./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 0cfed743c16ce3c8683c42b92f2e032d4ce7b489a9d3a5e140ec6101c472b3cb .................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-28 09:53:21,066 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-28 09:53:21,069 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-28 09:53:21,128 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-28 09:53:21,128 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-28 09:53:21,130 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-28 09:53:21,132 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-28 09:53:21,135 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-28 09:53:21,138 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-28 09:53:21,139 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-28 09:53:21,141 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-28 09:53:21,143 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-28 09:53:21,143 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-28 09:53:21,145 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-28 09:53:21,147 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-28 09:53:21,149 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-28 09:53:21,150 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-28 09:53:21,151 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-28 09:53:21,154 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-28 09:53:21,157 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-28 09:53:21,159 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-28 09:53:21,161 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-28 09:53:21,162 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-28 09:53:21,164 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-28 09:53:21,168 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-28 09:53:21,169 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-28 09:53:21,169 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-28 09:53:21,171 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-28 09:53:21,171 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-28 09:53:21,173 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-28 09:53:21,173 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-28 09:53:21,175 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-28 09:53:21,176 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-28 09:53:21,177 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-28 09:53:21,179 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-28 09:53:21,179 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-28 09:53:21,180 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-28 09:53:21,181 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-28 09:53:21,181 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-28 09:53:21,182 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-28 09:53:21,183 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-28 09:53:21,184 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-28 09:53:21,215 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-28 09:53:21,215 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-28 09:53:21,215 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-28 09:53:21,216 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-28 09:53:21,217 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-28 09:53:21,217 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-28 09:53:21,218 INFO L138 SettingsManager]: * Use SBE=true [2021-10-28 09:53:21,218 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-28 09:53:21,218 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-28 09:53:21,219 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-28 09:53:21,219 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-28 09:53:21,219 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-28 09:53:21,220 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-28 09:53:21,220 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-28 09:53:21,220 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-28 09:53:21,221 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-28 09:53:21,221 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-28 09:53:21,221 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-28 09:53:21,221 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-28 09:53:21,222 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-28 09:53:21,222 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-28 09:53:21,222 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-28 09:53:21,223 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:53:21,223 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-28 09:53:21,223 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-28 09:53:21,224 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-28 09:53:21,224 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-28 09:53:21,224 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-28 09:53:21,225 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-28 09:53:21,225 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-28 09:53:21,225 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-28 09:53:21,226 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-28 09:53:21,226 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 0cfed743c16ce3c8683c42b92f2e032d4ce7b489a9d3a5e140ec6101c472b3cb [2021-10-28 09:53:21,510 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-28 09:53:21,539 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-28 09:53:21,542 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-28 09:53:21,543 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-28 09:53:21,544 INFO L275 PluginConnector]: CDTParser initialized [2021-10-28 09:53:21,545 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/../../sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c [2021-10-28 09:53:21,650 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/data/f06765c56/b38ed0cfcc84434d902e61ea99a1214a/FLAG1abf3e0fb [2021-10-28 09:53:22,230 INFO L306 CDTParser]: Found 1 translation units. [2021-10-28 09:53:22,230 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c [2021-10-28 09:53:22,243 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/data/f06765c56/b38ed0cfcc84434d902e61ea99a1214a/FLAG1abf3e0fb [2021-10-28 09:53:22,554 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/data/f06765c56/b38ed0cfcc84434d902e61ea99a1214a [2021-10-28 09:53:22,556 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-28 09:53:22,558 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-28 09:53:22,565 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-28 09:53:22,566 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-28 09:53:22,570 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-28 09:53:22,571 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:53:22" (1/1) ... [2021-10-28 09:53:22,575 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@18135a8d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:22, skipping insertion in model container [2021-10-28 09:53:22,575 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:53:22" (1/1) ... [2021-10-28 09:53:22,583 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-28 09:53:22,630 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-28 09:53:22,987 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c[17978,17991] [2021-10-28 09:53:23,004 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:53:23,016 INFO L203 MainTranslator]: Completed pre-run [2021-10-28 09:53:23,163 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c[17978,17991] [2021-10-28 09:53:23,163 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:53:23,185 INFO L208 MainTranslator]: Completed translation [2021-10-28 09:53:23,185 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23 WrapperNode [2021-10-28 09:53:23,185 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-28 09:53:23,187 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-28 09:53:23,187 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-28 09:53:23,187 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-28 09:53:23,196 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,214 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,267 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-28 09:53:23,268 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-28 09:53:23,268 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-28 09:53:23,269 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-28 09:53:23,278 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,278 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,284 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,284 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,296 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,307 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,310 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,315 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-28 09:53:23,316 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-28 09:53:23,316 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-28 09:53:23,316 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-28 09:53:23,326 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (1/1) ... [2021-10-28 09:53:23,335 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:53:23,351 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/z3 [2021-10-28 09:53:23,374 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-28 09:53:23,385 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-28 09:53:23,426 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-28 09:53:23,427 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-28 09:53:23,427 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-28 09:53:23,427 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-28 09:53:24,311 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-28 09:53:24,312 INFO L299 CfgBuilder]: Removed 120 assume(true) statements. [2021-10-28 09:53:24,314 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:53:24 BoogieIcfgContainer [2021-10-28 09:53:24,314 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-28 09:53:24,316 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-28 09:53:24,316 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-28 09:53:24,320 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-28 09:53:24,320 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.10 09:53:22" (1/3) ... [2021-10-28 09:53:24,321 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@38ec7204 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:53:24, skipping insertion in model container [2021-10-28 09:53:24,322 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:53:23" (2/3) ... [2021-10-28 09:53:24,322 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@38ec7204 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:53:24, skipping insertion in model container [2021-10-28 09:53:24,322 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:53:24" (3/3) ... [2021-10-28 09:53:24,324 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product41.cil.c [2021-10-28 09:53:24,330 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-28 09:53:24,330 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-28 09:53:24,384 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-28 09:53:24,390 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-28 09:53:24,390 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-28 09:53:24,407 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:24,413 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-28 09:53:24,414 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:24,414 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:24,415 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:24,420 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:24,420 INFO L85 PathProgramCache]: Analyzing trace with hash -611333278, now seen corresponding path program 1 times [2021-10-28 09:53:24,430 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:24,430 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [875418947] [2021-10-28 09:53:24,430 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:24,431 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:24,593 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:24,730 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:24,731 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:24,732 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [875418947] [2021-10-28 09:53:24,732 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [875418947] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:24,733 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:24,733 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:53:24,742 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [766261973] [2021-10-28 09:53:24,753 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-28 09:53:24,756 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:24,779 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-28 09:53:24,780 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:53:24,784 INFO L87 Difference]: Start difference. First operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:24,820 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:24,821 INFO L93 Difference]: Finished difference Result 180 states and 269 transitions. [2021-10-28 09:53:24,821 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-28 09:53:24,822 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-28 09:53:24,823 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:24,843 INFO L225 Difference]: With dead ends: 180 [2021-10-28 09:53:24,843 INFO L226 Difference]: Without dead ends: 89 [2021-10-28 09:53:24,846 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:53:24,864 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2021-10-28 09:53:24,886 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2021-10-28 09:53:24,887 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 86 states have (on average 1.4651162790697674) internal successors, (126), 88 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:24,890 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 126 transitions. [2021-10-28 09:53:24,891 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 126 transitions. Word has length 18 [2021-10-28 09:53:24,892 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:24,892 INFO L470 AbstractCegarLoop]: Abstraction has 89 states and 126 transitions. [2021-10-28 09:53:24,892 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:24,893 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 126 transitions. [2021-10-28 09:53:24,894 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-28 09:53:24,894 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:24,894 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:24,894 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-28 09:53:24,895 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:24,895 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:24,896 INFO L85 PathProgramCache]: Analyzing trace with hash 1493643632, now seen corresponding path program 1 times [2021-10-28 09:53:24,896 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:24,896 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1051925218] [2021-10-28 09:53:24,896 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:24,897 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:24,944 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:25,038 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:25,038 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:25,039 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1051925218] [2021-10-28 09:53:25,039 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1051925218] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:25,039 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:25,039 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:53:25,040 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1037974359] [2021-10-28 09:53:25,041 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:53:25,041 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:25,042 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:53:25,042 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:53:25,043 INFO L87 Difference]: Start difference. First operand 89 states and 126 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,071 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:25,071 INFO L93 Difference]: Finished difference Result 89 states and 126 transitions. [2021-10-28 09:53:25,073 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:53:25,073 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-28 09:53:25,074 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:25,074 INFO L225 Difference]: With dead ends: 89 [2021-10-28 09:53:25,074 INFO L226 Difference]: Without dead ends: 39 [2021-10-28 09:53:25,076 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:53:25,076 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-28 09:53:25,102 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-28 09:53:25,102 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 38 states have internal predecessors, (55), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,103 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 55 transitions. [2021-10-28 09:53:25,104 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 55 transitions. Word has length 19 [2021-10-28 09:53:25,104 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:25,104 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 55 transitions. [2021-10-28 09:53:25,104 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,105 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 55 transitions. [2021-10-28 09:53:25,106 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-28 09:53:25,106 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:25,106 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:25,106 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-28 09:53:25,107 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:25,107 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:25,108 INFO L85 PathProgramCache]: Analyzing trace with hash 590350463, now seen corresponding path program 1 times [2021-10-28 09:53:25,108 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:25,108 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2118935314] [2021-10-28 09:53:25,108 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:25,109 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:25,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:25,211 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:25,211 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:25,211 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2118935314] [2021-10-28 09:53:25,212 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2118935314] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:25,212 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:25,212 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:53:25,212 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1664973493] [2021-10-28 09:53:25,213 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:53:25,213 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:25,214 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:53:25,214 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:53:25,214 INFO L87 Difference]: Start difference. First operand 39 states and 55 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,226 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:25,226 INFO L93 Difference]: Finished difference Result 72 states and 104 transitions. [2021-10-28 09:53:25,226 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:53:25,227 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-28 09:53:25,227 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:25,229 INFO L225 Difference]: With dead ends: 72 [2021-10-28 09:53:25,229 INFO L226 Difference]: Without dead ends: 39 [2021-10-28 09:53:25,230 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:53:25,231 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-28 09:53:25,235 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-28 09:53:25,236 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4210526315789473) internal successors, (54), 38 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,237 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 54 transitions. [2021-10-28 09:53:25,237 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 54 transitions. Word has length 24 [2021-10-28 09:53:25,237 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:25,238 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 54 transitions. [2021-10-28 09:53:25,238 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,238 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 54 transitions. [2021-10-28 09:53:25,239 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-10-28 09:53:25,239 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:25,240 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:25,240 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-28 09:53:25,240 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:25,241 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:25,241 INFO L85 PathProgramCache]: Analyzing trace with hash 1748150010, now seen corresponding path program 1 times [2021-10-28 09:53:25,241 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:25,242 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1197139177] [2021-10-28 09:53:25,242 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:25,242 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:25,272 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:25,320 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:25,321 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:25,322 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1197139177] [2021-10-28 09:53:25,322 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1197139177] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:25,323 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:25,323 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:53:25,323 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [695754342] [2021-10-28 09:53:25,324 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:53:25,325 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:25,325 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:53:25,326 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:53:25,326 INFO L87 Difference]: Start difference. First operand 39 states and 54 transitions. Second operand has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,363 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:25,364 INFO L93 Difference]: Finished difference Result 95 states and 135 transitions. [2021-10-28 09:53:25,364 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:53:25,365 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-10-28 09:53:25,365 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:25,367 INFO L225 Difference]: With dead ends: 95 [2021-10-28 09:53:25,368 INFO L226 Difference]: Without dead ends: 62 [2021-10-28 09:53:25,369 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:53:25,371 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2021-10-28 09:53:25,378 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 60. [2021-10-28 09:53:25,381 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 60 states, 59 states have (on average 1.423728813559322) internal successors, (84), 59 states have internal predecessors, (84), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,382 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 60 states to 60 states and 84 transitions. [2021-10-28 09:53:25,382 INFO L78 Accepts]: Start accepts. Automaton has 60 states and 84 transitions. Word has length 25 [2021-10-28 09:53:25,383 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:25,383 INFO L470 AbstractCegarLoop]: Abstraction has 60 states and 84 transitions. [2021-10-28 09:53:25,384 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,384 INFO L276 IsEmpty]: Start isEmpty. Operand 60 states and 84 transitions. [2021-10-28 09:53:25,385 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-10-28 09:53:25,385 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:25,386 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:25,386 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-28 09:53:25,386 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:25,387 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:25,388 INFO L85 PathProgramCache]: Analyzing trace with hash 787955310, now seen corresponding path program 1 times [2021-10-28 09:53:25,389 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:25,390 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2092944304] [2021-10-28 09:53:25,390 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:25,391 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:25,451 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:25,534 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:25,535 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:25,535 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2092944304] [2021-10-28 09:53:25,535 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2092944304] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:25,536 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:25,536 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:53:25,536 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1017368365] [2021-10-28 09:53:25,537 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:53:25,537 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:25,538 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:53:25,538 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:53:25,538 INFO L87 Difference]: Start difference. First operand 60 states and 84 transitions. Second operand has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,651 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:25,651 INFO L93 Difference]: Finished difference Result 314 states and 458 transitions. [2021-10-28 09:53:25,651 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:53:25,652 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 31 [2021-10-28 09:53:25,652 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:25,655 INFO L225 Difference]: With dead ends: 314 [2021-10-28 09:53:25,655 INFO L226 Difference]: Without dead ends: 260 [2021-10-28 09:53:25,656 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:53:25,659 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 260 states. [2021-10-28 09:53:25,685 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 260 to 106. [2021-10-28 09:53:25,688 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 106 states, 105 states have (on average 1.3904761904761904) internal successors, (146), 105 states have internal predecessors, (146), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,689 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 106 states to 106 states and 146 transitions. [2021-10-28 09:53:25,691 INFO L78 Accepts]: Start accepts. Automaton has 106 states and 146 transitions. Word has length 31 [2021-10-28 09:53:25,692 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:25,693 INFO L470 AbstractCegarLoop]: Abstraction has 106 states and 146 transitions. [2021-10-28 09:53:25,693 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,693 INFO L276 IsEmpty]: Start isEmpty. Operand 106 states and 146 transitions. [2021-10-28 09:53:25,695 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:53:25,696 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:25,696 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:25,697 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-28 09:53:25,697 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:25,697 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:25,698 INFO L85 PathProgramCache]: Analyzing trace with hash -1324804560, now seen corresponding path program 1 times [2021-10-28 09:53:25,698 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:25,698 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [326804667] [2021-10-28 09:53:25,698 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:25,699 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:25,742 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:25,809 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:25,810 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:25,810 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [326804667] [2021-10-28 09:53:25,810 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [326804667] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:25,811 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:25,811 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:53:25,812 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [201507755] [2021-10-28 09:53:25,813 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:53:25,816 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:25,817 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:53:25,817 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:53:25,817 INFO L87 Difference]: Start difference. First operand 106 states and 146 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,924 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:25,924 INFO L93 Difference]: Finished difference Result 212 states and 299 transitions. [2021-10-28 09:53:25,925 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 09:53:25,925 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:53:25,925 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:25,927 INFO L225 Difference]: With dead ends: 212 [2021-10-28 09:53:25,927 INFO L226 Difference]: Without dead ends: 158 [2021-10-28 09:53:25,928 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:53:25,928 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2021-10-28 09:53:25,944 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 155. [2021-10-28 09:53:25,945 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 155 states, 154 states have (on average 1.396103896103896) internal successors, (215), 154 states have internal predecessors, (215), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,946 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 155 states to 155 states and 215 transitions. [2021-10-28 09:53:25,946 INFO L78 Accepts]: Start accepts. Automaton has 155 states and 215 transitions. Word has length 32 [2021-10-28 09:53:25,946 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:25,947 INFO L470 AbstractCegarLoop]: Abstraction has 155 states and 215 transitions. [2021-10-28 09:53:25,947 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:25,947 INFO L276 IsEmpty]: Start isEmpty. Operand 155 states and 215 transitions. [2021-10-28 09:53:25,948 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:53:25,948 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:25,949 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:25,949 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-28 09:53:25,949 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:25,950 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:25,950 INFO L85 PathProgramCache]: Analyzing trace with hash 1959045486, now seen corresponding path program 1 times [2021-10-28 09:53:25,950 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:25,950 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [792436890] [2021-10-28 09:53:25,951 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:25,951 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:25,971 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:26,005 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:26,006 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:26,006 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [792436890] [2021-10-28 09:53:26,006 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [792436890] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:26,006 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:26,006 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:53:26,007 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2022982000] [2021-10-28 09:53:26,007 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:53:26,007 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:26,008 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:53:26,008 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:53:26,008 INFO L87 Difference]: Start difference. First operand 155 states and 215 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,046 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:26,047 INFO L93 Difference]: Finished difference Result 412 states and 582 transitions. [2021-10-28 09:53:26,047 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:53:26,047 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:53:26,048 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:26,050 INFO L225 Difference]: With dead ends: 412 [2021-10-28 09:53:26,050 INFO L226 Difference]: Without dead ends: 308 [2021-10-28 09:53:26,051 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:53:26,052 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 308 states. [2021-10-28 09:53:26,068 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 308 to 155. [2021-10-28 09:53:26,069 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 155 states, 154 states have (on average 1.3896103896103895) internal successors, (214), 154 states have internal predecessors, (214), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,070 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 155 states to 155 states and 214 transitions. [2021-10-28 09:53:26,070 INFO L78 Accepts]: Start accepts. Automaton has 155 states and 214 transitions. Word has length 32 [2021-10-28 09:53:26,070 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:26,070 INFO L470 AbstractCegarLoop]: Abstraction has 155 states and 214 transitions. [2021-10-28 09:53:26,071 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,071 INFO L276 IsEmpty]: Start isEmpty. Operand 155 states and 214 transitions. [2021-10-28 09:53:26,072 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:53:26,072 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:26,072 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:26,072 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-28 09:53:26,073 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:26,073 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:26,073 INFO L85 PathProgramCache]: Analyzing trace with hash -2077756372, now seen corresponding path program 1 times [2021-10-28 09:53:26,074 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:26,074 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [900126703] [2021-10-28 09:53:26,074 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:26,074 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:26,090 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:26,143 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:26,143 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:26,143 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [900126703] [2021-10-28 09:53:26,144 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [900126703] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:26,144 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:26,144 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 09:53:26,144 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [956041200] [2021-10-28 09:53:26,145 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:53:26,145 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:26,146 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:53:26,146 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:53:26,146 INFO L87 Difference]: Start difference. First operand 155 states and 214 transitions. Second operand has 6 states, 6 states have (on average 5.333333333333333) internal successors, (32), 6 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,232 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:26,232 INFO L93 Difference]: Finished difference Result 524 states and 737 transitions. [2021-10-28 09:53:26,233 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:53:26,233 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.333333333333333) internal successors, (32), 6 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:53:26,234 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:26,236 INFO L225 Difference]: With dead ends: 524 [2021-10-28 09:53:26,236 INFO L226 Difference]: Without dead ends: 375 [2021-10-28 09:53:26,237 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2021-10-28 09:53:26,238 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 375 states. [2021-10-28 09:53:26,262 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 375 to 161. [2021-10-28 09:53:26,262 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 161 states, 160 states have (on average 1.36875) internal successors, (219), 160 states have internal predecessors, (219), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,263 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 161 states to 161 states and 219 transitions. [2021-10-28 09:53:26,264 INFO L78 Accepts]: Start accepts. Automaton has 161 states and 219 transitions. Word has length 32 [2021-10-28 09:53:26,264 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:26,264 INFO L470 AbstractCegarLoop]: Abstraction has 161 states and 219 transitions. [2021-10-28 09:53:26,264 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.333333333333333) internal successors, (32), 6 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,265 INFO L276 IsEmpty]: Start isEmpty. Operand 161 states and 219 transitions. [2021-10-28 09:53:26,266 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-28 09:53:26,266 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:26,266 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:26,266 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-28 09:53:26,267 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:26,267 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:26,267 INFO L85 PathProgramCache]: Analyzing trace with hash 662884577, now seen corresponding path program 1 times [2021-10-28 09:53:26,268 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:26,268 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [958577031] [2021-10-28 09:53:26,268 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:26,268 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:26,285 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:26,331 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:26,332 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:26,332 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [958577031] [2021-10-28 09:53:26,332 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [958577031] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:26,333 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:26,333 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:53:26,333 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [971044958] [2021-10-28 09:53:26,334 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:53:26,334 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:26,334 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:53:26,335 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:53:26,335 INFO L87 Difference]: Start difference. First operand 161 states and 219 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,552 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:26,552 INFO L93 Difference]: Finished difference Result 1154 states and 1559 transitions. [2021-10-28 09:53:26,553 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-28 09:53:26,553 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-28 09:53:26,553 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:26,560 INFO L225 Difference]: With dead ends: 1154 [2021-10-28 09:53:26,560 INFO L226 Difference]: Without dead ends: 999 [2021-10-28 09:53:26,561 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-28 09:53:26,562 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 999 states. [2021-10-28 09:53:26,611 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 999 to 302. [2021-10-28 09:53:26,612 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.3488372093023255) internal successors, (406), 301 states have internal predecessors, (406), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,614 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 406 transitions. [2021-10-28 09:53:26,614 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 406 transitions. Word has length 35 [2021-10-28 09:53:26,614 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:26,615 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 406 transitions. [2021-10-28 09:53:26,615 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,615 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 406 transitions. [2021-10-28 09:53:26,616 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-28 09:53:26,616 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:26,617 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:26,617 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-28 09:53:26,617 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:26,618 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:26,618 INFO L85 PathProgramCache]: Analyzing trace with hash 1342942947, now seen corresponding path program 1 times [2021-10-28 09:53:26,618 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:26,618 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [546777436] [2021-10-28 09:53:26,619 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:26,619 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:26,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:26,683 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:26,684 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:26,684 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [546777436] [2021-10-28 09:53:26,684 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [546777436] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:26,684 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:26,684 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 09:53:26,685 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1039704248] [2021-10-28 09:53:26,685 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:53:26,685 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:26,686 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:53:26,686 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:53:26,686 INFO L87 Difference]: Start difference. First operand 302 states and 406 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,904 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:26,904 INFO L93 Difference]: Finished difference Result 687 states and 937 transitions. [2021-10-28 09:53:26,905 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-28 09:53:26,905 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-28 09:53:26,907 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:26,908 INFO L225 Difference]: With dead ends: 687 [2021-10-28 09:53:26,908 INFO L226 Difference]: Without dead ends: 121 [2021-10-28 09:53:26,909 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2021-10-28 09:53:26,910 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2021-10-28 09:53:26,920 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 96. [2021-10-28 09:53:26,920 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 96 states, 95 states have (on average 1.2105263157894737) internal successors, (115), 95 states have internal predecessors, (115), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,921 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 115 transitions. [2021-10-28 09:53:26,921 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 115 transitions. Word has length 35 [2021-10-28 09:53:26,922 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:26,922 INFO L470 AbstractCegarLoop]: Abstraction has 96 states and 115 transitions. [2021-10-28 09:53:26,922 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:26,922 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 115 transitions. [2021-10-28 09:53:26,923 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:53:26,923 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:53:26,923 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:26,924 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-28 09:53:26,924 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:53:26,925 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:53:26,925 INFO L85 PathProgramCache]: Analyzing trace with hash 384013147, now seen corresponding path program 1 times [2021-10-28 09:53:26,925 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:53:26,928 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [734672061] [2021-10-28 09:53:26,928 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:53:26,928 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:53:26,949 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:53:27,018 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:53:27,019 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:53:27,019 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [734672061] [2021-10-28 09:53:27,019 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [734672061] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:53:27,019 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:53:27,019 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 09:53:27,020 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [913591257] [2021-10-28 09:53:27,020 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:53:27,020 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:53:27,027 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:53:27,028 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:53:27,028 INFO L87 Difference]: Start difference. First operand 96 states and 115 transitions. Second operand has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:27,344 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:53:27,345 INFO L93 Difference]: Finished difference Result 280 states and 335 transitions. [2021-10-28 09:53:27,345 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-10-28 09:53:27,346 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:53:27,346 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:53:27,347 INFO L225 Difference]: With dead ends: 280 [2021-10-28 09:53:27,347 INFO L226 Difference]: Without dead ends: 0 [2021-10-28 09:53:27,348 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=53, Invalid=103, Unknown=0, NotChecked=0, Total=156 [2021-10-28 09:53:27,348 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-28 09:53:27,348 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-28 09:53:27,348 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:27,349 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-28 09:53:27,349 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 36 [2021-10-28 09:53:27,349 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:53:27,349 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-28 09:53:27,349 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:53:27,350 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-28 09:53:27,350 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-28 09:53:27,353 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:53:27,353 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:53:27,354 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:53:27,354 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-28 09:53:27,356 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-28 09:53:27,361 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,368 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,368 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,369 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,370 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,371 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,412 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,413 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,414 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,415 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,417 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,419 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,470 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,472 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,473 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,474 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,475 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,506 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,683 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,821 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,822 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,919 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,959 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:27,960 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,013 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,014 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,015 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,015 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,067 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,196 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,197 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,198 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,241 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,242 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,243 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,559 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,560 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,560 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:28,561 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:53:30,452 INFO L857 garLoopResultBuilder]: For program point L481(lines 481 485) no Hoare annotation was computed. [2021-10-28 09:53:30,452 INFO L857 garLoopResultBuilder]: For program point L481-1(lines 105 111) no Hoare annotation was computed. [2021-10-28 09:53:30,452 INFO L853 garLoopResultBuilder]: At program point L415(lines 410 418) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse7 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse10 (not .cse2)) (.cse5 (= ~waterLevel~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse9 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse4 (= 1 ~systemActive~0)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse13 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0))) (.cse6 (not (= ULTIMATE.start_processEnvironment_~tmp~0 0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse7 .cse0 .cse1 .cse8 .cse9 .cse10 .cse4 .cse11 .cse12 .cse13 .cse6) (and .cse7 .cse0 .cse1 .cse10 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse8 .cse9 .cse4 .cse11 .cse12 .cse13 .cse6)))) [2021-10-28 09:53:30,453 INFO L853 garLoopResultBuilder]: At program point L415-1(lines 410 418) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse5 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse6 (not .cse2)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse5 .cse0 .cse1 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse6 .cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~0 0))) (and .cse0 (not .cse1) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse5 .cse0 .cse1 .cse6 .cse3 .cse4)))) [2021-10-28 09:53:30,453 INFO L853 garLoopResultBuilder]: At program point L415-2(lines 410 418) the Hoare annotation is: false [2021-10-28 09:53:30,453 INFO L853 garLoopResultBuilder]: At program point L415-3(lines 410 418) the Hoare annotation is: false [2021-10-28 09:53:30,453 INFO L857 garLoopResultBuilder]: For program point L283(lines 283 287) no Hoare annotation was computed. [2021-10-28 09:53:30,453 INFO L853 garLoopResultBuilder]: At program point L415-4(lines 410 418) the Hoare annotation is: false [2021-10-28 09:53:30,453 INFO L853 garLoopResultBuilder]: At program point L415-5(lines 410 418) the Hoare annotation is: false [2021-10-28 09:53:30,454 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 932) no Hoare annotation was computed. [2021-10-28 09:53:30,454 INFO L857 garLoopResultBuilder]: For program point L548(lines 548 555) no Hoare annotation was computed. [2021-10-28 09:53:30,454 INFO L860 garLoopResultBuilder]: At program point L548-1(lines 548 555) the Hoare annotation is: true [2021-10-28 09:53:30,454 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-28 09:53:30,454 INFO L857 garLoopResultBuilder]: For program point L317(lines 317 321) no Hoare annotation was computed. [2021-10-28 09:53:30,454 INFO L857 garLoopResultBuilder]: For program point L317-2(lines 105 111) no Hoare annotation was computed. [2021-10-28 09:53:30,454 INFO L857 garLoopResultBuilder]: For program point L301(lines 301 307) no Hoare annotation was computed. [2021-10-28 09:53:30,455 INFO L853 garLoopResultBuilder]: At program point L301-1(lines 301 307) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse0 .cse1 .cse2 .cse5 .cse3) (and .cse1 .cse2 .cse6 .cse3 .cse4) (and .cse1 .cse2 .cse6 .cse5 .cse3))) [2021-10-28 09:53:30,455 INFO L857 garLoopResultBuilder]: For program point L137(lines 137 154) no Hoare annotation was computed. [2021-10-28 09:53:30,455 INFO L857 garLoopResultBuilder]: For program point L137-1(lines 137 154) no Hoare annotation was computed. [2021-10-28 09:53:30,455 INFO L857 garLoopResultBuilder]: For program point L137-2(lines 137 154) no Hoare annotation was computed. [2021-10-28 09:53:30,455 INFO L857 garLoopResultBuilder]: For program point L402(lines 402 406) no Hoare annotation was computed. [2021-10-28 09:53:30,455 INFO L853 garLoopResultBuilder]: At program point L105(lines 104 123) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse0 .cse1 .cse2 .cse5 .cse3) (and .cse1 .cse2 .cse6 .cse3 .cse4) (and .cse1 .cse2 .cse6 .cse5 .cse3))) [2021-10-28 09:53:30,455 INFO L857 garLoopResultBuilder]: For program point L105-1(lines 105 111) no Hoare annotation was computed. [2021-10-28 09:53:30,455 INFO L853 garLoopResultBuilder]: At program point L105-2(lines 104 123) the Hoare annotation is: false [2021-10-28 09:53:30,456 INFO L853 garLoopResultBuilder]: At program point L105-3(lines 104 123) the Hoare annotation is: false [2021-10-28 09:53:30,456 INFO L857 garLoopResultBuilder]: For program point L353(lines 353 366) no Hoare annotation was computed. [2021-10-28 09:53:30,456 INFO L853 garLoopResultBuilder]: At program point L353-1(lines 1 935) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse3 (not (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (.cse5 (not (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0))) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse6 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse4) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse3 .cse4 .cse5 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~0 0))) (and .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse4 .cse6))) [2021-10-28 09:53:30,456 INFO L857 garLoopResultBuilder]: For program point L353-2(lines 353 366) no Hoare annotation was computed. [2021-10-28 09:53:30,456 INFO L853 garLoopResultBuilder]: At program point L353-3(lines 1 935) the Hoare annotation is: false [2021-10-28 09:53:30,456 INFO L857 garLoopResultBuilder]: For program point L353-4(lines 353 366) no Hoare annotation was computed. [2021-10-28 09:53:30,456 INFO L853 garLoopResultBuilder]: At program point L353-5(lines 1 935) the Hoare annotation is: false [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point L932(line 932) no Hoare annotation was computed. [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point L932-1(line 932) no Hoare annotation was computed. [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point L932-2(line 932) no Hoare annotation was computed. [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point L174(lines 174 180) no Hoare annotation was computed. [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point L141(lines 141 149) no Hoare annotation was computed. [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point L141-1(lines 141 149) no Hoare annotation was computed. [2021-10-28 09:53:30,457 INFO L857 garLoopResultBuilder]: For program point L174-2(lines 174 180) no Hoare annotation was computed. [2021-10-28 09:53:30,458 INFO L853 garLoopResultBuilder]: At program point L75(lines 1 935) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-28 09:53:30,458 INFO L857 garLoopResultBuilder]: For program point L141-2(lines 141 149) no Hoare annotation was computed. [2021-10-28 09:53:30,458 INFO L857 garLoopResultBuilder]: For program point L174-4(lines 174 180) no Hoare annotation was computed. [2021-10-28 09:53:30,458 INFO L857 garLoopResultBuilder]: For program point L455(lines 455 461) no Hoare annotation was computed. [2021-10-28 09:53:30,458 INFO L857 garLoopResultBuilder]: For program point L455-1(lines 455 461) no Hoare annotation was computed. [2021-10-28 09:53:30,458 INFO L857 garLoopResultBuilder]: For program point L455-2(lines 455 461) no Hoare annotation was computed. [2021-10-28 09:53:30,458 INFO L857 garLoopResultBuilder]: For program point L257(lines 257 261) no Hoare annotation was computed. [2021-10-28 09:53:30,459 INFO L857 garLoopResultBuilder]: For program point L257-2(lines 257 261) no Hoare annotation was computed. [2021-10-28 09:53:30,459 INFO L857 garLoopResultBuilder]: For program point L257-3(lines 257 261) no Hoare annotation was computed. [2021-10-28 09:53:30,459 INFO L857 garLoopResultBuilder]: For program point L257-5(lines 257 261) no Hoare annotation was computed. [2021-10-28 09:53:30,459 INFO L857 garLoopResultBuilder]: For program point L257-6(lines 257 261) no Hoare annotation was computed. [2021-10-28 09:53:30,459 INFO L857 garLoopResultBuilder]: For program point L257-8(lines 257 261) no Hoare annotation was computed. [2021-10-28 09:53:30,459 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 932) no Hoare annotation was computed. [2021-10-28 09:53:30,459 INFO L853 garLoopResultBuilder]: At program point L208(lines 203 211) the Hoare annotation is: (and (= ULTIMATE.start_test_~splverifierCounter~0 0) (not (= ~pumpRunning~0 0)) (not (= |ULTIMATE.start_isPumpRunning_#res| 0)) (= ULTIMATE.start_activatePump_~tmp~1 0) (= 1 ~systemActive~0)) [2021-10-28 09:53:30,460 INFO L853 garLoopResultBuilder]: At program point L208-1(lines 203 211) the Hoare annotation is: false [2021-10-28 09:53:30,460 INFO L853 garLoopResultBuilder]: At program point L208-2(lines 203 211) the Hoare annotation is: false [2021-10-28 09:53:30,460 INFO L857 garLoopResultBuilder]: For program point L390(lines 390 394) no Hoare annotation was computed. [2021-10-28 09:53:30,460 INFO L857 garLoopResultBuilder]: For program point L357(lines 357 363) no Hoare annotation was computed. [2021-10-28 09:53:30,460 INFO L857 garLoopResultBuilder]: For program point L291(lines 291 297) no Hoare annotation was computed. [2021-10-28 09:53:30,460 INFO L857 garLoopResultBuilder]: For program point L357-2(lines 357 363) no Hoare annotation was computed. [2021-10-28 09:53:30,460 INFO L853 garLoopResultBuilder]: At program point L291-1(lines 291 297) the Hoare annotation is: (let ((.cse6 (= ~waterLevel~0 1)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse3 (not (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (.cse4 (= 1 ~systemActive~0)) (.cse5 (not (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse4) (and .cse1 .cse2 .cse7 .cse4 .cse6) (and .cse1 .cse2 .cse7 .cse8 .cse4) (and .cse0 .cse1 .cse2 .cse8 .cse3 .cse4 .cse5))) [2021-10-28 09:53:30,460 INFO L857 garLoopResultBuilder]: For program point L357-4(lines 357 363) no Hoare annotation was computed. [2021-10-28 09:53:30,461 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-28 09:53:30,461 INFO L860 garLoopResultBuilder]: At program point L557(lines 538 560) the Hoare annotation is: true [2021-10-28 09:53:30,461 INFO L853 garLoopResultBuilder]: At program point L112(lines 112 118) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) .cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~0 0))) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4))) [2021-10-28 09:53:30,461 INFO L853 garLoopResultBuilder]: At program point L112-1(lines 112 118) the Hoare annotation is: false [2021-10-28 09:53:30,461 INFO L853 garLoopResultBuilder]: At program point L112-2(lines 112 118) the Hoare annotation is: false [2021-10-28 09:53:30,461 INFO L853 garLoopResultBuilder]: At program point L525(lines 521 527) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-28 09:53:30,462 INFO L853 garLoopResultBuilder]: At program point L327(lines 280 328) the Hoare annotation is: false [2021-10-28 09:53:30,462 INFO L857 garLoopResultBuilder]: For program point L311(lines 311 322) no Hoare annotation was computed. [2021-10-28 09:53:30,462 INFO L853 garLoopResultBuilder]: At program point L460(lines 451 464) the Hoare annotation is: (let ((.cse5 (= ~methaneLevelCritical~0 0)) (.cse4 (= ~waterLevel~0 1)) (.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0)) (.cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse2 .cse5 .cse6 .cse3 .cse7) (and .cse1 .cse2 .cse5 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse7))) [2021-10-28 09:53:30,462 INFO L853 garLoopResultBuilder]: At program point L460-1(lines 451 464) the Hoare annotation is: false [2021-10-28 09:53:30,462 INFO L853 garLoopResultBuilder]: At program point L460-2(lines 451 464) the Hoare annotation is: false [2021-10-28 09:53:30,462 INFO L853 garLoopResultBuilder]: At program point L477-2(lines 477 491) the Hoare annotation is: false [2021-10-28 09:53:30,462 INFO L857 garLoopResultBuilder]: For program point L378(lines 378 382) no Hoare annotation was computed. [2021-10-28 09:53:30,462 INFO L857 garLoopResultBuilder]: For program point L378-3(lines 378 382) no Hoare annotation was computed. [2021-10-28 09:53:30,463 INFO L857 garLoopResultBuilder]: For program point L378-6(lines 378 382) no Hoare annotation was computed. [2021-10-28 09:53:30,463 INFO L853 garLoopResultBuilder]: At program point L263(lines 248 266) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse6 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0)) (.cse8 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse9 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0))) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse10 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse5 .cse6 .cse3 .cse7 .cse8 .cse9) (and .cse1 .cse2 .cse10 .cse5 .cse6 .cse3 .cse7 .cse8 .cse9) (and .cse1 .cse2 .cse10 .cse3 .cse4))) [2021-10-28 09:53:30,463 INFO L853 garLoopResultBuilder]: At program point L263-1(lines 248 266) the Hoare annotation is: false [2021-10-28 09:53:30,463 INFO L853 garLoopResultBuilder]: At program point L263-2(lines 248 266) the Hoare annotation is: false [2021-10-28 09:53:30,463 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-28 09:53:30,463 INFO L857 garLoopResultBuilder]: For program point L478(line 478) no Hoare annotation was computed. [2021-10-28 09:53:30,463 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 932) no Hoare annotation was computed. [2021-10-28 09:53:30,464 INFO L857 garLoopResultBuilder]: For program point L347(lines 347 367) no Hoare annotation was computed. [2021-10-28 09:53:30,464 INFO L857 garLoopResultBuilder]: For program point L347-2(lines 347 367) no Hoare annotation was computed. [2021-10-28 09:53:30,464 INFO L857 garLoopResultBuilder]: For program point L347-4(lines 347 367) no Hoare annotation was computed. [2021-10-28 09:53:30,464 INFO L853 garLoopResultBuilder]: At program point L83(lines 78 86) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-28 09:53:30,464 INFO L853 garLoopResultBuilder]: At program point L199(lines 192 202) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse4 (<= 2 ~waterLevel~0)) (.cse5 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0)) (.cse8 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse10 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0))) (.cse12 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse13 (not .cse2)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse6 (= 1 ~systemActive~0)) (.cse14 (= ~waterLevel~0 1)) (.cse9 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse11 (not (= ULTIMATE.start_processEnvironment_~tmp~0 0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11) (and .cse12 .cse0 .cse1 .cse4 .cse5 .cse13 .cse6 .cse7 .cse8 .cse10 .cse11) (and .cse12 .cse0 .cse1 .cse13 .cse6 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse3 .cse6 .cse14 .cse9 .cse11)))) [2021-10-28 09:53:30,464 INFO L853 garLoopResultBuilder]: At program point L199-1(lines 192 202) the Hoare annotation is: false [2021-10-28 09:53:30,464 INFO L853 garLoopResultBuilder]: At program point L199-2(lines 192 202) the Hoare annotation is: false [2021-10-28 09:53:30,465 INFO L853 garLoopResultBuilder]: At program point L447(lines 442 450) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 1 ~systemActive~0))) (or (and .cse0 (not .cse1) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse2) (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 (= |ULTIMATE.start_getWaterLevel_#res| 1) (= ~waterLevel~0 1)))) [2021-10-28 09:53:30,465 INFO L853 garLoopResultBuilder]: At program point L447-1(lines 442 450) the Hoare annotation is: false [2021-10-28 09:53:30,465 INFO L853 garLoopResultBuilder]: At program point L447-2(lines 442 450) the Hoare annotation is: false [2021-10-28 09:53:30,465 INFO L857 garLoopResultBuilder]: For program point L282(lines 281 326) no Hoare annotation was computed. [2021-10-28 09:53:30,470 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:53:30,472 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-28 09:53:30,504 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.10 09:53:30 BoogieIcfgContainer [2021-10-28 09:53:30,504 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-28 09:53:30,504 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-28 09:53:30,505 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-28 09:53:30,505 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-28 09:53:30,505 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:53:24" (3/4) ... [2021-10-28 09:53:30,508 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-28 09:53:30,528 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-28 09:53:30,529 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-28 09:53:30,530 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-28 09:53:30,531 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-28 09:53:30,532 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-28 09:53:30,533 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:53:30,534 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:53:30,561 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) [2021-10-28 09:53:30,561 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) [2021-10-28 09:53:30,562 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) [2021-10-28 09:53:30,564 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) [2021-10-28 09:53:30,564 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) [2021-10-28 09:53:30,565 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1) [2021-10-28 09:53:30,566 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) [2021-10-28 09:53:30,567 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((splverifierCounter == 0 && !(pumpRunning == 0)) && !(\result == 0)) && tmp == 0) && 1 == systemActive [2021-10-28 09:53:30,567 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) [2021-10-28 09:53:30,568 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && \result == 0) && !(tmp == 0)) [2021-10-28 09:53:30,613 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/witness.graphml [2021-10-28 09:53:30,613 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-28 09:53:30,615 INFO L168 Benchmark]: Toolchain (without parser) took 8055.92 ms. Allocated memory was 86.0 MB in the beginning and 125.8 MB in the end (delta: 39.8 MB). Free memory was 47.2 MB in the beginning and 38.5 MB in the end (delta: 8.8 MB). Peak memory consumption was 48.4 MB. Max. memory is 16.1 GB. [2021-10-28 09:53:30,615 INFO L168 Benchmark]: CDTParser took 0.21 ms. Allocated memory is still 86.0 MB. Free memory is still 65.0 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-28 09:53:30,616 INFO L168 Benchmark]: CACSL2BoogieTranslator took 620.52 ms. Allocated memory was 86.0 MB in the beginning and 104.9 MB in the end (delta: 18.9 MB). Free memory was 47.0 MB in the beginning and 73.2 MB in the end (delta: -26.1 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-10-28 09:53:30,616 INFO L168 Benchmark]: Boogie Procedure Inliner took 80.75 ms. Allocated memory is still 104.9 MB. Free memory was 72.7 MB in the beginning and 69.6 MB in the end (delta: 3.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-28 09:53:30,616 INFO L168 Benchmark]: Boogie Preprocessor took 46.91 ms. Allocated memory is still 104.9 MB. Free memory was 69.6 MB in the beginning and 67.5 MB in the end (delta: 2.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-28 09:53:30,617 INFO L168 Benchmark]: RCFGBuilder took 998.38 ms. Allocated memory is still 104.9 MB. Free memory was 67.4 MB in the beginning and 69.5 MB in the end (delta: -2.1 MB). Peak memory consumption was 37.1 MB. Max. memory is 16.1 GB. [2021-10-28 09:53:30,617 INFO L168 Benchmark]: TraceAbstraction took 6188.03 ms. Allocated memory was 104.9 MB in the beginning and 125.8 MB in the end (delta: 21.0 MB). Free memory was 68.9 MB in the beginning and 47.9 MB in the end (delta: 21.0 MB). Peak memory consumption was 60.4 MB. Max. memory is 16.1 GB. [2021-10-28 09:53:30,618 INFO L168 Benchmark]: Witness Printer took 108.43 ms. Allocated memory is still 125.8 MB. Free memory was 47.9 MB in the beginning and 38.5 MB in the end (delta: 9.4 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-28 09:53:30,620 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21 ms. Allocated memory is still 86.0 MB. Free memory is still 65.0 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 620.52 ms. Allocated memory was 86.0 MB in the beginning and 104.9 MB in the end (delta: 18.9 MB). Free memory was 47.0 MB in the beginning and 73.2 MB in the end (delta: -26.1 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 80.75 ms. Allocated memory is still 104.9 MB. Free memory was 72.7 MB in the beginning and 69.6 MB in the end (delta: 3.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 46.91 ms. Allocated memory is still 104.9 MB. Free memory was 69.6 MB in the beginning and 67.5 MB in the end (delta: 2.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * RCFGBuilder took 998.38 ms. Allocated memory is still 104.9 MB. Free memory was 67.4 MB in the beginning and 69.5 MB in the end (delta: -2.1 MB). Peak memory consumption was 37.1 MB. Max. memory is 16.1 GB. * TraceAbstraction took 6188.03 ms. Allocated memory was 104.9 MB in the beginning and 125.8 MB in the end (delta: 21.0 MB). Free memory was 68.9 MB in the beginning and 47.9 MB in the end (delta: 21.0 MB). Peak memory consumption was 60.4 MB. Max. memory is 16.1 GB. * Witness Printer took 108.43 ms. Allocated memory is still 125.8 MB. Free memory was 47.9 MB in the beginning and 38.5 MB in the end (delta: 9.4 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 932]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 932]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 932]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 93 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 6.0s, OverallIterations: 11, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.3s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.0s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 1028 SDtfs, 1366 SDslu, 1800 SDs, 0 SdLazy, 263 SolverSat, 37 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.4s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 77 GetRequests, 22 SyntacticMatches, 0 SemanticMatches, 55 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 47 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=302occurred in iteration=9, InterpolantAutomatonStates: 65, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 11 MinimizatonAttempts, 1248 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 39 LocationsWithAnnotation, 39 PreInvPairs, 204 NumberOfFragments, 1061 HoareAnnotationTreeSize, 39 FomulaSimplifications, 189890 FormulaSimplificationTreeSizeReduction, 1.2s HoareSimplificationTime, 39 FomulaSimplificationsInter, 8055 FormulaSimplificationTreeSizeReductionInter, 1.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 0.7s InterpolantComputationTime, 319 NumberOfCodeBlocks, 319 NumberOfCodeBlocksAsserted, 11 NumberOfCheckSat, 308 ConstructedInterpolants, 0 QuantifiedInterpolants, 687 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 11 InterpolantComputations, 11 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 521]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && !(pumpRunning == 0)) && !(\result == 0)) && tmp == 0) && 1 == systemActive - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 192]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 548]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 104]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 477]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 192]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && \result == 0) && !(tmp == 0)) - InvariantResult [Line: 291]: Loop Invariant Derived loop invariant: (((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) - InvariantResult [Line: 104]: Loop Invariant Derived loop invariant: (((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 112]: Loop Invariant Derived loop invariant: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 280]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 78]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 112]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1) - InvariantResult [Line: 104]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 301]: Loop Invariant Derived loop invariant: (((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 538]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 112]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 192]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-10-28 09:53:30,688 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_02b4418c-1104-4269-ab38-5f71e0824f2c/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...