was 96.5 MB in the beginning and 130.0 MB in the end (delta: 33.6 MB). Free memory was 64.8 MB in the beginning and 98.2 MB in the end (delta: -33.3 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-10-21 20:06:11,072 INFO L168 Benchmark]: Boogie Procedure Inliner took 122.88 ms. Allocated memory is still 130.0 MB. Free memory was 98.2 MB in the beginning and 95.0 MB in the end (delta: 3.1 MB). There was no memory consumed. Max. memory is 16.1 GB. [2021-10-21 20:06:11,073 INFO L168 Benchmark]: Boogie Preprocessor took 93.36 ms. Allocated memory is still 130.0 MB. Free memory was 95.0 MB in the beginning and 92.4 MB in the end (delta: 2.6 MB). Peak memory consumption was 6.3 MB. Max. memory is 16.1 GB. [2021-10-21 20:06:11,073 INFO L168 Benchmark]: RCFGBuilder took 1331.15 ms. Allocated memory is still 130.0 MB. Free memory was 92.4 MB in the beginning and 94.4 MB in the end (delta: -2.0 MB). Peak memory consumption was 34.9 MB. Max. memory is 16.1 GB. [2021-10-21 20:06:11,074 INFO L168 Benchmark]: TraceAbstraction took 10056.25 ms. Allocated memory was 130.0 MB in the beginning and 199.2 MB in the end (delta: 69.2 MB). Free memory was 93.7 MB in the beginning and 125.9 MB in the end (delta: -32.2 MB). Peak memory consumption was 89.4 MB. Max. memory is 16.1 GB. [2021-10-21 20:06:11,075 INFO L168 Benchmark]: Witness Printer took 252.59 ms. Allocated memory is still 199.2 MB. Free memory was 124.9 MB in the beginning and 116.3 MB in the end (delta: 8.5 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-21 20:06:11,079 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.46 ms. Allocated memory is still 96.5 MB. Free memory is still 49.7 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 772.85 ms. Allocated memory was 96.5 MB in the beginning and 130.0 MB in the end (delta: 33.6 MB). Free memory was 64.8 MB in the beginning and 98.2 MB in the end (delta: -33.3 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 122.88 ms. Allocated memory is still 130.0 MB. Free memory was 98.2 MB in the beginning and 95.0 MB in the end (delta: 3.1 MB). There was no memory consumed. Max. memory is 16.1 GB. * Boogie Preprocessor took 93.36 ms. Allocated memory is still 130.0 MB. Free memory was 95.0 MB in the beginning and 92.4 MB in the end (delta: 2.6 MB). Peak memory consumption was 6.3 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1331.15 ms. Allocated memory is still 130.0 MB. Free memory was 92.4 MB in the beginning and 94.4 MB in the end (delta: -2.0 MB). Peak memory consumption was 34.9 MB. Max. memory is 16.1 GB. * TraceAbstraction took 10056.25 ms. Allocated memory was 130.0 MB in the beginning and 199.2 MB in the end (delta: 69.2 MB). Free memory was 93.7 MB in the beginning and 125.9 MB in the end (delta: -32.2 MB). Peak memory consumption was 89.4 MB. Max. memory is 16.1 GB. * Witness Printer took 252.59 ms. Allocated memory is still 199.2 MB. Free memory was 124.9 MB in the beginning and 116.3 MB in the end (delta: 8.5 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0ms ErrorAutomatonConstructionTimeTotal, 0.0ms FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0ms ErrorAutomatonConstructionTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 93 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 9874.8ms, OverallIterations: 10, TraceHistogramMax: 1, EmptinessCheckTime: 41.8ms, AutomataDifference: 1574.5ms, DeadEndRemovalTime: 0.0ms, HoareAnnotationTime: 6041.6ms, InitialAbstractionConstructionTime: 17.1ms, PartialOrderReductionTime: 0.0ms, HoareTripleCheckerStatistics: 890 SDtfs, 1402 SDslu, 1485 SDs, 0 SdLazy, 206 SolverSat, 33 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 487.6ms Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 78 GetRequests, 28 SyntacticMatches, 0 SemanticMatches, 50 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 36 ImplicationChecksByTransitivity, 408.4ms Time, 0.0ms BasicInterpolantAutomatonTime, BiggestAbstraction: size=202occurred in iteration=8, InterpolantAutomatonStates: 58, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0ms DumpTime, AutomataMinimizationStatistics: 282.8ms AutomataMinimizationTime, 10 MinimizatonAttempts, 980 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0ms HoareAnnotationTime, 40 LocationsWithAnnotation, 40 PreInvPairs, 189 NumberOfFragments, 1237 HoareAnnotationTreeSize, 40 FomulaSimplifications, 289691 FormulaSimplificationTreeSizeReduction, 1694.0ms HoareSimplificationTime, 40 FomulaSimplificationsInter, 20183 FormulaSimplificationTreeSizeReductionInter, 4319.4ms HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 88.1ms SsaConstructionTime, 524.6ms SatisfiabilityAnalysisTime, 897.1ms InterpolantComputationTime, 287 NumberOfCodeBlocks, 287 NumberOfCodeBlocksAsserted, 10 NumberOfCheckSat, 277 ConstructedInterpolants, 0 QuantifiedInterpolants, 494 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 10 InterpolantComputations, 10 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1 - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 537]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && !(0 == systemActive)) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && \result == 0) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) - InvariantResult [Line: 185]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && !(0 == systemActive) - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 175]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: ((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 164]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 237]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-10-21 20:06:11,220 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_f0165b43-ef23-4a8a-ab29-a6fe914dc1a7/bin/uautomizer-j4sWxH34Be/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...