./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e943c265 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 4c4adbf609ddd472cb6a462753c6f5cc9af64c97af02da4060f4102700285790 ............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-e943c26 [2021-10-21 20:10:09,421 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-21 20:10:09,424 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-21 20:10:09,458 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-21 20:10:09,459 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-21 20:10:09,460 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-21 20:10:09,462 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-21 20:10:09,464 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-21 20:10:09,467 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-21 20:10:09,468 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-21 20:10:09,469 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-21 20:10:09,471 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-21 20:10:09,472 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-21 20:10:09,473 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-21 20:10:09,475 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-21 20:10:09,476 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-21 20:10:09,477 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-21 20:10:09,479 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-21 20:10:09,481 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-21 20:10:09,483 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-21 20:10:09,485 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-21 20:10:09,487 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-21 20:10:09,489 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-21 20:10:09,490 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-21 20:10:09,494 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-21 20:10:09,494 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-21 20:10:09,495 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-21 20:10:09,496 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-21 20:10:09,497 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-21 20:10:09,498 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-21 20:10:09,498 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-21 20:10:09,500 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-21 20:10:09,501 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-21 20:10:09,502 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-21 20:10:09,503 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-21 20:10:09,504 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-21 20:10:09,505 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-21 20:10:09,505 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-21 20:10:09,506 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-21 20:10:09,507 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-21 20:10:09,508 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-21 20:10:09,511 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-21 20:10:09,556 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-21 20:10:09,557 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-21 20:10:09,557 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-21 20:10:09,558 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-21 20:10:09,563 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-21 20:10:09,564 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-21 20:10:09,564 INFO L138 SettingsManager]: * Use SBE=true [2021-10-21 20:10:09,564 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-21 20:10:09,565 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-21 20:10:09,565 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-21 20:10:09,566 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-21 20:10:09,566 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-21 20:10:09,566 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-21 20:10:09,567 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-21 20:10:09,567 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-21 20:10:09,567 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-21 20:10:09,567 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-21 20:10:09,567 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-21 20:10:09,568 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-21 20:10:09,568 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-21 20:10:09,568 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-21 20:10:09,568 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-21 20:10:09,569 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-21 20:10:09,569 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-21 20:10:09,570 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-21 20:10:09,570 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-21 20:10:09,570 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-21 20:10:09,570 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-21 20:10:09,571 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-21 20:10:09,572 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-21 20:10:09,572 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-21 20:10:09,573 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-21 20:10:09,573 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 4c4adbf609ddd472cb6a462753c6f5cc9af64c97af02da4060f4102700285790 [2021-10-21 20:10:09,835 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-21 20:10:09,861 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-21 20:10:09,865 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-21 20:10:09,866 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-21 20:10:09,867 INFO L275 PluginConnector]: CDTParser initialized [2021-10-21 20:10:09,868 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c [2021-10-21 20:10:09,932 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/data/3ac692158/ade74b465e094ddb9bcbffc838dca2f3/FLAG313aab41e [2021-10-21 20:10:10,491 INFO L306 CDTParser]: Found 1 translation units. [2021-10-21 20:10:10,495 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c [2021-10-21 20:10:10,511 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/data/3ac692158/ade74b465e094ddb9bcbffc838dca2f3/FLAG313aab41e [2021-10-21 20:10:10,816 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/data/3ac692158/ade74b465e094ddb9bcbffc838dca2f3 [2021-10-21 20:10:10,819 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-21 20:10:10,820 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-21 20:10:10,822 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-21 20:10:10,822 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-21 20:10:10,836 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-21 20:10:10,837 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.10 08:10:10" (1/1) ... [2021-10-21 20:10:10,838 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@11cb1c60 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:10, skipping insertion in model container [2021-10-21 20:10:10,839 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.10 08:10:10" (1/1) ... [2021-10-21 20:10:10,846 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-21 20:10:10,914 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-21 20:10:11,160 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c[8617,8630] [2021-10-21 20:10:11,263 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-21 20:10:11,275 INFO L203 MainTranslator]: Completed pre-run [2021-10-21 20:10:11,349 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c[8617,8630] [2021-10-21 20:10:11,377 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-21 20:10:11,407 INFO L208 MainTranslator]: Completed translation [2021-10-21 20:10:11,408 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11 WrapperNode [2021-10-21 20:10:11,409 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-21 20:10:11,410 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-21 20:10:11,410 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-21 20:10:11,411 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-21 20:10:11,419 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,446 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,494 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-21 20:10:11,495 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-21 20:10:11,495 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-21 20:10:11,495 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-21 20:10:11,504 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,504 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,510 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,510 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,539 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,554 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,557 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,562 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-21 20:10:11,563 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-21 20:10:11,563 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-21 20:10:11,563 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-21 20:10:11,564 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (1/1) ... [2021-10-21 20:10:11,578 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-21 20:10:11,591 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/z3 [2021-10-21 20:10:11,608 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-21 20:10:11,611 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-21 20:10:11,643 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-21 20:10:11,643 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-21 20:10:11,643 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-21 20:10:11,644 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-21 20:10:12,832 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-21 20:10:12,833 INFO L299 CfgBuilder]: Removed 198 assume(true) statements. [2021-10-21 20:10:12,835 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.10 08:10:12 BoogieIcfgContainer [2021-10-21 20:10:12,836 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-21 20:10:12,840 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-21 20:10:12,840 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-21 20:10:12,844 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-21 20:10:12,845 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.10 08:10:10" (1/3) ... [2021-10-21 20:10:12,850 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22271372 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.10 08:10:12, skipping insertion in model container [2021-10-21 20:10:12,850 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.10 08:10:11" (2/3) ... [2021-10-21 20:10:12,851 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22271372 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.10 08:10:12, skipping insertion in model container [2021-10-21 20:10:12,851 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.10 08:10:12" (3/3) ... [2021-10-21 20:10:12,853 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product45.cil.c [2021-10-21 20:10:12,859 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-21 20:10:12,860 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-21 20:10:12,914 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-21 20:10:12,920 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-21 20:10:12,920 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-21 20:10:12,940 INFO L276 IsEmpty]: Start isEmpty. Operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:12,947 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-21 20:10:12,947 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:12,948 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:12,949 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:12,956 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:12,962 INFO L82 PathProgramCache]: Analyzing trace with hash 1981233963, now seen corresponding path program 1 times [2021-10-21 20:10:12,973 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:12,974 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1363468895] [2021-10-21 20:10:12,974 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:12,975 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:13,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:13,228 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:13,228 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:13,229 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1363468895] [2021-10-21 20:10:13,230 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1363468895] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:13,230 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:13,230 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-21 20:10:13,232 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [3295529] [2021-10-21 20:10:13,238 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-21 20:10:13,238 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:13,266 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-21 20:10:13,267 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-21 20:10:13,270 INFO L87 Difference]: Start difference. First operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:13,341 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:13,341 INFO L93 Difference]: Finished difference Result 264 states and 395 transitions. [2021-10-21 20:10:13,341 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-21 20:10:13,343 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-21 20:10:13,343 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:13,359 INFO L225 Difference]: With dead ends: 264 [2021-10-21 20:10:13,359 INFO L226 Difference]: Without dead ends: 131 [2021-10-21 20:10:13,363 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0ms TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-21 20:10:13,385 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2021-10-21 20:10:13,428 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 131. [2021-10-21 20:10:13,432 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 131 states, 128 states have (on average 1.4765625) internal successors, (189), 130 states have internal predecessors, (189), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:13,437 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 131 states to 131 states and 189 transitions. [2021-10-21 20:10:13,439 INFO L78 Accepts]: Start accepts. Automaton has 131 states and 189 transitions. Word has length 18 [2021-10-21 20:10:13,439 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:13,441 INFO L470 AbstractCegarLoop]: Abstraction has 131 states and 189 transitions. [2021-10-21 20:10:13,441 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:13,441 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states and 189 transitions. [2021-10-21 20:10:13,443 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-21 20:10:13,443 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:13,443 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:13,443 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-21 20:10:13,444 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:13,445 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:13,445 INFO L82 PathProgramCache]: Analyzing trace with hash 1070203210, now seen corresponding path program 1 times [2021-10-21 20:10:13,445 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:13,446 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [227883235] [2021-10-21 20:10:13,446 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:13,446 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:13,499 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:13,579 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:13,579 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:13,580 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [227883235] [2021-10-21 20:10:13,580 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [227883235] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:13,580 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:13,581 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-21 20:10:13,581 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1044476212] [2021-10-21 20:10:13,582 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-21 20:10:13,583 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:13,586 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-21 20:10:13,586 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:10:13,586 INFO L87 Difference]: Start difference. First operand 131 states and 189 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:13,601 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:13,601 INFO L93 Difference]: Finished difference Result 131 states and 189 transitions. [2021-10-21 20:10:13,602 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-21 20:10:13,602 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-21 20:10:13,603 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:13,603 INFO L225 Difference]: With dead ends: 131 [2021-10-21 20:10:13,604 INFO L226 Difference]: Without dead ends: 53 [2021-10-21 20:10:13,605 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 5.9ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:10:13,605 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-21 20:10:13,610 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-21 20:10:13,610 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4615384615384615) internal successors, (76), 52 states have internal predecessors, (76), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:13,611 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 76 transitions. [2021-10-21 20:10:13,611 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 76 transitions. Word has length 19 [2021-10-21 20:10:13,612 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:13,612 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 76 transitions. [2021-10-21 20:10:13,612 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:13,612 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 76 transitions. [2021-10-21 20:10:13,613 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-21 20:10:13,614 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:13,614 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:13,614 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-21 20:10:13,614 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:13,615 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:13,615 INFO L82 PathProgramCache]: Analyzing trace with hash 1049766460, now seen corresponding path program 1 times [2021-10-21 20:10:13,616 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:13,616 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1882135022] [2021-10-21 20:10:13,616 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:13,617 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:13,658 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:13,764 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:13,765 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:13,765 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1882135022] [2021-10-21 20:10:13,765 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1882135022] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:13,766 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:13,766 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:10:13,766 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2007598105] [2021-10-21 20:10:13,767 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-21 20:10:13,767 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:13,768 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-21 20:10:13,768 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-10-21 20:10:13,768 INFO L87 Difference]: Start difference. First operand 53 states and 76 transitions. Second operand has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:13,998 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:13,999 INFO L93 Difference]: Finished difference Result 100 states and 146 transitions. [2021-10-21 20:10:14,004 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-21 20:10:14,004 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-21 20:10:14,005 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:14,005 INFO L225 Difference]: With dead ends: 100 [2021-10-21 20:10:14,006 INFO L226 Difference]: Without dead ends: 53 [2021-10-21 20:10:14,009 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 44.8ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:10:14,010 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-21 20:10:14,016 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-21 20:10:14,019 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4423076923076923) internal successors, (75), 52 states have internal predecessors, (75), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,019 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 75 transitions. [2021-10-21 20:10:14,020 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 75 transitions. Word has length 24 [2021-10-21 20:10:14,020 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:14,020 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 75 transitions. [2021-10-21 20:10:14,020 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,021 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 75 transitions. [2021-10-21 20:10:14,022 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-10-21 20:10:14,023 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:14,023 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:14,024 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-21 20:10:14,024 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:14,025 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:14,025 INFO L82 PathProgramCache]: Analyzing trace with hash -927374502, now seen corresponding path program 1 times [2021-10-21 20:10:14,025 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:14,026 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [334430272] [2021-10-21 20:10:14,026 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:14,027 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:14,075 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:14,125 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:14,125 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:14,125 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [334430272] [2021-10-21 20:10:14,126 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [334430272] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:14,126 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:14,126 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-21 20:10:14,126 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1438460629] [2021-10-21 20:10:14,127 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-21 20:10:14,127 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:14,128 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-21 20:10:14,128 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:10:14,128 INFO L87 Difference]: Start difference. First operand 53 states and 75 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,155 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:14,155 INFO L93 Difference]: Finished difference Result 123 states and 177 transitions. [2021-10-21 20:10:14,156 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-21 20:10:14,156 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-10-21 20:10:14,156 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:14,157 INFO L225 Difference]: With dead ends: 123 [2021-10-21 20:10:14,157 INFO L226 Difference]: Without dead ends: 76 [2021-10-21 20:10:14,158 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 2.2ms TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-21 20:10:14,158 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2021-10-21 20:10:14,166 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 74. [2021-10-21 20:10:14,167 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 73 states have (on average 1.4246575342465753) internal successors, (104), 73 states have internal predecessors, (104), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,167 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 104 transitions. [2021-10-21 20:10:14,167 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 104 transitions. Word has length 26 [2021-10-21 20:10:14,168 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:14,168 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 104 transitions. [2021-10-21 20:10:14,168 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,168 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 104 transitions. [2021-10-21 20:10:14,169 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-21 20:10:14,170 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:14,170 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:14,170 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-21 20:10:14,171 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:14,171 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:14,171 INFO L82 PathProgramCache]: Analyzing trace with hash -44236562, now seen corresponding path program 1 times [2021-10-21 20:10:14,172 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:14,172 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1662187285] [2021-10-21 20:10:14,172 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:14,172 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:14,197 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:14,265 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:14,265 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:14,265 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1662187285] [2021-10-21 20:10:14,266 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1662187285] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:14,266 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:14,266 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-21 20:10:14,266 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1695361745] [2021-10-21 20:10:14,267 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:10:14,267 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:14,268 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:10:14,268 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:14,268 INFO L87 Difference]: Start difference. First operand 74 states and 104 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,370 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:14,371 INFO L93 Difference]: Finished difference Result 373 states and 541 transitions. [2021-10-21 20:10:14,371 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-21 20:10:14,372 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-21 20:10:14,372 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:14,375 INFO L225 Difference]: With dead ends: 373 [2021-10-21 20:10:14,375 INFO L226 Difference]: Without dead ends: 305 [2021-10-21 20:10:14,376 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 27.6ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:10:14,377 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 305 states. [2021-10-21 20:10:14,392 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 305 to 121. [2021-10-21 20:10:14,393 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 120 states have (on average 1.3916666666666666) internal successors, (167), 120 states have internal predecessors, (167), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,393 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 167 transitions. [2021-10-21 20:10:14,394 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 167 transitions. Word has length 32 [2021-10-21 20:10:14,394 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:14,394 INFO L470 AbstractCegarLoop]: Abstraction has 121 states and 167 transitions. [2021-10-21 20:10:14,395 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,395 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 167 transitions. [2021-10-21 20:10:14,396 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-21 20:10:14,396 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:14,396 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:14,397 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-21 20:10:14,397 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:14,398 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:14,398 INFO L82 PathProgramCache]: Analyzing trace with hash -1115283092, now seen corresponding path program 1 times [2021-10-21 20:10:14,398 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:14,398 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1547525312] [2021-10-21 20:10:14,399 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:14,399 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:14,419 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:14,453 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:14,454 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:14,454 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1547525312] [2021-10-21 20:10:14,454 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1547525312] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:14,455 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:14,455 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-21 20:10:14,455 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [155060663] [2021-10-21 20:10:14,456 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-21 20:10:14,456 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:14,457 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-21 20:10:14,457 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-21 20:10:14,457 INFO L87 Difference]: Start difference. First operand 121 states and 167 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,567 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:14,567 INFO L93 Difference]: Finished difference Result 250 states and 352 transitions. [2021-10-21 20:10:14,568 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-21 20:10:14,568 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-21 20:10:14,568 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:14,570 INFO L225 Difference]: With dead ends: 250 [2021-10-21 20:10:14,570 INFO L226 Difference]: Without dead ends: 182 [2021-10-21 20:10:14,571 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 5.2ms TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-21 20:10:14,571 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2021-10-21 20:10:14,587 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 179. [2021-10-21 20:10:14,587 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3932584269662922) internal successors, (248), 178 states have internal predecessors, (248), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,588 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 248 transitions. [2021-10-21 20:10:14,589 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 248 transitions. Word has length 33 [2021-10-21 20:10:14,589 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:14,589 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 248 transitions. [2021-10-21 20:10:14,589 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,590 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 248 transitions. [2021-10-21 20:10:14,591 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-21 20:10:14,591 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:14,591 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:14,591 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-21 20:10:14,592 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:14,592 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:14,592 INFO L82 PathProgramCache]: Analyzing trace with hash -2126400342, now seen corresponding path program 1 times [2021-10-21 20:10:14,593 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:14,593 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1303849022] [2021-10-21 20:10:14,593 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:14,594 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:14,611 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:14,643 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:14,643 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:14,644 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1303849022] [2021-10-21 20:10:14,644 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1303849022] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:14,644 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:14,644 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-21 20:10:14,645 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [220311392] [2021-10-21 20:10:14,645 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-21 20:10:14,645 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:14,646 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-21 20:10:14,646 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-21 20:10:14,646 INFO L87 Difference]: Start difference. First operand 179 states and 248 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,698 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:14,699 INFO L93 Difference]: Finished difference Result 497 states and 700 transitions. [2021-10-21 20:10:14,699 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-21 20:10:14,699 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-21 20:10:14,700 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:14,702 INFO L225 Difference]: With dead ends: 497 [2021-10-21 20:10:14,702 INFO L226 Difference]: Without dead ends: 370 [2021-10-21 20:10:14,703 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 8.4ms TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:14,704 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 370 states. [2021-10-21 20:10:14,719 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 370 to 179. [2021-10-21 20:10:14,720 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3820224719101124) internal successors, (246), 178 states have internal predecessors, (246), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,721 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 246 transitions. [2021-10-21 20:10:14,721 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 246 transitions. Word has length 33 [2021-10-21 20:10:14,722 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:14,722 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 246 transitions. [2021-10-21 20:10:14,722 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,722 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 246 transitions. [2021-10-21 20:10:14,723 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-21 20:10:14,724 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:14,724 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:14,724 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-21 20:10:14,724 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:14,725 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:14,725 INFO L82 PathProgramCache]: Analyzing trace with hash -1868234904, now seen corresponding path program 1 times [2021-10-21 20:10:14,725 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:14,726 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1622308090] [2021-10-21 20:10:14,726 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:14,726 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:14,748 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:14,786 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:14,787 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:14,787 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1622308090] [2021-10-21 20:10:14,787 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1622308090] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:14,787 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:14,788 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:10:14,788 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1705281151] [2021-10-21 20:10:14,788 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:10:14,789 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:14,789 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:10:14,790 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:14,790 INFO L87 Difference]: Start difference. First operand 179 states and 246 transitions. Second operand has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,876 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:14,876 INFO L93 Difference]: Finished difference Result 540 states and 754 transitions. [2021-10-21 20:10:14,877 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-21 20:10:14,877 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-21 20:10:14,878 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:14,881 INFO L225 Difference]: With dead ends: 540 [2021-10-21 20:10:14,882 INFO L226 Difference]: Without dead ends: 367 [2021-10-21 20:10:14,882 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 19.4ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-21 20:10:14,883 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 367 states. [2021-10-21 20:10:14,904 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 367 to 188. [2021-10-21 20:10:14,905 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 188 states, 187 states have (on average 1.3529411764705883) internal successors, (253), 187 states have internal predecessors, (253), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,906 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 188 states to 188 states and 253 transitions. [2021-10-21 20:10:14,906 INFO L78 Accepts]: Start accepts. Automaton has 188 states and 253 transitions. Word has length 33 [2021-10-21 20:10:14,907 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:14,907 INFO L470 AbstractCegarLoop]: Abstraction has 188 states and 253 transitions. [2021-10-21 20:10:14,907 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:14,908 INFO L276 IsEmpty]: Start isEmpty. Operand 188 states and 253 transitions. [2021-10-21 20:10:14,909 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-21 20:10:14,909 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:14,909 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:14,910 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-21 20:10:14,910 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:14,911 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:14,911 INFO L82 PathProgramCache]: Analyzing trace with hash 941421312, now seen corresponding path program 1 times [2021-10-21 20:10:14,911 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:14,911 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [428755184] [2021-10-21 20:10:14,912 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:14,912 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:14,936 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:15,003 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:15,004 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:15,004 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [428755184] [2021-10-21 20:10:15,005 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [428755184] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:15,005 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:15,006 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:10:15,006 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1421139481] [2021-10-21 20:10:15,007 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-21 20:10:15,007 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:15,007 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-21 20:10:15,009 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-21 20:10:15,009 INFO L87 Difference]: Start difference. First operand 188 states and 253 transitions. Second operand has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:15,302 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:15,303 INFO L93 Difference]: Finished difference Result 1177 states and 1553 transitions. [2021-10-21 20:10:15,304 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-21 20:10:15,305 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-21 20:10:15,305 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:15,316 INFO L225 Difference]: With dead ends: 1177 [2021-10-21 20:10:15,316 INFO L226 Difference]: Without dead ends: 995 [2021-10-21 20:10:15,321 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 89.2ms TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-21 20:10:15,322 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 995 states. [2021-10-21 20:10:15,366 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 995 to 356. [2021-10-21 20:10:15,369 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 356 states, 355 states have (on average 1.3295774647887324) internal successors, (472), 355 states have internal predecessors, (472), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:15,371 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 356 states to 356 states and 472 transitions. [2021-10-21 20:10:15,371 INFO L78 Accepts]: Start accepts. Automaton has 356 states and 472 transitions. Word has length 36 [2021-10-21 20:10:15,373 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:15,374 INFO L470 AbstractCegarLoop]: Abstraction has 356 states and 472 transitions. [2021-10-21 20:10:15,374 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:15,375 INFO L276 IsEmpty]: Start isEmpty. Operand 356 states and 472 transitions. [2021-10-21 20:10:15,379 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-21 20:10:15,379 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:15,380 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:15,380 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-21 20:10:15,381 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:15,381 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:15,381 INFO L82 PathProgramCache]: Analyzing trace with hash 1621479682, now seen corresponding path program 1 times [2021-10-21 20:10:15,381 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:15,383 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [368063693] [2021-10-21 20:10:15,383 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:15,384 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:15,421 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:15,473 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:15,474 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:15,474 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [368063693] [2021-10-21 20:10:15,474 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [368063693] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:15,475 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:15,475 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:10:15,475 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [634569986] [2021-10-21 20:10:15,477 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:10:15,477 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:15,478 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:10:15,478 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:15,478 INFO L87 Difference]: Start difference. First operand 356 states and 472 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:15,724 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:15,724 INFO L93 Difference]: Finished difference Result 930 states and 1259 transitions. [2021-10-21 20:10:15,725 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-21 20:10:15,725 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-21 20:10:15,725 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:15,729 INFO L225 Difference]: With dead ends: 930 [2021-10-21 20:10:15,730 INFO L226 Difference]: Without dead ends: 580 [2021-10-21 20:10:15,731 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 29.6ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:10:15,732 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 580 states. [2021-10-21 20:10:15,771 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 580 to 302. [2021-10-21 20:10:15,772 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.2923588039867109) internal successors, (389), 301 states have internal predecessors, (389), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:15,774 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 389 transitions. [2021-10-21 20:10:15,774 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 389 transitions. Word has length 36 [2021-10-21 20:10:15,775 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:15,775 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 389 transitions. [2021-10-21 20:10:15,775 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:15,775 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 389 transitions. [2021-10-21 20:10:15,777 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2021-10-21 20:10:15,778 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:15,778 INFO L512 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:15,778 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-21 20:10:15,779 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:15,779 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:15,779 INFO L82 PathProgramCache]: Analyzing trace with hash 886341574, now seen corresponding path program 1 times [2021-10-21 20:10:15,780 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:15,782 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1098960890] [2021-10-21 20:10:15,782 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:15,783 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:15,815 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:15,875 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:15,875 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:15,876 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1098960890] [2021-10-21 20:10:15,876 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1098960890] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:15,876 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:15,876 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-21 20:10:15,876 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [105689743] [2021-10-21 20:10:15,877 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-21 20:10:15,877 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:15,878 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-21 20:10:15,879 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-21 20:10:15,879 INFO L87 Difference]: Start difference. First operand 302 states and 389 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,168 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:16,169 INFO L93 Difference]: Finished difference Result 889 states and 1138 transitions. [2021-10-21 20:10:16,169 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-10-21 20:10:16,169 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 37 [2021-10-21 20:10:16,170 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:16,174 INFO L225 Difference]: With dead ends: 889 [2021-10-21 20:10:16,174 INFO L226 Difference]: Without dead ends: 593 [2021-10-21 20:10:16,175 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 97.8ms TimeCoverageRelationStatistics Valid=65, Invalid=117, Unknown=0, NotChecked=0, Total=182 [2021-10-21 20:10:16,176 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 593 states. [2021-10-21 20:10:16,212 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 593 to 282. [2021-10-21 20:10:16,213 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2526690391459074) internal successors, (352), 281 states have internal predecessors, (352), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,214 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 352 transitions. [2021-10-21 20:10:16,215 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 352 transitions. Word has length 37 [2021-10-21 20:10:16,215 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:16,215 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 352 transitions. [2021-10-21 20:10:16,215 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,215 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 352 transitions. [2021-10-21 20:10:16,216 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-21 20:10:16,216 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:16,217 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:16,217 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-21 20:10:16,217 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:16,218 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:16,218 INFO L82 PathProgramCache]: Analyzing trace with hash 2123545264, now seen corresponding path program 1 times [2021-10-21 20:10:16,218 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:16,218 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2030329208] [2021-10-21 20:10:16,218 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:16,219 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:16,235 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:16,297 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-21 20:10:16,298 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:16,298 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2030329208] [2021-10-21 20:10:16,299 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2030329208] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:16,303 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:16,303 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:10:16,304 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1968538757] [2021-10-21 20:10:16,304 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:10:16,304 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:16,305 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:10:16,305 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:16,305 INFO L87 Difference]: Start difference. First operand 282 states and 352 transitions. Second operand has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,378 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:16,378 INFO L93 Difference]: Finished difference Result 653 states and 819 transitions. [2021-10-21 20:10:16,378 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-21 20:10:16,379 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-21 20:10:16,380 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:16,382 INFO L225 Difference]: With dead ends: 653 [2021-10-21 20:10:16,382 INFO L226 Difference]: Without dead ends: 377 [2021-10-21 20:10:16,383 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 22.6ms TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-21 20:10:16,383 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 377 states. [2021-10-21 20:10:16,418 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 377 to 282. [2021-10-21 20:10:16,419 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2384341637010676) internal successors, (348), 281 states have internal predecessors, (348), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,421 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 348 transitions. [2021-10-21 20:10:16,421 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 348 transitions. Word has length 53 [2021-10-21 20:10:16,422 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:16,423 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 348 transitions. [2021-10-21 20:10:16,423 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,424 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 348 transitions. [2021-10-21 20:10:16,425 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-21 20:10:16,425 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:16,425 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:16,425 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-10-21 20:10:16,426 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:16,426 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:16,426 INFO L82 PathProgramCache]: Analyzing trace with hash 2051158706, now seen corresponding path program 1 times [2021-10-21 20:10:16,426 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:16,427 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [333347530] [2021-10-21 20:10:16,427 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:16,427 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:16,465 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:16,490 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-21 20:10:16,491 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:16,491 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [333347530] [2021-10-21 20:10:16,491 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [333347530] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:16,491 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:16,492 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-21 20:10:16,492 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [234350637] [2021-10-21 20:10:16,492 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-21 20:10:16,492 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:16,493 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-21 20:10:16,493 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-21 20:10:16,493 INFO L87 Difference]: Start difference. First operand 282 states and 348 transitions. Second operand has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,564 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:16,564 INFO L93 Difference]: Finished difference Result 600 states and 751 transitions. [2021-10-21 20:10:16,564 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-21 20:10:16,565 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-21 20:10:16,565 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:16,567 INFO L225 Difference]: With dead ends: 600 [2021-10-21 20:10:16,567 INFO L226 Difference]: Without dead ends: 324 [2021-10-21 20:10:16,568 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 9.3ms TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:16,568 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 324 states. [2021-10-21 20:10:16,596 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 324 to 240. [2021-10-21 20:10:16,596 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2426778242677825) internal successors, (297), 239 states have internal predecessors, (297), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,597 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 297 transitions. [2021-10-21 20:10:16,598 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 297 transitions. Word has length 53 [2021-10-21 20:10:16,598 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:16,598 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 297 transitions. [2021-10-21 20:10:16,598 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,599 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 297 transitions. [2021-10-21 20:10:16,599 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2021-10-21 20:10:16,599 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:16,600 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:16,600 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-10-21 20:10:16,600 INFO L402 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:16,601 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:16,601 INFO L82 PathProgramCache]: Analyzing trace with hash 1485859958, now seen corresponding path program 1 times [2021-10-21 20:10:16,601 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:16,601 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [526208903] [2021-10-21 20:10:16,601 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:16,602 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:16,616 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:16,649 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-21 20:10:16,650 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:16,650 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [526208903] [2021-10-21 20:10:16,650 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [526208903] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:16,650 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:16,650 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-21 20:10:16,651 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1257126335] [2021-10-21 20:10:16,651 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:10:16,651 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:16,652 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:10:16,652 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:16,652 INFO L87 Difference]: Start difference. First operand 240 states and 297 transitions. Second operand has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,762 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:16,762 INFO L93 Difference]: Finished difference Result 612 states and 756 transitions. [2021-10-21 20:10:16,762 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-21 20:10:16,763 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 54 [2021-10-21 20:10:16,763 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:16,765 INFO L225 Difference]: With dead ends: 612 [2021-10-21 20:10:16,765 INFO L226 Difference]: Without dead ends: 378 [2021-10-21 20:10:16,766 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 24.3ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:10:16,767 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 378 states. [2021-10-21 20:10:16,796 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 378 to 240. [2021-10-21 20:10:16,796 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2259414225941423) internal successors, (293), 239 states have internal predecessors, (293), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,797 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 293 transitions. [2021-10-21 20:10:16,798 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 293 transitions. Word has length 54 [2021-10-21 20:10:16,798 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:16,798 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 293 transitions. [2021-10-21 20:10:16,798 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:16,799 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 293 transitions. [2021-10-21 20:10:16,799 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-21 20:10:16,799 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:16,800 INFO L512 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:16,800 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2021-10-21 20:10:16,800 INFO L402 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:16,800 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:16,801 INFO L82 PathProgramCache]: Analyzing trace with hash 675182755, now seen corresponding path program 1 times [2021-10-21 20:10:16,801 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:16,801 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1154110688] [2021-10-21 20:10:16,801 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:16,801 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:16,818 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:16,862 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-10-21 20:10:16,862 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:16,862 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1154110688] [2021-10-21 20:10:16,862 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1154110688] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:16,862 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:16,863 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:10:16,863 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1583895023] [2021-10-21 20:10:16,863 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-21 20:10:16,863 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:16,864 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-21 20:10:16,864 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-21 20:10:16,864 INFO L87 Difference]: Start difference. First operand 240 states and 293 transitions. Second operand has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,031 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:17,031 INFO L93 Difference]: Finished difference Result 571 states and 706 transitions. [2021-10-21 20:10:17,031 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-10-21 20:10:17,031 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-21 20:10:17,032 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:17,034 INFO L225 Difference]: With dead ends: 571 [2021-10-21 20:10:17,034 INFO L226 Difference]: Without dead ends: 387 [2021-10-21 20:10:17,036 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 47.7ms TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-10-21 20:10:17,037 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 387 states. [2021-10-21 20:10:17,067 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 387 to 240. [2021-10-21 20:10:17,068 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2217573221757323) internal successors, (292), 239 states have internal predecessors, (292), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,069 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 292 transitions. [2021-10-21 20:10:17,069 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 292 transitions. Word has length 56 [2021-10-21 20:10:17,070 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:17,070 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 292 transitions. [2021-10-21 20:10:17,070 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,070 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 292 transitions. [2021-10-21 20:10:17,071 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2021-10-21 20:10:17,071 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:17,071 INFO L512 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:17,072 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2021-10-21 20:10:17,072 INFO L402 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:17,072 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:17,073 INFO L82 PathProgramCache]: Analyzing trace with hash 666594362, now seen corresponding path program 1 times [2021-10-21 20:10:17,073 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:17,075 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [208550932] [2021-10-21 20:10:17,075 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:17,075 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:17,093 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:17,164 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 30 proven. 0 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2021-10-21 20:10:17,164 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:17,164 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [208550932] [2021-10-21 20:10:17,166 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [208550932] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:17,167 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:17,167 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-10-21 20:10:17,167 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1945391632] [2021-10-21 20:10:17,168 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-10-21 20:10:17,168 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:17,168 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-10-21 20:10:17,168 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:10:17,169 INFO L87 Difference]: Start difference. First operand 240 states and 292 transitions. Second operand has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,479 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:17,479 INFO L93 Difference]: Finished difference Result 609 states and 743 transitions. [2021-10-21 20:10:17,480 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-10-21 20:10:17,480 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 77 [2021-10-21 20:10:17,480 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:17,483 INFO L225 Difference]: With dead ends: 609 [2021-10-21 20:10:17,483 INFO L226 Difference]: Without dead ends: 425 [2021-10-21 20:10:17,484 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 31 ImplicationChecksByTransitivity, 131.7ms TimeCoverageRelationStatistics Valid=104, Invalid=202, Unknown=0, NotChecked=0, Total=306 [2021-10-21 20:10:17,484 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 425 states. [2021-10-21 20:10:17,522 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 425 to 232. [2021-10-21 20:10:17,523 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 232 states, 231 states have (on average 1.2207792207792207) internal successors, (282), 231 states have internal predecessors, (282), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,524 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 232 states to 232 states and 282 transitions. [2021-10-21 20:10:17,524 INFO L78 Accepts]: Start accepts. Automaton has 232 states and 282 transitions. Word has length 77 [2021-10-21 20:10:17,524 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:17,524 INFO L470 AbstractCegarLoop]: Abstraction has 232 states and 282 transitions. [2021-10-21 20:10:17,525 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,525 INFO L276 IsEmpty]: Start isEmpty. Operand 232 states and 282 transitions. [2021-10-21 20:10:17,526 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2021-10-21 20:10:17,526 INFO L504 BasicCegarLoop]: Found error trace [2021-10-21 20:10:17,526 INFO L512 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-21 20:10:17,526 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15 [2021-10-21 20:10:17,527 INFO L402 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-21 20:10:17,527 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-21 20:10:17,527 INFO L82 PathProgramCache]: Analyzing trace with hash 1176968629, now seen corresponding path program 1 times [2021-10-21 20:10:17,527 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-21 20:10:17,527 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [417281309] [2021-10-21 20:10:17,528 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-21 20:10:17,528 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-21 20:10:17,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-21 20:10:17,595 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2021-10-21 20:10:17,595 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-21 20:10:17,596 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [417281309] [2021-10-21 20:10:17,596 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [417281309] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-21 20:10:17,596 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-21 20:10:17,596 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-21 20:10:17,596 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [780164158] [2021-10-21 20:10:17,597 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-21 20:10:17,597 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-21 20:10:17,598 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-21 20:10:17,598 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-21 20:10:17,598 INFO L87 Difference]: Start difference. First operand 232 states and 282 transitions. Second operand has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,763 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-21 20:10:17,763 INFO L93 Difference]: Finished difference Result 887 states and 1096 transitions. [2021-10-21 20:10:17,763 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-21 20:10:17,764 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 79 [2021-10-21 20:10:17,764 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-21 20:10:17,764 INFO L225 Difference]: With dead ends: 887 [2021-10-21 20:10:17,764 INFO L226 Difference]: Without dead ends: 0 [2021-10-21 20:10:17,766 INFO L781 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 22.2ms TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-21 20:10:17,766 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-21 20:10:17,766 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-21 20:10:17,767 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,767 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-21 20:10:17,767 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 79 [2021-10-21 20:10:17,767 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-21 20:10:17,767 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-21 20:10:17,767 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-21 20:10:17,768 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-21 20:10:17,768 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-21 20:10:17,770 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-21 20:10:17,771 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-21 20:10:17,771 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-21 20:10:17,771 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable16 [2021-10-21 20:10:17,773 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-21 20:10:17,778 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:17,780 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,433 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,506 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,559 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,560 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,560 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,562 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,562 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,563 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,564 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,564 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,565 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,565 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,567 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,666 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,667 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,907 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,907 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,908 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,909 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,909 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,910 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:18,911 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,880 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,881 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,904 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,905 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,905 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,907 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,907 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,908 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,961 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,962 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,963 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:19,963 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:20,362 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,535 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,536 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,537 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,543 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,543 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,545 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,546 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,546 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,547 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,547 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,549 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,550 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,550 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,551 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,696 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:21,697 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:22,121 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:22,122 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:22,123 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:22,384 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-21 20:10:32,440 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-21 20:10:32,441 INFO L857 garLoopResultBuilder]: For program point L498(lines 498 502) no Hoare annotation was computed. [2021-10-21 20:10:32,441 INFO L853 garLoopResultBuilder]: At program point L168(lines 163 171) the Hoare annotation is: (let ((.cse10 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse9 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9) (and .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse2 .cse3 .cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse5 (= |ULTIMATE.start_getWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse6 .cse7 (= ~waterLevel~0 1)) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 .cse10 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0) .cse2 .cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) .cse4 (<= ~waterLevel~0 1) (not .cse8) .cse5) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse8 .cse9))) [2021-10-21 20:10:32,441 INFO L853 garLoopResultBuilder]: At program point L168-1(lines 163 171) the Hoare annotation is: false [2021-10-21 20:10:32,441 INFO L853 garLoopResultBuilder]: At program point L168-2(lines 163 171) the Hoare annotation is: false [2021-10-21 20:10:32,442 INFO L857 garLoopResultBuilder]: For program point L69(lines 69 82) no Hoare annotation was computed. [2021-10-21 20:10:32,442 INFO L853 garLoopResultBuilder]: At program point L69-1(lines 1 959) the Hoare annotation is: (let ((.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse11 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse13 (= ~waterLevel~0 1)) (.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse17 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse9 (= ~pumpRunning~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse10 (= ~pumpRunning~0 0)) (.cse12 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse16 (not .cse8)) (.cse14 (not .cse2)) (.cse5 (= 1 ~systemActive~0)) (.cse18 (not .cse3)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse15 (not .cse4))) (or (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9) (and .cse1 .cse10 .cse11 .cse3 .cse12 .cse5 .cse13) (and .cse1 .cse10 .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse14 .cse5 .cse13 .cse15) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 .cse10 .cse2 .cse3 .cse12 .cse4 (<= ~waterLevel~0 1) .cse16 .cse5 .cse7 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse17 .cse8 .cse9) (and .cse0 .cse1 .cse16 .cse14 .cse5 .cse18 .cse6 .cse7 .cse17 .cse15 .cse9) (and .cse1 .cse10 .cse12 .cse16 .cse14 .cse5 .cse18 .cse7 .cse15)))) [2021-10-21 20:10:32,442 INFO L857 garLoopResultBuilder]: For program point L69-2(lines 69 82) no Hoare annotation was computed. [2021-10-21 20:10:32,442 INFO L853 garLoopResultBuilder]: At program point L69-3(lines 1 959) the Hoare annotation is: false [2021-10-21 20:10:32,442 INFO L857 garLoopResultBuilder]: For program point L69-4(lines 69 82) no Hoare annotation was computed. [2021-10-21 20:10:32,443 INFO L853 garLoopResultBuilder]: At program point L69-5(lines 1 959) the Hoare annotation is: false [2021-10-21 20:10:32,443 INFO L857 garLoopResultBuilder]: For program point L532(lines 532 536) no Hoare annotation was computed. [2021-10-21 20:10:32,443 INFO L857 garLoopResultBuilder]: For program point L532-2(lines 298 304) no Hoare annotation was computed. [2021-10-21 20:10:32,443 INFO L857 garLoopResultBuilder]: For program point L334(lines 334 342) no Hoare annotation was computed. [2021-10-21 20:10:32,443 INFO L857 garLoopResultBuilder]: For program point L334-1(lines 334 342) no Hoare annotation was computed. [2021-10-21 20:10:32,443 INFO L857 garLoopResultBuilder]: For program point L334-2(lines 334 342) no Hoare annotation was computed. [2021-10-21 20:10:32,444 INFO L857 garLoopResultBuilder]: For program point L334-3(lines 334 342) no Hoare annotation was computed. [2021-10-21 20:10:32,444 INFO L857 garLoopResultBuilder]: For program point L334-4(lines 334 342) no Hoare annotation was computed. [2021-10-21 20:10:32,444 INFO L857 garLoopResultBuilder]: For program point L334-5(lines 334 342) no Hoare annotation was computed. [2021-10-21 20:10:32,444 INFO L853 garLoopResultBuilder]: At program point L136(lines 131 139) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) (not .cse2) .cse3 (not .cse4) .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse4 .cse3 (= ULTIMATE.start_main_~tmp~1 1) .cse5 .cse6))) [2021-10-21 20:10:32,444 INFO L853 garLoopResultBuilder]: At program point L136-1(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,444 INFO L853 garLoopResultBuilder]: At program point L136-2(lines 131 139) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1)) (.cse6 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse7 (= 1 ~systemActive~0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (not .cse6) .cse7 (not .cse8) .cse9 .cse10 .cse11 .cse12) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse6 .cse8 .cse5 .cse7 .cse9 .cse10 .cse11 .cse12))) [2021-10-21 20:10:32,445 INFO L853 garLoopResultBuilder]: At program point L136-3(lines 131 139) the Hoare annotation is: (let ((.cse3 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse9 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse13 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse14 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse15 (= ~waterLevel~0 1)) (.cse4 (not .cse9)) (.cse11 (not .cse2)) (.cse12 (not .cse3)) (.cse8 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse16 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse10 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) .cse4 .cse5 .cse6 .cse7) (and .cse8 .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse9 .cse10) (and .cse0 .cse1 .cse4 .cse11 .cse5 .cse12 .cse6 .cse7) (and .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse1 .cse13 .cse2 .cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) .cse14 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse6 .cse7 .cse15) (and .cse0 .cse1 .cse13 .cse14 .cse11 .cse5 .cse12 .cse6 .cse7 .cse15) (and .cse8 .cse0 .cse4 .cse11 .cse5 .cse12 .cse6 .cse7 .cse16 .cse10) (and .cse8 .cse0 .cse2 .cse3 .cse5 .cse6 .cse7 .cse16 .cse9 .cse10)))) [2021-10-21 20:10:32,445 INFO L853 garLoopResultBuilder]: At program point L136-4(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,445 INFO L853 garLoopResultBuilder]: At program point L136-5(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,445 INFO L853 garLoopResultBuilder]: At program point L136-6(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,445 INFO L853 garLoopResultBuilder]: At program point L136-7(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,446 INFO L853 garLoopResultBuilder]: At program point L136-8(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,446 INFO L853 garLoopResultBuilder]: At program point L136-9(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,446 INFO L853 garLoopResultBuilder]: At program point L136-10(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,446 INFO L853 garLoopResultBuilder]: At program point L136-11(lines 131 139) the Hoare annotation is: false [2021-10-21 20:10:32,446 INFO L857 garLoopResultBuilder]: For program point L203(lines 203 207) no Hoare annotation was computed. [2021-10-21 20:10:32,446 INFO L857 garLoopResultBuilder]: For program point L203-1(lines 298 304) no Hoare annotation was computed. [2021-10-21 20:10:32,447 INFO L857 garLoopResultBuilder]: For program point L73(lines 73 79) no Hoare annotation was computed. [2021-10-21 20:10:32,447 INFO L857 garLoopResultBuilder]: For program point L73-2(lines 73 79) no Hoare annotation was computed. [2021-10-21 20:10:32,447 INFO L857 garLoopResultBuilder]: For program point L73-4(lines 73 79) no Hoare annotation was computed. [2021-10-21 20:10:32,447 INFO L853 garLoopResultBuilder]: At program point L305(lines 305 311) the Hoare annotation is: (let ((.cse9 (= ~methaneLevelCritical~0 0)) (.cse12 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse14 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse15 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse16 (= ~waterLevel~0 1)) (.cse4 (not .cse12)) (.cse6 (not .cse9)) (.cse7 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse8 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= 1 ~systemActive~0)) (.cse10 (= ULTIMATE.start_main_~tmp~1 1)) (.cse11 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse17 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse13 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse7 .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse8 .cse9 (<= 2 ~waterLevel~0) .cse5 .cse10 .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) .cse4 .cse5) (and .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse1 .cse14 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) .cse15 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse10 .cse11 .cse16) (and .cse0 .cse1 .cse14 .cse15 .cse5 .cse6 .cse10 .cse11 .cse16) (and .cse7 .cse0 .cse4 (not .cse8) .cse5 .cse6 .cse10 .cse11 .cse17 .cse13) (and .cse7 .cse0 .cse8 .cse9 .cse5 .cse10 .cse11 .cse17 .cse12 .cse13)))) [2021-10-21 20:10:32,447 INFO L853 garLoopResultBuilder]: At program point L305-1(lines 305 311) the Hoare annotation is: false [2021-10-21 20:10:32,448 INFO L853 garLoopResultBuilder]: At program point L305-2(lines 305 311) the Hoare annotation is: false [2021-10-21 20:10:32,448 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-21 20:10:32,448 INFO L857 garLoopResultBuilder]: For program point L506(lines 506 512) no Hoare annotation was computed. [2021-10-21 20:10:32,448 INFO L853 garLoopResultBuilder]: At program point L506-1(lines 506 512) the Hoare annotation is: (let ((.cse8 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse7 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse19 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse12 (= ~waterLevel~0 1)) (.cse13 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse9 (not .cse19)) (.cse16 (not .cse3)) (.cse10 (= ULTIMATE.start_main_~tmp~1 1)) (.cse11 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse18 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse14 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse4 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse15 (not .cse7)) (.cse6 (= 1 ~systemActive~0)) (.cse17 (not .cse8))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse0 .cse1 .cse7 .cse3 .cse8 .cse9 .cse6 .cse10 .cse11 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse6 .cse12) (and (or (and .cse13 .cse0 .cse6 .cse12 .cse14) (and .cse13 .cse0 .cse5 .cse6 .cse14)) .cse9 .cse15 .cse16 .cse10 .cse11 .cse17) (and .cse0 .cse1 .cse9 .cse15 .cse6 .cse16 .cse10 .cse11 .cse17) (and .cse0 .cse1 .cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse15 .cse6 .cse12 .cse17) (and .cse13 .cse0 .cse7 .cse3 .cse8 .cse6 .cse10 .cse11 .cse18 .cse19 .cse14) (and .cse8 (or (and .cse13 .cse0 .cse7 .cse3 .cse6 .cse12 .cse14) (and .cse13 .cse0 .cse7 .cse3 .cse5 .cse6 .cse14)) .cse10 .cse11 .cse19) (and .cse13 .cse0 .cse9 .cse15 .cse6 .cse16 .cse10 .cse11 .cse18 .cse17 .cse14) (and .cse0 .cse1 .cse2 .cse4 .cse5 .cse15 .cse6 .cse17)))) [2021-10-21 20:10:32,448 INFO L857 garLoopResultBuilder]: For program point L275(lines 275 282) no Hoare annotation was computed. [2021-10-21 20:10:32,449 INFO L860 garLoopResultBuilder]: At program point L275-1(lines 275 282) the Hoare annotation is: true [2021-10-21 20:10:32,449 INFO L857 garLoopResultBuilder]: For program point L176(lines 176 182) no Hoare annotation was computed. [2021-10-21 20:10:32,449 INFO L857 garLoopResultBuilder]: For program point L176-1(lines 176 182) no Hoare annotation was computed. [2021-10-21 20:10:32,449 INFO L857 garLoopResultBuilder]: For program point L176-2(lines 176 182) no Hoare annotation was computed. [2021-10-21 20:10:32,449 INFO L857 garLoopResultBuilder]: For program point L176-3(lines 176 182) no Hoare annotation was computed. [2021-10-21 20:10:32,449 INFO L857 garLoopResultBuilder]: For program point L176-4(lines 176 182) no Hoare annotation was computed. [2021-10-21 20:10:32,450 INFO L857 garLoopResultBuilder]: For program point L176-5(lines 176 182) no Hoare annotation was computed. [2021-10-21 20:10:32,450 INFO L853 garLoopResultBuilder]: At program point L573(lines 1 959) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-21 20:10:32,450 INFO L857 garLoopResultBuilder]: For program point L111(lines 111 115) no Hoare annotation was computed. [2021-10-21 20:10:32,450 INFO L857 garLoopResultBuilder]: For program point L475(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,450 INFO L857 garLoopResultBuilder]: For program point L475-2(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,450 INFO L857 garLoopResultBuilder]: For program point L475-3(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,451 INFO L857 garLoopResultBuilder]: For program point L475-5(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,451 INFO L857 garLoopResultBuilder]: For program point L475-6(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,451 INFO L857 garLoopResultBuilder]: For program point L475-8(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,451 INFO L857 garLoopResultBuilder]: For program point L475-9(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,451 INFO L857 garLoopResultBuilder]: For program point L475-11(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,451 INFO L857 garLoopResultBuilder]: For program point L475-12(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,451 INFO L857 garLoopResultBuilder]: For program point L475-14(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,452 INFO L857 garLoopResultBuilder]: For program point L475-15(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,452 INFO L857 garLoopResultBuilder]: For program point L475-17(lines 475 479) no Hoare annotation was computed. [2021-10-21 20:10:32,452 INFO L853 garLoopResultBuilder]: At program point L542(lines 495 543) the Hoare annotation is: false [2021-10-21 20:10:32,452 INFO L853 garLoopResultBuilder]: At program point L181(lines 172 185) the Hoare annotation is: false [2021-10-21 20:10:32,452 INFO L853 garLoopResultBuilder]: At program point L181-1(lines 172 185) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse5 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4 .cse5) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse5 (= ULTIMATE.start_main_~tmp~1 1) (= |ULTIMATE.start_valid_product_#res| 1) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (= ~waterLevel~0 1)))) [2021-10-21 20:10:32,453 INFO L853 garLoopResultBuilder]: At program point L181-2(lines 172 185) the Hoare annotation is: false [2021-10-21 20:10:32,453 INFO L853 garLoopResultBuilder]: At program point L181-3(lines 172 185) the Hoare annotation is: false [2021-10-21 20:10:32,453 INFO L853 garLoopResultBuilder]: At program point L181-4(lines 172 185) the Hoare annotation is: false [2021-10-21 20:10:32,453 INFO L853 garLoopResultBuilder]: At program point L181-5(lines 172 185) the Hoare annotation is: false [2021-10-21 20:10:32,453 INFO L853 garLoopResultBuilder]: At program point L248(lines 244 250) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ULTIMATE.start_main_~tmp~1 1) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1)) [2021-10-21 20:10:32,453 INFO L853 garLoopResultBuilder]: At program point L481(lines 466 484) the Hoare annotation is: false [2021-10-21 20:10:32,454 INFO L853 garLoopResultBuilder]: At program point L481-1(lines 466 484) the Hoare annotation is: (let ((.cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= 1 ~systemActive~0)) (.cse8 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) .cse4 .cse5 .cse6 .cse7 (= ~waterLevel~0 1)) (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4 .cse5 .cse6 .cse8 .cse7) (and .cse0 .cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (<= 2 ~waterLevel~0) .cse6 .cse8 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)))) [2021-10-21 20:10:32,454 INFO L853 garLoopResultBuilder]: At program point L481-2(lines 466 484) the Hoare annotation is: false [2021-10-21 20:10:32,454 INFO L853 garLoopResultBuilder]: At program point L481-3(lines 466 484) the Hoare annotation is: false [2021-10-21 20:10:32,454 INFO L853 garLoopResultBuilder]: At program point L481-4(lines 466 484) the Hoare annotation is: false [2021-10-21 20:10:32,454 INFO L853 garLoopResultBuilder]: At program point L481-5(lines 466 484) the Hoare annotation is: false [2021-10-21 20:10:32,454 INFO L853 garLoopResultBuilder]: At program point L581(lines 576 584) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1)) [2021-10-21 20:10:32,455 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-21 20:10:32,455 INFO L860 garLoopResultBuilder]: At program point L284(lines 265 287) the Hoare annotation is: true [2021-10-21 20:10:32,455 INFO L857 garLoopResultBuilder]: For program point L516(lines 516 522) no Hoare annotation was computed. [2021-10-21 20:10:32,455 INFO L853 garLoopResultBuilder]: At program point L516-1(lines 516 522) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse5 (= ~waterLevel~0 1)) (.cse6 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse7 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse4 (= 1 ~systemActive~0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse6 .cse0 .cse2 .cse3 .cse4 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse7) (and .cse0 .cse1 .cse2 .cse3 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4) (and (or (and .cse6 .cse0 .cse4 .cse5 .cse7) (and .cse6 .cse0 .cse8 .cse4 .cse7)) .cse9 .cse10) (and .cse0 .cse1 .cse8 .cse4 .cse9 .cse10))) [2021-10-21 20:10:32,457 INFO L853 garLoopResultBuilder]: At program point L417(lines 410 420) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse2 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse7 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) (not .cse2) (not .cse3) .cse4 (not .cse5) .cse6 .cse7) (and .cse0 .cse1 .cse3 .cse5 .cse4 (= ULTIMATE.start_main_~tmp~1 1) .cse6 .cse2 .cse7))) [2021-10-21 20:10:32,457 INFO L853 garLoopResultBuilder]: At program point L417-1(lines 410 420) the Hoare annotation is: false [2021-10-21 20:10:32,457 INFO L853 garLoopResultBuilder]: At program point L417-2(lines 410 420) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1)) (.cse13 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= 1 ~systemActive~0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse3 .cse4 (not .cse13) .cse7 (not .cse5) .cse8 (not .cse6) .cse9 .cse10 .cse11 .cse12))) [2021-10-21 20:10:32,457 INFO L853 garLoopResultBuilder]: At program point L417-3(lines 410 420) the Hoare annotation is: false [2021-10-21 20:10:32,457 INFO L853 garLoopResultBuilder]: At program point L417-4(lines 410 420) the Hoare annotation is: false [2021-10-21 20:10:32,458 INFO L853 garLoopResultBuilder]: At program point L417-5(lines 410 420) the Hoare annotation is: false [2021-10-21 20:10:32,458 INFO L853 garLoopResultBuilder]: At program point L417-6(lines 410 420) the Hoare annotation is: false [2021-10-21 20:10:32,458 INFO L853 garLoopResultBuilder]: At program point L417-7(lines 410 420) the Hoare annotation is: false [2021-10-21 20:10:32,458 INFO L853 garLoopResultBuilder]: At program point L417-8(lines 410 420) the Hoare annotation is: false [2021-10-21 20:10:32,458 INFO L857 garLoopResultBuilder]: For program point L123(lines 123 127) no Hoare annotation was computed. [2021-10-21 20:10:32,458 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-21 20:10:32,459 INFO L857 garLoopResultBuilder]: For program point L356(lines 356 373) no Hoare annotation was computed. [2021-10-21 20:10:32,459 INFO L857 garLoopResultBuilder]: For program point L356-1(lines 356 373) no Hoare annotation was computed. [2021-10-21 20:10:32,459 INFO L857 garLoopResultBuilder]: For program point L356-2(lines 356 373) no Hoare annotation was computed. [2021-10-21 20:10:32,459 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-21 20:10:32,459 INFO L857 garLoopResultBuilder]: For program point L590(line 590) no Hoare annotation was computed. [2021-10-21 20:10:32,459 INFO L857 garLoopResultBuilder]: For program point L590-1(line 590) no Hoare annotation was computed. [2021-10-21 20:10:32,460 INFO L857 garLoopResultBuilder]: For program point L590-2(line 590) no Hoare annotation was computed. [2021-10-21 20:10:32,460 INFO L857 garLoopResultBuilder]: For program point L392(lines 392 398) no Hoare annotation was computed. [2021-10-21 20:10:32,460 INFO L857 garLoopResultBuilder]: For program point L392-2(lines 392 398) no Hoare annotation was computed. [2021-10-21 20:10:32,460 INFO L857 garLoopResultBuilder]: For program point L392-4(lines 392 398) no Hoare annotation was computed. [2021-10-21 20:10:32,460 INFO L857 garLoopResultBuilder]: For program point L392-6(lines 392 398) no Hoare annotation was computed. [2021-10-21 20:10:32,460 INFO L857 garLoopResultBuilder]: For program point L392-8(lines 392 398) no Hoare annotation was computed. [2021-10-21 20:10:32,460 INFO L857 garLoopResultBuilder]: For program point L392-10(lines 392 398) no Hoare annotation was computed. [2021-10-21 20:10:32,461 INFO L853 garLoopResultBuilder]: At program point L426(lines 421 429) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse9 (= |ULTIMATE.start_isPumpRunning_#res| 1)) (.cse10 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse8 .cse9 .cse10) (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9 .cse10))) [2021-10-21 20:10:32,461 INFO L853 garLoopResultBuilder]: At program point L426-1(lines 421 429) the Hoare annotation is: false [2021-10-21 20:10:32,461 INFO L857 garLoopResultBuilder]: For program point L360(lines 360 368) no Hoare annotation was computed. [2021-10-21 20:10:32,461 INFO L853 garLoopResultBuilder]: At program point L426-2(lines 421 429) the Hoare annotation is: false [2021-10-21 20:10:32,461 INFO L857 garLoopResultBuilder]: For program point L360-1(lines 360 368) no Hoare annotation was computed. [2021-10-21 20:10:32,461 INFO L857 garLoopResultBuilder]: For program point L360-2(lines 360 368) no Hoare annotation was computed. [2021-10-21 20:10:32,462 INFO L857 garLoopResultBuilder]: For program point L63(lines 63 83) no Hoare annotation was computed. [2021-10-21 20:10:32,462 INFO L857 garLoopResultBuilder]: For program point L63-2(lines 63 83) no Hoare annotation was computed. [2021-10-21 20:10:32,462 INFO L857 garLoopResultBuilder]: For program point L63-4(lines 63 83) no Hoare annotation was computed. [2021-10-21 20:10:32,462 INFO L857 garLoopResultBuilder]: For program point L526(lines 526 537) no Hoare annotation was computed. [2021-10-21 20:10:32,462 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-21 20:10:32,462 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-21 20:10:32,463 INFO L857 garLoopResultBuilder]: For program point L330(lines 330 347) no Hoare annotation was computed. [2021-10-21 20:10:32,463 INFO L857 garLoopResultBuilder]: For program point L330-1(lines 330 347) no Hoare annotation was computed. [2021-10-21 20:10:32,463 INFO L857 garLoopResultBuilder]: For program point L330-2(lines 330 347) no Hoare annotation was computed. [2021-10-21 20:10:32,463 INFO L857 garLoopResultBuilder]: For program point L330-3(lines 330 347) no Hoare annotation was computed. [2021-10-21 20:10:32,463 INFO L857 garLoopResultBuilder]: For program point L330-4(lines 330 347) no Hoare annotation was computed. [2021-10-21 20:10:32,463 INFO L857 garLoopResultBuilder]: For program point L330-5(lines 330 347) no Hoare annotation was computed. [2021-10-21 20:10:32,464 INFO L857 garLoopResultBuilder]: For program point L99(lines 99 103) no Hoare annotation was computed. [2021-10-21 20:10:32,464 INFO L857 garLoopResultBuilder]: For program point L99-3(lines 99 103) no Hoare annotation was computed. [2021-10-21 20:10:32,464 INFO L857 garLoopResultBuilder]: For program point L99-6(lines 99 103) no Hoare annotation was computed. [2021-10-21 20:10:32,464 INFO L853 garLoopResultBuilder]: At program point L298(lines 297 316) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= ULTIMATE.start_main_~tmp~1 1)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse1 .cse2 .cse3 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4) (and (= ULTIMATE.start_activatePump_~tmp~4 0) .cse0 .cse4 .cse5 .cse6 (= ~pumpRunning~0 1)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse4 .cse5 .cse6))) [2021-10-21 20:10:32,464 INFO L857 garLoopResultBuilder]: For program point L298-1(lines 298 304) no Hoare annotation was computed. [2021-10-21 20:10:32,464 INFO L853 garLoopResultBuilder]: At program point L298-2(lines 297 316) the Hoare annotation is: false [2021-10-21 20:10:32,465 INFO L853 garLoopResultBuilder]: At program point L298-3(lines 297 316) the Hoare annotation is: false [2021-10-21 20:10:32,465 INFO L853 garLoopResultBuilder]: At program point L199-2(lines 199 213) the Hoare annotation is: false [2021-10-21 20:10:32,465 INFO L857 garLoopResultBuilder]: For program point L497(lines 496 541) no Hoare annotation was computed. [2021-10-21 20:10:32,465 INFO L857 garLoopResultBuilder]: For program point L200(line 200) no Hoare annotation was computed. [2021-10-21 20:10:32,470 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-21 20:10:32,521 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.10 08:10:32 BoogieIcfgContainer [2021-10-21 20:10:32,521 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-21 20:10:32,521 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-21 20:10:32,522 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-21 20:10:32,522 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-21 20:10:32,522 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.10 08:10:12" (3/4) ... [2021-10-21 20:10:32,526 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-21 20:10:32,550 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-21 20:10:32,551 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-21 20:10:32,553 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-21 20:10:32,554 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-21 20:10:32,556 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-21 20:10:32,557 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-21 20:10:32,559 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-21 20:10:32,585 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1 [2021-10-21 20:10:32,586 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && waterLevel == 1 [2021-10-21 20:10:32,586 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && \result == 1) && tmp___0 <= 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && !(tmp == 0)) [2021-10-21 20:10:32,587 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 2 <= waterLevel) && 1 == systemActive) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp___0 <= 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((tmp == 0 && (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && \result == 1) && \result == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) [2021-10-21 20:10:32,587 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) [2021-10-21 20:10:32,588 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) [2021-10-21 20:10:32,588 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-21 20:10:32,590 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-21 20:10:32,590 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1) [2021-10-21 20:10:32,591 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0) && pumpRunning == 1) [2021-10-21 20:10:32,591 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && \result == 1) && 1 == systemActive) && waterLevel == 1) [2021-10-21 20:10:32,592 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == systemActive) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-21 20:10:32,593 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && tmp == systemActive) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && waterLevel == 1) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 1) && \result == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-21 20:10:32,594 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && \result == 1) && pumpRunning == 1) [2021-10-21 20:10:32,595 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-21 20:10:32,596 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-21 20:10:32,690 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/witness.graphml [2021-10-21 20:10:32,690 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-21 20:10:32,692 INFO L168 Benchmark]: Toolchain (without parser) took 21870.87 ms. Allocated memory was 104.9 MB in the beginning and 270.5 MB in the end (delta: 165.7 MB). Free memory was 72.4 MB in the beginning and 185.3 MB in the end (delta: -112.9 MB). Peak memory consumption was 52.6 MB. Max. memory is 16.1 GB. [2021-10-21 20:10:32,693 INFO L168 Benchmark]: CDTParser took 1.11 ms. Allocated memory is still 104.9 MB. Free memory is still 57.9 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-21 20:10:32,693 INFO L168 Benchmark]: CACSL2BoogieTranslator took 587.16 ms. Allocated memory is still 104.9 MB. Free memory was 72.2 MB in the beginning and 70.6 MB in the end (delta: 1.6 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-21 20:10:32,694 INFO L168 Benchmark]: Boogie Procedure Inliner took 84.30 ms. Allocated memory is still 104.9 MB. Free memory was 70.6 MB in the beginning and 66.4 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-21 20:10:32,694 INFO L168 Benchmark]: Boogie Preprocessor took 67.52 ms. Allocated memory is still 104.9 MB. Free memory was 66.4 MB in the beginning and 63.6 MB in the end (delta: 2.8 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-21 20:10:32,695 INFO L168 Benchmark]: RCFGBuilder took 1272.75 ms. Allocated memory was 104.9 MB in the beginning and 125.8 MB in the end (delta: 21.0 MB). Free memory was 63.6 MB in the beginning and 68.2 MB in the end (delta: -4.6 MB). Peak memory consumption was 21.5 MB. Max. memory is 16.1 GB. [2021-10-21 20:10:32,695 INFO L168 Benchmark]: TraceAbstraction took 19681.33 ms. Allocated memory was 125.8 MB in the beginning and 270.5 MB in the end (delta: 144.7 MB). Free memory was 67.3 MB in the beginning and 197.9 MB in the end (delta: -130.6 MB). Peak memory consumption was 135.1 MB. Max. memory is 16.1 GB. [2021-10-21 20:10:32,696 INFO L168 Benchmark]: Witness Printer took 168.83 ms. Allocated memory is still 270.5 MB. Free memory was 197.9 MB in the beginning and 185.3 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. [2021-10-21 20:10:32,699 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 1.11 ms. Allocated memory is still 104.9 MB. Free memory is still 57.9 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 587.16 ms. Allocated memory is still 104.9 MB. Free memory was 72.2 MB in the beginning and 70.6 MB in the end (delta: 1.6 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 84.30 ms. Allocated memory is still 104.9 MB. Free memory was 70.6 MB in the beginning and 66.4 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 67.52 ms. Allocated memory is still 104.9 MB. Free memory was 66.4 MB in the beginning and 63.6 MB in the end (delta: 2.8 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1272.75 ms. Allocated memory was 104.9 MB in the beginning and 125.8 MB in the end (delta: 21.0 MB). Free memory was 63.6 MB in the beginning and 68.2 MB in the end (delta: -4.6 MB). Peak memory consumption was 21.5 MB. Max. memory is 16.1 GB. * TraceAbstraction took 19681.33 ms. Allocated memory was 125.8 MB in the beginning and 270.5 MB in the end (delta: 144.7 MB). Free memory was 67.3 MB in the beginning and 197.9 MB in the end (delta: -130.6 MB). Peak memory consumption was 135.1 MB. Max. memory is 16.1 GB. * Witness Printer took 168.83 ms. Allocated memory is still 270.5 MB. Free memory was 197.9 MB in the beginning and 185.3 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0ms ErrorAutomatonConstructionTimeTotal, 0.0ms FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0ms ErrorAutomatonConstructionTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeAvg, 0.0ms ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 135 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 19557.9ms, OverallIterations: 17, TraceHistogramMax: 3, EmptinessCheckTime: 37.6ms, AutomataDifference: 2579.6ms, DeadEndRemovalTime: 0.0ms, HoareAnnotationTime: 14668.5ms, InitialAbstractionConstructionTime: 14.6ms, PartialOrderReductionTime: 0.0ms, HoareTripleCheckerStatistics: 2002 SDtfs, 3011 SDslu, 3594 SDs, 0 SdLazy, 603 SolverSat, 103 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 875.4ms Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 149 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 87 ImplicationChecksByTransitivity, 588.8ms Time, 0.0ms BasicInterpolantAutomatonTime, BiggestAbstraction: size=356occurred in iteration=9, InterpolantAutomatonStates: 112, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0ms DumpTime, AutomataMinimizationStatistics: 464.9ms AutomataMinimizationTime, 17 MinimizatonAttempts, 2444 StatesRemovedByMinimization, 13 NontrivialMinimizations, HoareAnnotationStatistics: 0.0ms HoareAnnotationTime, 57 LocationsWithAnnotation, 57 PreInvPairs, 311 NumberOfFragments, 2066 HoareAnnotationTreeSize, 57 FomulaSimplifications, 49120324 FormulaSimplificationTreeSizeReduction, 4607.2ms HoareSimplificationTime, 57 FomulaSimplificationsInter, 13289997 FormulaSimplificationTreeSizeReductionInter, 10035.2ms HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 87.6ms SsaConstructionTime, 428.7ms SatisfiabilityAnalysisTime, 939.6ms InterpolantComputationTime, 699 NumberOfCodeBlocks, 699 NumberOfCodeBlocksAsserted, 17 NumberOfCheckSat, 682 ConstructedInterpolants, 0 QuantifiedInterpolants, 1224 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 17 InterpolantComputations, 17 PerfectInterpolantSequences, 160/160 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 506]: Loop Invariant Derived loop invariant: ((((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 2 <= waterLevel) && 1 == systemActive) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp___0 <= 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((tmp == 0 && (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && \result == 1) && \result == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: (((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == systemActive) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 495]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: (((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: ((((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 199]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && tmp == systemActive) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && waterLevel == 1) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 1) && \result == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 516]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 275]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && \result == 1) && tmp___0 <= 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && !(tmp == 0)) - InvariantResult [Line: 265]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && waterLevel == 1 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && \result == 1) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 576]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1 RESULT: Ultimate proved your program to be correct! [2021-10-21 20:10:32,778 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_55b76bc1-e9ff-4752-8b00-99c771d057c5/bin/uautomizer-j4sWxH34Be/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...