./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 449370313253a0d5d7b509b2cd15e912fe8e85dcb7140575e7078385cf7fc6cf ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-28 09:07:41,147 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-28 09:07:41,149 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-28 09:07:41,183 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-28 09:07:41,183 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-28 09:07:41,185 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-28 09:07:41,187 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-28 09:07:41,189 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-28 09:07:41,192 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-28 09:07:41,195 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-28 09:07:41,196 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-28 09:07:41,198 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-28 09:07:41,200 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-28 09:07:41,204 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-28 09:07:41,206 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-28 09:07:41,209 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-28 09:07:41,213 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-28 09:07:41,220 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-28 09:07:41,223 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-28 09:07:41,228 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-28 09:07:41,234 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-28 09:07:41,240 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-28 09:07:41,241 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-28 09:07:41,242 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-28 09:07:41,245 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-28 09:07:41,246 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-28 09:07:41,246 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-28 09:07:41,247 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-28 09:07:41,248 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-28 09:07:41,249 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-28 09:07:41,250 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-28 09:07:41,251 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-28 09:07:41,252 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-28 09:07:41,253 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-28 09:07:41,254 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-28 09:07:41,254 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-28 09:07:41,255 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-28 09:07:41,255 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-28 09:07:41,256 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-28 09:07:41,257 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-28 09:07:41,258 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-28 09:07:41,259 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-28 09:07:41,286 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-28 09:07:41,286 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-28 09:07:41,287 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-28 09:07:41,287 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-28 09:07:41,288 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-28 09:07:41,288 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-28 09:07:41,288 INFO L138 SettingsManager]: * Use SBE=true [2021-10-28 09:07:41,289 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-28 09:07:41,289 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-28 09:07:41,289 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-28 09:07:41,289 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-28 09:07:41,289 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-28 09:07:41,290 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-28 09:07:41,290 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-28 09:07:41,290 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-28 09:07:41,290 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-28 09:07:41,290 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-28 09:07:41,291 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-28 09:07:41,291 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-28 09:07:41,291 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-28 09:07:41,291 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-28 09:07:41,291 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-28 09:07:41,292 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:07:41,292 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-28 09:07:41,292 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-28 09:07:41,292 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-28 09:07:41,292 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-28 09:07:41,293 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-28 09:07:41,293 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-28 09:07:41,293 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-28 09:07:41,293 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-28 09:07:41,293 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-28 09:07:41,293 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 449370313253a0d5d7b509b2cd15e912fe8e85dcb7140575e7078385cf7fc6cf [2021-10-28 09:07:41,554 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-28 09:07:41,577 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-28 09:07:41,580 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-28 09:07:41,581 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-28 09:07:41,585 INFO L275 PluginConnector]: CDTParser initialized [2021-10-28 09:07:41,586 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c [2021-10-28 09:07:41,673 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/data/e2b122b7e/c1fc96ddbbf240fc8842d461cb04f745/FLAG30dfb942d [2021-10-28 09:07:42,213 INFO L306 CDTParser]: Found 1 translation units. [2021-10-28 09:07:42,218 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c [2021-10-28 09:07:42,234 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/data/e2b122b7e/c1fc96ddbbf240fc8842d461cb04f745/FLAG30dfb942d [2021-10-28 09:07:42,508 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/data/e2b122b7e/c1fc96ddbbf240fc8842d461cb04f745 [2021-10-28 09:07:42,511 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-28 09:07:42,512 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-28 09:07:42,514 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-28 09:07:42,514 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-28 09:07:42,518 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-28 09:07:42,519 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:07:42" (1/1) ... [2021-10-28 09:07:42,520 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2f6f397b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:42, skipping insertion in model container [2021-10-28 09:07:42,521 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:07:42" (1/1) ... [2021-10-28 09:07:42,528 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-28 09:07:42,571 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-28 09:07:42,879 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c[7477,7490] [2021-10-28 09:07:42,980 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:07:42,999 INFO L203 MainTranslator]: Completed pre-run [2021-10-28 09:07:43,063 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c[7477,7490] [2021-10-28 09:07:43,111 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:07:43,138 INFO L208 MainTranslator]: Completed translation [2021-10-28 09:07:43,138 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43 WrapperNode [2021-10-28 09:07:43,139 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-28 09:07:43,140 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-28 09:07:43,140 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-28 09:07:43,140 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-28 09:07:43,148 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,166 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,214 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-28 09:07:43,215 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-28 09:07:43,215 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-28 09:07:43,215 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-28 09:07:43,224 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,225 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,230 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,231 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,245 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,253 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,256 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,261 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-28 09:07:43,262 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-28 09:07:43,262 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-28 09:07:43,262 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-28 09:07:43,267 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (1/1) ... [2021-10-28 09:07:43,284 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:07:43,293 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/z3 [2021-10-28 09:07:43,305 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-28 09:07:43,314 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-28 09:07:43,340 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-28 09:07:43,341 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-28 09:07:43,341 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-28 09:07:43,341 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-28 09:07:44,271 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-28 09:07:44,272 INFO L299 CfgBuilder]: Removed 122 assume(true) statements. [2021-10-28 09:07:44,274 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:07:44 BoogieIcfgContainer [2021-10-28 09:07:44,274 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-28 09:07:44,276 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-28 09:07:44,276 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-28 09:07:44,280 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-28 09:07:44,280 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.10 09:07:42" (1/3) ... [2021-10-28 09:07:44,281 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@53d2d1f5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:07:44, skipping insertion in model container [2021-10-28 09:07:44,281 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:07:43" (2/3) ... [2021-10-28 09:07:44,282 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@53d2d1f5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:07:44, skipping insertion in model container [2021-10-28 09:07:44,282 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:07:44" (3/3) ... [2021-10-28 09:07:44,284 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product42.cil.c [2021-10-28 09:07:44,290 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-28 09:07:44,290 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-28 09:07:44,342 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-28 09:07:44,349 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-28 09:07:44,349 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-28 09:07:44,368 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:44,374 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-28 09:07:44,375 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:44,375 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:44,376 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:44,382 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:44,383 INFO L85 PathProgramCache]: Analyzing trace with hash -1623272414, now seen corresponding path program 1 times [2021-10-28 09:07:44,392 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:44,393 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1388137210] [2021-10-28 09:07:44,393 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:44,394 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:44,575 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:44,747 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:44,748 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:44,748 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1388137210] [2021-10-28 09:07:44,749 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1388137210] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:44,749 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:44,749 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:07:44,760 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1486429628] [2021-10-28 09:07:44,773 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-28 09:07:44,776 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:44,795 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-28 09:07:44,800 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:07:44,804 INFO L87 Difference]: Start difference. First operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:44,858 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:44,859 INFO L93 Difference]: Finished difference Result 180 states and 269 transitions. [2021-10-28 09:07:44,859 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-28 09:07:44,860 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-28 09:07:44,861 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:44,872 INFO L225 Difference]: With dead ends: 180 [2021-10-28 09:07:44,872 INFO L226 Difference]: Without dead ends: 89 [2021-10-28 09:07:44,876 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:07:44,894 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2021-10-28 09:07:44,923 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2021-10-28 09:07:44,927 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 86 states have (on average 1.4651162790697674) internal successors, (126), 88 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:44,935 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 126 transitions. [2021-10-28 09:07:44,936 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 126 transitions. Word has length 18 [2021-10-28 09:07:44,937 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:44,938 INFO L470 AbstractCegarLoop]: Abstraction has 89 states and 126 transitions. [2021-10-28 09:07:44,938 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:44,938 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 126 transitions. [2021-10-28 09:07:44,941 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-28 09:07:44,941 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:44,941 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:44,942 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-28 09:07:44,942 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:44,946 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:44,946 INFO L85 PathProgramCache]: Analyzing trace with hash 352621777, now seen corresponding path program 1 times [2021-10-28 09:07:44,946 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:44,947 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1596945719] [2021-10-28 09:07:44,947 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:44,947 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:45,018 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:45,123 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:45,123 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:45,124 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1596945719] [2021-10-28 09:07:45,124 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1596945719] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:45,124 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:45,124 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:07:45,125 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1536616680] [2021-10-28 09:07:45,127 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:07:45,127 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:45,130 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:07:45,134 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:07:45,135 INFO L87 Difference]: Start difference. First operand 89 states and 126 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,144 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:45,144 INFO L93 Difference]: Finished difference Result 89 states and 126 transitions. [2021-10-28 09:07:45,145 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:07:45,145 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-28 09:07:45,145 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:45,146 INFO L225 Difference]: With dead ends: 89 [2021-10-28 09:07:45,146 INFO L226 Difference]: Without dead ends: 39 [2021-10-28 09:07:45,147 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:07:45,148 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-28 09:07:45,151 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-28 09:07:45,152 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 38 states have internal predecessors, (55), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,152 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 55 transitions. [2021-10-28 09:07:45,152 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 55 transitions. Word has length 19 [2021-10-28 09:07:45,153 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:45,153 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 55 transitions. [2021-10-28 09:07:45,153 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,153 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 55 transitions. [2021-10-28 09:07:45,154 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-28 09:07:45,154 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:45,155 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:45,155 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-28 09:07:45,155 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:45,156 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:45,156 INFO L85 PathProgramCache]: Analyzing trace with hash 1246279967, now seen corresponding path program 1 times [2021-10-28 09:07:45,156 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:45,157 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [12275968] [2021-10-28 09:07:45,157 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:45,157 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:45,186 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:45,259 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:45,259 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:45,260 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [12275968] [2021-10-28 09:07:45,260 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [12275968] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:45,260 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:45,261 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:07:45,261 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1845116971] [2021-10-28 09:07:45,261 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:07:45,262 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:45,262 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:07:45,263 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:07:45,263 INFO L87 Difference]: Start difference. First operand 39 states and 55 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,304 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:45,305 INFO L93 Difference]: Finished difference Result 72 states and 104 transitions. [2021-10-28 09:07:45,305 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:07:45,305 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-28 09:07:45,306 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:45,306 INFO L225 Difference]: With dead ends: 72 [2021-10-28 09:07:45,307 INFO L226 Difference]: Without dead ends: 39 [2021-10-28 09:07:45,307 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:07:45,308 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-28 09:07:45,312 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-28 09:07:45,312 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4210526315789473) internal successors, (54), 38 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,313 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 54 transitions. [2021-10-28 09:07:45,313 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 54 transitions. Word has length 24 [2021-10-28 09:07:45,313 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:45,314 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 54 transitions. [2021-10-28 09:07:45,314 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,314 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 54 transitions. [2021-10-28 09:07:45,315 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-10-28 09:07:45,315 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:45,315 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:45,316 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-28 09:07:45,316 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:45,316 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:45,317 INFO L85 PathProgramCache]: Analyzing trace with hash 607128155, now seen corresponding path program 1 times [2021-10-28 09:07:45,317 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:45,317 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1160380476] [2021-10-28 09:07:45,317 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:45,318 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:45,363 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:45,409 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:45,409 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:45,410 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1160380476] [2021-10-28 09:07:45,410 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1160380476] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:45,410 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:45,410 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:07:45,411 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1664426484] [2021-10-28 09:07:45,411 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:07:45,411 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:45,412 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:07:45,412 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:07:45,413 INFO L87 Difference]: Start difference. First operand 39 states and 54 transitions. Second operand has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,431 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:45,432 INFO L93 Difference]: Finished difference Result 95 states and 135 transitions. [2021-10-28 09:07:45,432 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:07:45,432 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-10-28 09:07:45,433 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:45,434 INFO L225 Difference]: With dead ends: 95 [2021-10-28 09:07:45,434 INFO L226 Difference]: Without dead ends: 62 [2021-10-28 09:07:45,435 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:07:45,435 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2021-10-28 09:07:45,442 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 60. [2021-10-28 09:07:45,442 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 60 states, 59 states have (on average 1.423728813559322) internal successors, (84), 59 states have internal predecessors, (84), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,443 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 60 states to 60 states and 84 transitions. [2021-10-28 09:07:45,443 INFO L78 Accepts]: Start accepts. Automaton has 60 states and 84 transitions. Word has length 25 [2021-10-28 09:07:45,443 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:45,444 INFO L470 AbstractCegarLoop]: Abstraction has 60 states and 84 transitions. [2021-10-28 09:07:45,444 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,444 INFO L276 IsEmpty]: Start isEmpty. Operand 60 states and 84 transitions. [2021-10-28 09:07:45,445 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-10-28 09:07:45,445 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:45,446 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:45,446 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-28 09:07:45,446 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:45,447 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:45,447 INFO L85 PathProgramCache]: Analyzing trace with hash 1327381871, now seen corresponding path program 1 times [2021-10-28 09:07:45,447 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:45,447 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1441870183] [2021-10-28 09:07:45,448 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:45,448 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:45,480 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:45,558 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:45,558 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:45,558 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1441870183] [2021-10-28 09:07:45,559 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1441870183] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:45,559 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:45,559 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:07:45,559 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1751664988] [2021-10-28 09:07:45,560 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:07:45,560 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:45,560 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:07:45,561 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:07:45,561 INFO L87 Difference]: Start difference. First operand 60 states and 84 transitions. Second operand has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,717 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:45,718 INFO L93 Difference]: Finished difference Result 320 states and 467 transitions. [2021-10-28 09:07:45,719 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:07:45,719 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 31 [2021-10-28 09:07:45,719 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:45,722 INFO L225 Difference]: With dead ends: 320 [2021-10-28 09:07:45,727 INFO L226 Difference]: Without dead ends: 266 [2021-10-28 09:07:45,729 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:07:45,731 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 266 states. [2021-10-28 09:07:45,763 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 266 to 108. [2021-10-28 09:07:45,764 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 107 states have (on average 1.4018691588785046) internal successors, (150), 107 states have internal predecessors, (150), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,765 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 150 transitions. [2021-10-28 09:07:45,766 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 150 transitions. Word has length 31 [2021-10-28 09:07:45,766 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:45,766 INFO L470 AbstractCegarLoop]: Abstraction has 108 states and 150 transitions. [2021-10-28 09:07:45,767 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,768 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 150 transitions. [2021-10-28 09:07:45,773 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:07:45,773 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:45,774 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:45,774 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-28 09:07:45,774 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:45,775 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:45,775 INFO L85 PathProgramCache]: Analyzing trace with hash -1796495249, now seen corresponding path program 1 times [2021-10-28 09:07:45,775 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:45,775 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1828910008] [2021-10-28 09:07:45,776 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:45,776 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:45,804 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:45,866 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:45,867 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:45,867 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1828910008] [2021-10-28 09:07:45,867 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1828910008] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:45,867 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:45,868 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:07:45,868 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1235951017] [2021-10-28 09:07:45,868 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:07:45,869 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:45,869 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:07:45,869 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:07:45,870 INFO L87 Difference]: Start difference. First operand 108 states and 150 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,906 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:45,906 INFO L93 Difference]: Finished difference Result 343 states and 483 transitions. [2021-10-28 09:07:45,907 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:07:45,907 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:07:45,907 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:45,909 INFO L225 Difference]: With dead ends: 343 [2021-10-28 09:07:45,909 INFO L226 Difference]: Without dead ends: 241 [2021-10-28 09:07:45,910 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:07:45,911 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 241 states. [2021-10-28 09:07:45,933 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 241 to 108. [2021-10-28 09:07:45,937 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 107 states have (on average 1.3925233644859814) internal successors, (149), 107 states have internal predecessors, (149), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,938 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 149 transitions. [2021-10-28 09:07:45,938 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 149 transitions. Word has length 32 [2021-10-28 09:07:45,939 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:45,939 INFO L470 AbstractCegarLoop]: Abstraction has 108 states and 149 transitions. [2021-10-28 09:07:45,939 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:45,940 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 149 transitions. [2021-10-28 09:07:45,940 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:07:45,942 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:45,943 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:45,943 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-28 09:07:45,943 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:45,944 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:45,944 INFO L85 PathProgramCache]: Analyzing trace with hash -1538329811, now seen corresponding path program 1 times [2021-10-28 09:07:45,944 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:45,944 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1118428361] [2021-10-28 09:07:45,946 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:45,946 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:45,977 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:46,037 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:46,038 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:46,038 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1118428361] [2021-10-28 09:07:46,038 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1118428361] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:46,039 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:46,039 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-28 09:07:46,040 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [309763313] [2021-10-28 09:07:46,040 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:07:46,041 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:46,041 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:07:46,041 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:07:46,042 INFO L87 Difference]: Start difference. First operand 108 states and 149 transitions. Second operand has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,138 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:46,138 INFO L93 Difference]: Finished difference Result 386 states and 542 transitions. [2021-10-28 09:07:46,138 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-28 09:07:46,139 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:07:46,140 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:46,142 INFO L225 Difference]: With dead ends: 386 [2021-10-28 09:07:46,143 INFO L226 Difference]: Without dead ends: 284 [2021-10-28 09:07:46,146 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-10-28 09:07:46,147 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 284 states. [2021-10-28 09:07:46,178 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 284 to 111. [2021-10-28 09:07:46,178 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 111 states, 110 states have (on average 1.3727272727272728) internal successors, (151), 110 states have internal predecessors, (151), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,179 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 111 states to 111 states and 151 transitions. [2021-10-28 09:07:46,179 INFO L78 Accepts]: Start accepts. Automaton has 111 states and 151 transitions. Word has length 32 [2021-10-28 09:07:46,180 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:46,180 INFO L470 AbstractCegarLoop]: Abstraction has 111 states and 151 transitions. [2021-10-28 09:07:46,180 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,180 INFO L276 IsEmpty]: Start isEmpty. Operand 111 states and 151 transitions. [2021-10-28 09:07:46,182 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-28 09:07:46,182 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:46,182 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:46,183 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-28 09:07:46,183 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:46,183 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:46,184 INFO L85 PathProgramCache]: Analyzing trace with hash -1048057311, now seen corresponding path program 1 times [2021-10-28 09:07:46,184 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:46,184 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [781988730] [2021-10-28 09:07:46,184 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:46,184 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:46,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:46,255 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:46,256 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:46,256 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [781988730] [2021-10-28 09:07:46,256 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [781988730] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:46,256 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:46,256 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:07:46,257 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [479003154] [2021-10-28 09:07:46,257 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:07:46,257 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:46,258 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:07:46,258 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:07:46,258 INFO L87 Difference]: Start difference. First operand 111 states and 151 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,469 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:46,469 INFO L93 Difference]: Finished difference Result 814 states and 1107 transitions. [2021-10-28 09:07:46,470 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-28 09:07:46,470 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-28 09:07:46,471 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:46,475 INFO L225 Difference]: With dead ends: 814 [2021-10-28 09:07:46,476 INFO L226 Difference]: Without dead ends: 709 [2021-10-28 09:07:46,477 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-28 09:07:46,478 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 709 states. [2021-10-28 09:07:46,521 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 709 to 202. [2021-10-28 09:07:46,522 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 202 states, 201 states have (on average 1.3532338308457712) internal successors, (272), 201 states have internal predecessors, (272), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,523 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 202 states to 202 states and 272 transitions. [2021-10-28 09:07:46,523 INFO L78 Accepts]: Start accepts. Automaton has 202 states and 272 transitions. Word has length 35 [2021-10-28 09:07:46,523 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:46,524 INFO L470 AbstractCegarLoop]: Abstraction has 202 states and 272 transitions. [2021-10-28 09:07:46,524 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,524 INFO L276 IsEmpty]: Start isEmpty. Operand 202 states and 272 transitions. [2021-10-28 09:07:46,526 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-28 09:07:46,526 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:46,527 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:46,527 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-28 09:07:46,527 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:46,528 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:46,528 INFO L85 PathProgramCache]: Analyzing trace with hash -367998941, now seen corresponding path program 1 times [2021-10-28 09:07:46,528 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:46,528 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1574229763] [2021-10-28 09:07:46,528 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:46,529 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:46,561 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:46,617 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:46,618 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:46,618 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1574229763] [2021-10-28 09:07:46,618 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1574229763] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:46,618 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:46,619 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:07:46,619 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1498548989] [2021-10-28 09:07:46,619 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:07:46,619 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:46,620 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:07:46,620 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:07:46,621 INFO L87 Difference]: Start difference. First operand 202 states and 272 transitions. Second operand has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,804 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:46,805 INFO L93 Difference]: Finished difference Result 516 states and 713 transitions. [2021-10-28 09:07:46,805 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:07:46,805 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-28 09:07:46,806 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:46,807 INFO L225 Difference]: With dead ends: 516 [2021-10-28 09:07:46,807 INFO L226 Difference]: Without dead ends: 104 [2021-10-28 09:07:46,811 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:07:46,812 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-10-28 09:07:46,823 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 97. [2021-10-28 09:07:46,826 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 97 states, 96 states have (on average 1.25) internal successors, (120), 96 states have internal predecessors, (120), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,826 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 97 states to 97 states and 120 transitions. [2021-10-28 09:07:46,827 INFO L78 Accepts]: Start accepts. Automaton has 97 states and 120 transitions. Word has length 35 [2021-10-28 09:07:46,829 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:46,829 INFO L470 AbstractCegarLoop]: Abstraction has 97 states and 120 transitions. [2021-10-28 09:07:46,830 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:46,830 INFO L276 IsEmpty]: Start isEmpty. Operand 97 states and 120 transitions. [2021-10-28 09:07:46,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:07:46,831 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:07:46,832 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:46,832 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-28 09:07:46,833 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:07:46,833 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:07:46,834 INFO L85 PathProgramCache]: Analyzing trace with hash -1326928741, now seen corresponding path program 1 times [2021-10-28 09:07:46,834 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:07:46,835 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1780519990] [2021-10-28 09:07:46,836 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:07:46,836 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:07:46,863 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:07:46,921 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:07:46,924 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:07:46,924 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1780519990] [2021-10-28 09:07:46,924 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1780519990] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:07:46,924 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:07:46,925 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:07:46,925 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1778843346] [2021-10-28 09:07:46,925 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:07:46,927 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:07:46,927 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:07:46,928 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:07:46,928 INFO L87 Difference]: Start difference. First operand 97 states and 120 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:47,065 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:07:47,065 INFO L93 Difference]: Finished difference Result 229 states and 283 transitions. [2021-10-28 09:07:47,066 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-10-28 09:07:47,066 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:07:47,066 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:07:47,066 INFO L225 Difference]: With dead ends: 229 [2021-10-28 09:07:47,066 INFO L226 Difference]: Without dead ends: 0 [2021-10-28 09:07:47,067 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:07:47,067 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-28 09:07:47,068 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-28 09:07:47,075 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:47,075 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-28 09:07:47,075 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 36 [2021-10-28 09:07:47,076 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:07:47,076 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-28 09:07:47,076 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:07:47,076 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-28 09:07:47,076 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-28 09:07:47,079 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:07:47,079 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:07:47,080 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:07:47,080 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-28 09:07:47,082 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-28 09:07:47,087 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,422 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,531 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,532 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,548 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,549 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,636 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,637 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,638 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,639 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,664 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,666 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,786 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,787 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,806 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,807 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,808 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,988 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,990 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,991 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:47,991 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,069 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,069 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,071 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,072 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,072 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,073 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,189 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,189 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,231 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,298 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,299 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,304 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,305 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,306 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,306 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,307 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,308 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,309 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:48,557 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:07:51,247 INFO L857 garLoopResultBuilder]: For program point L415(lines 415 419) no Hoare annotation was computed. [2021-10-28 09:07:51,248 INFO L857 garLoopResultBuilder]: For program point L415-3(lines 415 419) no Hoare annotation was computed. [2021-10-28 09:07:51,248 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-10-28 09:07:51,248 INFO L857 garLoopResultBuilder]: For program point L415-6(lines 415 419) no Hoare annotation was computed. [2021-10-28 09:07:51,248 INFO L857 garLoopResultBuilder]: For program point L928(lines 928 941) no Hoare annotation was computed. [2021-10-28 09:07:51,248 INFO L853 garLoopResultBuilder]: At program point L928-1(lines 1 945) the Hoare annotation is: (let ((.cse3 (<= ~waterLevel~0 1)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse7 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse6 .cse8) (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse4 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse5 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse6 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse7 .cse8) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse6 .cse8 (= ~pumpRunning~0 1)))) [2021-10-28 09:07:51,248 INFO L857 garLoopResultBuilder]: For program point L928-2(lines 928 941) no Hoare annotation was computed. [2021-10-28 09:07:51,249 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-28 09:07:51,249 INFO L853 garLoopResultBuilder]: At program point L928-3(lines 1 945) the Hoare annotation is: false [2021-10-28 09:07:51,249 INFO L857 garLoopResultBuilder]: For program point L928-4(lines 928 941) no Hoare annotation was computed. [2021-10-28 09:07:51,249 INFO L853 garLoopResultBuilder]: At program point L928-5(lines 1 945) the Hoare annotation is: false [2021-10-28 09:07:51,249 INFO L857 garLoopResultBuilder]: For program point L185(lines 185 191) no Hoare annotation was computed. [2021-10-28 09:07:51,249 INFO L853 garLoopResultBuilder]: At program point L185-1(lines 185 191) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-28 09:07:51,249 INFO L857 garLoopResultBuilder]: For program point L269(lines 269 286) no Hoare annotation was computed. [2021-10-28 09:07:51,250 INFO L857 garLoopResultBuilder]: For program point L269-1(lines 269 286) no Hoare annotation was computed. [2021-10-28 09:07:51,250 INFO L857 garLoopResultBuilder]: For program point L203(lines 203 207) no Hoare annotation was computed. [2021-10-28 09:07:51,250 INFO L857 garLoopResultBuilder]: For program point L269-2(lines 269 286) no Hoare annotation was computed. [2021-10-28 09:07:51,250 INFO L853 garLoopResultBuilder]: At program point L203-2(lines 237 243) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-28 09:07:51,250 INFO L853 garLoopResultBuilder]: At program point L484(lines 479 487) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse0 .cse1 (= ~pumpRunning~0 0) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) .cse2 .cse3) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse2 .cse3 (= ~pumpRunning~0 1)))) [2021-10-28 09:07:51,250 INFO L853 garLoopResultBuilder]: At program point L484-1(lines 479 487) the Hoare annotation is: false [2021-10-28 09:07:51,250 INFO L853 garLoopResultBuilder]: At program point L484-2(lines 479 487) the Hoare annotation is: false [2021-10-28 09:07:51,251 INFO L853 garLoopResultBuilder]: At program point L534(lines 1 945) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:07:51,251 INFO L853 garLoopResultBuilder]: At program point L237(lines 236 255) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-28 09:07:51,251 INFO L857 garLoopResultBuilder]: For program point L237-1(lines 237 243) no Hoare annotation was computed. [2021-10-28 09:07:51,251 INFO L853 garLoopResultBuilder]: At program point L237-2(lines 236 255) the Hoare annotation is: false [2021-10-28 09:07:51,251 INFO L853 garLoopResultBuilder]: At program point L237-3(lines 236 255) the Hoare annotation is: false [2021-10-28 09:07:51,251 INFO L853 garLoopResultBuilder]: At program point L452(lines 447 455) the Hoare annotation is: (let ((.cse5 (<= ~waterLevel~0 1)) (.cse10 (= ~methaneLevelCritical~0 1)) (.cse14 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse9 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse6 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0))) (.cse11 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse12 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse13 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 .cse9 .cse6 .cse10 .cse11 .cse7 .cse12 .cse13 .cse14 .cse8) (and .cse0 .cse1 .cse2 .cse5 .cse6 .cse10 .cse7 .cse14 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse9 .cse6 .cse11 .cse7 .cse12 .cse13 .cse8))) [2021-10-28 09:07:51,252 INFO L853 garLoopResultBuilder]: At program point L452-1(lines 447 455) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse7 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse3 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse4 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse5 .cse6) (and .cse0 .cse1 .cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse7 .cse4 .cse6) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse4 .cse6 (= ~pumpRunning~0 1)) (and .cse0 .cse1 .cse2 .cse7 .cse3 .cse4 .cse5 .cse6))) [2021-10-28 09:07:51,252 INFO L853 garLoopResultBuilder]: At program point L452-2(lines 447 455) the Hoare annotation is: false [2021-10-28 09:07:51,252 INFO L853 garLoopResultBuilder]: At program point L452-3(lines 447 455) the Hoare annotation is: false [2021-10-28 09:07:51,252 INFO L853 garLoopResultBuilder]: At program point L452-4(lines 447 455) the Hoare annotation is: false [2021-10-28 09:07:51,252 INFO L853 garLoopResultBuilder]: At program point L452-5(lines 447 455) the Hoare annotation is: false [2021-10-28 09:07:51,252 INFO L857 garLoopResultBuilder]: For program point L932(lines 932 938) no Hoare annotation was computed. [2021-10-28 09:07:51,252 INFO L857 garLoopResultBuilder]: For program point L932-2(lines 932 938) no Hoare annotation was computed. [2021-10-28 09:07:51,253 INFO L857 garLoopResultBuilder]: For program point L932-4(lines 932 938) no Hoare annotation was computed. [2021-10-28 09:07:51,253 INFO L857 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2021-10-28 09:07:51,253 INFO L860 garLoopResultBuilder]: At program point L140-1(lines 140 147) the Hoare annotation is: true [2021-10-28 09:07:51,253 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-28 09:07:51,253 INFO L857 garLoopResultBuilder]: For program point L306(lines 306 312) no Hoare annotation was computed. [2021-10-28 09:07:51,253 INFO L857 garLoopResultBuilder]: For program point L273(lines 273 281) no Hoare annotation was computed. [2021-10-28 09:07:51,253 INFO L857 garLoopResultBuilder]: For program point L273-1(lines 273 281) no Hoare annotation was computed. [2021-10-28 09:07:51,253 INFO L857 garLoopResultBuilder]: For program point L306-2(lines 306 312) no Hoare annotation was computed. [2021-10-28 09:07:51,254 INFO L857 garLoopResultBuilder]: For program point L273-2(lines 273 281) no Hoare annotation was computed. [2021-10-28 09:07:51,254 INFO L857 garLoopResultBuilder]: For program point L306-4(lines 306 312) no Hoare annotation was computed. [2021-10-28 09:07:51,254 INFO L857 garLoopResultBuilder]: For program point L389(lines 389 393) no Hoare annotation was computed. [2021-10-28 09:07:51,254 INFO L857 garLoopResultBuilder]: For program point L389-2(lines 389 393) no Hoare annotation was computed. [2021-10-28 09:07:51,254 INFO L857 garLoopResultBuilder]: For program point L389-3(lines 389 393) no Hoare annotation was computed. [2021-10-28 09:07:51,254 INFO L857 garLoopResultBuilder]: For program point L389-5(lines 389 393) no Hoare annotation was computed. [2021-10-28 09:07:51,258 INFO L857 garLoopResultBuilder]: For program point L389-6(lines 389 393) no Hoare annotation was computed. [2021-10-28 09:07:51,258 INFO L857 garLoopResultBuilder]: For program point L389-8(lines 389 393) no Hoare annotation was computed. [2021-10-28 09:07:51,258 INFO L857 garLoopResultBuilder]: For program point L439(lines 439 443) no Hoare annotation was computed. [2021-10-28 09:07:51,258 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-10-28 09:07:51,259 INFO L853 garLoopResultBuilder]: At program point L340(lines 335 343) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ULTIMATE.start_test_~splverifierCounter~0 0) (= ULTIMATE.start_activatePump_~tmp~3 0) (= |ULTIMATE.start_valid_product_#res| 1) (= |ULTIMATE.start_isPumpRunning_#res| 1) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 1)) [2021-10-28 09:07:51,259 INFO L853 garLoopResultBuilder]: At program point L340-1(lines 335 343) the Hoare annotation is: false [2021-10-28 09:07:51,259 INFO L853 garLoopResultBuilder]: At program point L340-2(lines 335 343) the Hoare annotation is: false [2021-10-28 09:07:51,260 INFO L857 garLoopResultBuilder]: For program point L175(lines 175 181) no Hoare annotation was computed. [2021-10-28 09:07:51,261 INFO L853 garLoopResultBuilder]: At program point L175-1(lines 175 181) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1) (= ~methaneLevelCritical~0 1) .cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-10-28 09:07:51,261 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-28 09:07:51,261 INFO L857 garLoopResultBuilder]: For program point L507(line 507) no Hoare annotation was computed. [2021-10-28 09:07:51,261 INFO L857 garLoopResultBuilder]: For program point L507-1(line 507) no Hoare annotation was computed. [2021-10-28 09:07:51,261 INFO L857 garLoopResultBuilder]: For program point L507-2(line 507) no Hoare annotation was computed. [2021-10-28 09:07:51,261 INFO L853 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: false [2021-10-28 09:07:51,262 INFO L853 garLoopResultBuilder]: At program point L244(lines 244 250) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse6 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse3 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse4 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse5) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse6 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse4 .cse5) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse4 .cse5 (= ~pumpRunning~0 1)))) [2021-10-28 09:07:51,262 INFO L853 garLoopResultBuilder]: At program point L244-1(lines 244 250) the Hoare annotation is: false [2021-10-28 09:07:51,262 INFO L853 garLoopResultBuilder]: At program point L244-2(lines 244 250) the Hoare annotation is: false [2021-10-28 09:07:51,263 INFO L857 garLoopResultBuilder]: For program point L492(lines 492 498) no Hoare annotation was computed. [2021-10-28 09:07:51,265 INFO L857 garLoopResultBuilder]: For program point L492-1(lines 492 498) no Hoare annotation was computed. [2021-10-28 09:07:51,265 INFO L857 garLoopResultBuilder]: For program point L492-2(lines 492 498) no Hoare annotation was computed. [2021-10-28 09:07:51,266 INFO L857 garLoopResultBuilder]: For program point L195(lines 195 208) no Hoare annotation was computed. [2021-10-28 09:07:51,266 INFO L857 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2021-10-28 09:07:51,266 INFO L853 garLoopResultBuilder]: At program point L542(lines 537 545) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:07:51,266 INFO L857 garLoopResultBuilder]: For program point L922(lines 922 942) no Hoare annotation was computed. [2021-10-28 09:07:51,266 INFO L857 garLoopResultBuilder]: For program point L922-2(lines 922 942) no Hoare annotation was computed. [2021-10-28 09:07:51,266 INFO L857 garLoopResultBuilder]: For program point L922-4(lines 922 942) no Hoare annotation was computed. [2021-10-28 09:07:51,266 INFO L853 garLoopResultBuilder]: At program point L113(lines 109 115) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:07:51,266 INFO L857 garLoopResultBuilder]: For program point L427(lines 427 431) no Hoare annotation was computed. [2021-10-28 09:07:51,267 INFO L853 garLoopResultBuilder]: At program point L213(lines 164 214) the Hoare annotation is: false [2021-10-28 09:07:51,267 INFO L853 garLoopResultBuilder]: At program point L395(lines 380 398) the Hoare annotation is: (let ((.cse4 (<= ~waterLevel~0 1)) (.cse7 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse8 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse9 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse11 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse4 .cse7 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse8 .cse7 .cse9 .cse5 .cse10 .cse11 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse8 .cse9 .cse5 .cse10 .cse11 .cse6))) [2021-10-28 09:07:51,267 INFO L853 garLoopResultBuilder]: At program point L395-1(lines 380 398) the Hoare annotation is: false [2021-10-28 09:07:51,267 INFO L853 garLoopResultBuilder]: At program point L395-2(lines 380 398) the Hoare annotation is: false [2021-10-28 09:07:51,267 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-28 09:07:51,267 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-10-28 09:07:51,267 INFO L857 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2021-10-28 09:07:51,268 INFO L857 garLoopResultBuilder]: For program point L66-1(lines 237 243) no Hoare annotation was computed. [2021-10-28 09:07:51,268 INFO L860 garLoopResultBuilder]: At program point L149(lines 130 152) the Hoare annotation is: true [2021-10-28 09:07:51,268 INFO L853 garLoopResultBuilder]: At program point L331(lines 324 334) the Hoare annotation is: (let ((.cse3 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse6 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse8 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse9 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse12 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse13 (= ~methaneLevelCritical~0 0)) (.cse14 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse15 (<= ~waterLevel~0 1)) (.cse4 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0))) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse11 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11) (and .cse0 .cse1 .cse2 .cse12 .cse13 .cse3 .cse4 .cse6 .cse7 .cse8 .cse9 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse12 .cse13 .cse15 .cse4 .cse7 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse15 .cse4 .cse5 .cse7 .cse10 .cse11))) [2021-10-28 09:07:51,269 INFO L853 garLoopResultBuilder]: At program point L331-1(lines 324 334) the Hoare annotation is: false [2021-10-28 09:07:51,269 INFO L853 garLoopResultBuilder]: At program point L331-2(lines 324 334) the Hoare annotation is: false [2021-10-28 09:07:51,269 INFO L857 garLoopResultBuilder]: For program point L166(lines 165 212) no Hoare annotation was computed. [2021-10-28 09:07:51,270 INFO L853 garLoopResultBuilder]: At program point L497(lines 488 501) the Hoare annotation is: (let ((.cse8 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse7 .cse8 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse8 .cse3 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse7 .cse4 .cse5 .cse6))) [2021-10-28 09:07:51,270 INFO L853 garLoopResultBuilder]: At program point L497-1(lines 488 501) the Hoare annotation is: false [2021-10-28 09:07:51,270 INFO L853 garLoopResultBuilder]: At program point L497-2(lines 488 501) the Hoare annotation is: false [2021-10-28 09:07:51,270 INFO L857 garLoopResultBuilder]: For program point L167(lines 167 171) no Hoare annotation was computed. [2021-10-28 09:07:51,273 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:07:51,275 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-28 09:07:51,330 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.10 09:07:51 BoogieIcfgContainer [2021-10-28 09:07:51,330 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-28 09:07:51,331 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-28 09:07:51,331 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-28 09:07:51,331 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-28 09:07:51,331 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:07:44" (3/4) ... [2021-10-28 09:07:51,335 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-28 09:07:51,351 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-28 09:07:51,351 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-28 09:07:51,352 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-28 09:07:51,353 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-28 09:07:51,354 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-28 09:07:51,355 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:07:51,356 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:07:51,379 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) [2021-10-28 09:07:51,379 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) [2021-10-28 09:07:51,379 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:07:51,380 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:07:51,380 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:07:51,381 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:07:51,381 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:07:51,381 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:07:51,382 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) [2021-10-28 09:07:51,383 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && \result == 0) && !(0 == systemActive)) [2021-10-28 09:07:51,383 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:07:51,384 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) [2021-10-28 09:07:51,384 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1 [2021-10-28 09:07:51,385 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && !(0 == systemActive)) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) [2021-10-28 09:07:51,385 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && \result == 0) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) [2021-10-28 09:07:51,421 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/witness.graphml [2021-10-28 09:07:51,422 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-28 09:07:51,423 INFO L168 Benchmark]: Toolchain (without parser) took 8910.20 ms. Allocated memory was 104.9 MB in the beginning and 151.0 MB in the end (delta: 46.1 MB). Free memory was 64.0 MB in the beginning and 76.8 MB in the end (delta: -12.8 MB). Peak memory consumption was 32.8 MB. Max. memory is 16.1 GB. [2021-10-28 09:07:51,424 INFO L168 Benchmark]: CDTParser took 0.14 ms. Allocated memory is still 104.9 MB. Free memory is still 81.0 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-28 09:07:51,424 INFO L168 Benchmark]: CACSL2BoogieTranslator took 624.84 ms. Allocated memory is still 104.9 MB. Free memory was 63.8 MB in the beginning and 71.1 MB in the end (delta: -7.3 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-28 09:07:51,425 INFO L168 Benchmark]: Boogie Procedure Inliner took 74.37 ms. Allocated memory is still 104.9 MB. Free memory was 71.1 MB in the beginning and 67.8 MB in the end (delta: 3.3 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-28 09:07:51,425 INFO L168 Benchmark]: Boogie Preprocessor took 46.34 ms. Allocated memory is still 104.9 MB. Free memory was 67.8 MB in the beginning and 65.7 MB in the end (delta: 2.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-28 09:07:51,425 INFO L168 Benchmark]: RCFGBuilder took 1012.35 ms. Allocated memory was 104.9 MB in the beginning and 125.8 MB in the end (delta: 21.0 MB). Free memory was 65.2 MB in the beginning and 89.0 MB in the end (delta: -23.7 MB). Peak memory consumption was 35.7 MB. Max. memory is 16.1 GB. [2021-10-28 09:07:51,426 INFO L168 Benchmark]: TraceAbstraction took 7054.39 ms. Allocated memory was 125.8 MB in the beginning and 151.0 MB in the end (delta: 25.2 MB). Free memory was 89.0 MB in the beginning and 85.2 MB in the end (delta: 3.8 MB). Peak memory consumption was 78.9 MB. Max. memory is 16.1 GB. [2021-10-28 09:07:51,426 INFO L168 Benchmark]: Witness Printer took 91.07 ms. Allocated memory is still 151.0 MB. Free memory was 85.2 MB in the beginning and 76.8 MB in the end (delta: 8.4 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-28 09:07:51,428 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.14 ms. Allocated memory is still 104.9 MB. Free memory is still 81.0 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 624.84 ms. Allocated memory is still 104.9 MB. Free memory was 63.8 MB in the beginning and 71.1 MB in the end (delta: -7.3 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 74.37 ms. Allocated memory is still 104.9 MB. Free memory was 71.1 MB in the beginning and 67.8 MB in the end (delta: 3.3 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 46.34 ms. Allocated memory is still 104.9 MB. Free memory was 67.8 MB in the beginning and 65.7 MB in the end (delta: 2.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1012.35 ms. Allocated memory was 104.9 MB in the beginning and 125.8 MB in the end (delta: 21.0 MB). Free memory was 65.2 MB in the beginning and 89.0 MB in the end (delta: -23.7 MB). Peak memory consumption was 35.7 MB. Max. memory is 16.1 GB. * TraceAbstraction took 7054.39 ms. Allocated memory was 125.8 MB in the beginning and 151.0 MB in the end (delta: 25.2 MB). Free memory was 89.0 MB in the beginning and 85.2 MB in the end (delta: 3.8 MB). Peak memory consumption was 78.9 MB. Max. memory is 16.1 GB. * Witness Printer took 91.07 ms. Allocated memory is still 151.0 MB. Free memory was 85.2 MB in the beginning and 76.8 MB in the end (delta: 8.4 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 93 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 6.9s, OverallIterations: 10, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 4.1s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 890 SDtfs, 1402 SDslu, 1485 SDs, 0 SdLazy, 206 SolverSat, 33 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.3s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 78 GetRequests, 28 SyntacticMatches, 0 SemanticMatches, 50 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 36 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=202occurred in iteration=8, InterpolantAutomatonStates: 58, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 10 MinimizatonAttempts, 980 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 40 LocationsWithAnnotation, 40 PreInvPairs, 189 NumberOfFragments, 1237 HoareAnnotationTreeSize, 40 FomulaSimplifications, 289691 FormulaSimplificationTreeSizeReduction, 1.4s HoareSimplificationTime, 40 FomulaSimplificationsInter, 20183 FormulaSimplificationTreeSizeReductionInter, 2.6s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 0.7s InterpolantComputationTime, 287 NumberOfCodeBlocks, 287 NumberOfCodeBlocksAsserted, 10 NumberOfCheckSat, 277 ConstructedInterpolants, 0 QuantifiedInterpolants, 494 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 10 InterpolantComputations, 10 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1 - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 537]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && !(0 == systemActive)) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && \result == 0) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) - InvariantResult [Line: 185]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && !(0 == systemActive) - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 175]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: ((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 164]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 237]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-10-28 09:07:51,487 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_c6809774-6be9-4ced-8da3-c887df369d64/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...