./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 4c4adbf609ddd472cb6a462753c6f5cc9af64c97af02da4060f4102700285790 .............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-28 09:16:12,045 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-28 09:16:12,048 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-28 09:16:12,098 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-28 09:16:12,099 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-28 09:16:12,105 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-28 09:16:12,107 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-28 09:16:12,111 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-28 09:16:12,114 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-28 09:16:12,121 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-28 09:16:12,123 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-28 09:16:12,124 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-28 09:16:12,127 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-28 09:16:12,130 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-28 09:16:12,133 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-28 09:16:12,138 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-28 09:16:12,140 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-28 09:16:12,141 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-28 09:16:12,144 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-28 09:16:12,155 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-28 09:16:12,157 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-28 09:16:12,159 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-28 09:16:12,163 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-28 09:16:12,164 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-28 09:16:12,168 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-28 09:16:12,169 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-28 09:16:12,169 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-28 09:16:12,172 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-28 09:16:12,173 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-28 09:16:12,175 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-28 09:16:12,175 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-28 09:16:12,176 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-28 09:16:12,179 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-28 09:16:12,180 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-28 09:16:12,182 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-28 09:16:12,182 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-28 09:16:12,183 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-28 09:16:12,183 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-28 09:16:12,184 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-28 09:16:12,185 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-28 09:16:12,185 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-28 09:16:12,186 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-28 09:16:12,241 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-28 09:16:12,241 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-28 09:16:12,242 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-28 09:16:12,243 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-28 09:16:12,252 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-28 09:16:12,253 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-28 09:16:12,253 INFO L138 SettingsManager]: * Use SBE=true [2021-10-28 09:16:12,253 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-28 09:16:12,254 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-28 09:16:12,254 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-28 09:16:12,255 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-28 09:16:12,256 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-28 09:16:12,256 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-28 09:16:12,256 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-28 09:16:12,257 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-28 09:16:12,257 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-28 09:16:12,257 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-28 09:16:12,258 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-28 09:16:12,258 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-28 09:16:12,258 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-28 09:16:12,258 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-28 09:16:12,259 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-28 09:16:12,259 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:16:12,259 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-28 09:16:12,260 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-28 09:16:12,260 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-28 09:16:12,260 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-28 09:16:12,260 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-28 09:16:12,261 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-28 09:16:12,263 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-28 09:16:12,264 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-28 09:16:12,264 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-28 09:16:12,265 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 4c4adbf609ddd472cb6a462753c6f5cc9af64c97af02da4060f4102700285790 [2021-10-28 09:16:12,607 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-28 09:16:12,653 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-28 09:16:12,657 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-28 09:16:12,659 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-28 09:16:12,660 INFO L275 PluginConnector]: CDTParser initialized [2021-10-28 09:16:12,661 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c [2021-10-28 09:16:12,761 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/data/9943944eb/e5b06530bebb4f37b6c01f982a79be3e/FLAG9704a539c [2021-10-28 09:16:13,412 INFO L306 CDTParser]: Found 1 translation units. [2021-10-28 09:16:13,413 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c [2021-10-28 09:16:13,431 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/data/9943944eb/e5b06530bebb4f37b6c01f982a79be3e/FLAG9704a539c [2021-10-28 09:16:13,648 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/data/9943944eb/e5b06530bebb4f37b6c01f982a79be3e [2021-10-28 09:16:13,650 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-28 09:16:13,651 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-28 09:16:13,655 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-28 09:16:13,656 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-28 09:16:13,663 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-28 09:16:13,663 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:16:13" (1/1) ... [2021-10-28 09:16:13,664 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@74659d76 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:13, skipping insertion in model container [2021-10-28 09:16:13,665 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:16:13" (1/1) ... [2021-10-28 09:16:13,671 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-28 09:16:13,724 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-28 09:16:14,037 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c[8617,8630] [2021-10-28 09:16:14,111 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:16:14,125 INFO L203 MainTranslator]: Completed pre-run [2021-10-28 09:16:14,169 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c[8617,8630] [2021-10-28 09:16:14,205 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:16:14,228 INFO L208 MainTranslator]: Completed translation [2021-10-28 09:16:14,229 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14 WrapperNode [2021-10-28 09:16:14,229 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-28 09:16:14,231 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-28 09:16:14,231 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-28 09:16:14,231 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-28 09:16:14,240 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,267 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,346 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-28 09:16:14,347 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-28 09:16:14,347 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-28 09:16:14,347 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-28 09:16:14,358 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,358 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,365 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,365 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,385 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,396 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,400 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,406 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-28 09:16:14,408 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-28 09:16:14,408 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-28 09:16:14,408 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-28 09:16:14,410 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (1/1) ... [2021-10-28 09:16:14,419 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:16:14,435 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/z3 [2021-10-28 09:16:14,465 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-28 09:16:14,467 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-28 09:16:14,510 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-28 09:16:14,510 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-28 09:16:14,510 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-28 09:16:14,511 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-28 09:16:15,682 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-28 09:16:15,682 INFO L299 CfgBuilder]: Removed 198 assume(true) statements. [2021-10-28 09:16:15,685 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:16:15 BoogieIcfgContainer [2021-10-28 09:16:15,686 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-28 09:16:15,689 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-28 09:16:15,689 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-28 09:16:15,693 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-28 09:16:15,695 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.10 09:16:13" (1/3) ... [2021-10-28 09:16:15,696 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@5127eeaf and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:16:15, skipping insertion in model container [2021-10-28 09:16:15,696 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:16:14" (2/3) ... [2021-10-28 09:16:15,697 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@5127eeaf and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:16:15, skipping insertion in model container [2021-10-28 09:16:15,698 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:16:15" (3/3) ... [2021-10-28 09:16:15,700 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product45.cil.c [2021-10-28 09:16:15,711 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-28 09:16:15,711 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-28 09:16:15,788 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-28 09:16:15,801 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-28 09:16:15,802 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-28 09:16:15,833 INFO L276 IsEmpty]: Start isEmpty. Operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:15,842 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-28 09:16:15,843 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:15,844 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:15,845 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:15,853 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:15,853 INFO L85 PathProgramCache]: Analyzing trace with hash 1981233963, now seen corresponding path program 1 times [2021-10-28 09:16:15,861 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:15,862 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1425430600] [2021-10-28 09:16:15,863 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:15,863 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:16,026 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:16,136 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:16,136 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:16,137 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1425430600] [2021-10-28 09:16:16,138 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1425430600] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:16,138 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:16,139 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:16:16,146 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1071512283] [2021-10-28 09:16:16,158 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-28 09:16:16,158 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:16,177 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-28 09:16:16,178 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:16:16,184 INFO L87 Difference]: Start difference. First operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,246 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:16,246 INFO L93 Difference]: Finished difference Result 264 states and 395 transitions. [2021-10-28 09:16:16,247 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-28 09:16:16,248 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-28 09:16:16,248 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:16,259 INFO L225 Difference]: With dead ends: 264 [2021-10-28 09:16:16,259 INFO L226 Difference]: Without dead ends: 131 [2021-10-28 09:16:16,263 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:16:16,282 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2021-10-28 09:16:16,307 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 131. [2021-10-28 09:16:16,309 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 131 states, 128 states have (on average 1.4765625) internal successors, (189), 130 states have internal predecessors, (189), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,312 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 131 states to 131 states and 189 transitions. [2021-10-28 09:16:16,313 INFO L78 Accepts]: Start accepts. Automaton has 131 states and 189 transitions. Word has length 18 [2021-10-28 09:16:16,314 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:16,314 INFO L470 AbstractCegarLoop]: Abstraction has 131 states and 189 transitions. [2021-10-28 09:16:16,314 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,314 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states and 189 transitions. [2021-10-28 09:16:16,316 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-28 09:16:16,316 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:16,316 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:16,317 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-28 09:16:16,317 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:16,318 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:16,318 INFO L85 PathProgramCache]: Analyzing trace with hash 1070203210, now seen corresponding path program 1 times [2021-10-28 09:16:16,318 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:16,319 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1853434803] [2021-10-28 09:16:16,319 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:16,319 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:16,417 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:16,520 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:16,521 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:16,521 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1853434803] [2021-10-28 09:16:16,522 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1853434803] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:16,522 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:16,522 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:16:16,523 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1385235335] [2021-10-28 09:16:16,525 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:16:16,525 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:16,526 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:16:16,527 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:16:16,527 INFO L87 Difference]: Start difference. First operand 131 states and 189 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,547 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:16,553 INFO L93 Difference]: Finished difference Result 131 states and 189 transitions. [2021-10-28 09:16:16,554 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:16:16,554 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-28 09:16:16,555 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:16,556 INFO L225 Difference]: With dead ends: 131 [2021-10-28 09:16:16,557 INFO L226 Difference]: Without dead ends: 53 [2021-10-28 09:16:16,559 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:16:16,559 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-28 09:16:16,565 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-28 09:16:16,567 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4615384615384615) internal successors, (76), 52 states have internal predecessors, (76), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,569 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 76 transitions. [2021-10-28 09:16:16,569 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 76 transitions. Word has length 19 [2021-10-28 09:16:16,569 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:16,570 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 76 transitions. [2021-10-28 09:16:16,570 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,570 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 76 transitions. [2021-10-28 09:16:16,572 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-28 09:16:16,573 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:16,573 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:16,573 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-28 09:16:16,574 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:16,581 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:16,587 INFO L85 PathProgramCache]: Analyzing trace with hash 1049766460, now seen corresponding path program 1 times [2021-10-28 09:16:16,588 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:16,588 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1834066083] [2021-10-28 09:16:16,588 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:16,589 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:16,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:16,711 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:16,711 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:16,712 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1834066083] [2021-10-28 09:16:16,712 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1834066083] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:16,712 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:16,712 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:16:16,713 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [79058802] [2021-10-28 09:16:16,713 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:16:16,713 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:16,714 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:16:16,714 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:16:16,715 INFO L87 Difference]: Start difference. First operand 53 states and 76 transitions. Second operand has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,950 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:16,950 INFO L93 Difference]: Finished difference Result 100 states and 146 transitions. [2021-10-28 09:16:16,951 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:16:16,951 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-28 09:16:16,951 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:16,952 INFO L225 Difference]: With dead ends: 100 [2021-10-28 09:16:16,952 INFO L226 Difference]: Without dead ends: 53 [2021-10-28 09:16:16,953 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:16:16,954 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-28 09:16:16,960 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-28 09:16:16,961 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4423076923076923) internal successors, (75), 52 states have internal predecessors, (75), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,961 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 75 transitions. [2021-10-28 09:16:16,962 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 75 transitions. Word has length 24 [2021-10-28 09:16:16,962 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:16,962 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 75 transitions. [2021-10-28 09:16:16,962 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:16,963 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 75 transitions. [2021-10-28 09:16:16,964 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-10-28 09:16:16,964 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:16,964 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:16,965 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-28 09:16:16,965 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:16,966 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:16,966 INFO L85 PathProgramCache]: Analyzing trace with hash -927374502, now seen corresponding path program 1 times [2021-10-28 09:16:16,966 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:16,967 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2128454850] [2021-10-28 09:16:16,967 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:16,967 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:16,997 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:17,037 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:17,037 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:17,038 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2128454850] [2021-10-28 09:16:17,038 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2128454850] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:17,038 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:17,039 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:16:17,039 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1632030749] [2021-10-28 09:16:17,040 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:16:17,040 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:17,041 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:16:17,041 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:16:17,041 INFO L87 Difference]: Start difference. First operand 53 states and 75 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,074 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:17,074 INFO L93 Difference]: Finished difference Result 123 states and 177 transitions. [2021-10-28 09:16:17,075 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:16:17,075 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-10-28 09:16:17,076 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:17,077 INFO L225 Difference]: With dead ends: 123 [2021-10-28 09:16:17,077 INFO L226 Difference]: Without dead ends: 76 [2021-10-28 09:16:17,078 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:16:17,079 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2021-10-28 09:16:17,090 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 74. [2021-10-28 09:16:17,090 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 73 states have (on average 1.4246575342465753) internal successors, (104), 73 states have internal predecessors, (104), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,091 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 104 transitions. [2021-10-28 09:16:17,092 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 104 transitions. Word has length 26 [2021-10-28 09:16:17,092 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:17,092 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 104 transitions. [2021-10-28 09:16:17,093 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,093 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 104 transitions. [2021-10-28 09:16:17,094 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:16:17,094 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:17,094 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:17,095 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-28 09:16:17,095 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:17,096 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:17,096 INFO L85 PathProgramCache]: Analyzing trace with hash -44236562, now seen corresponding path program 1 times [2021-10-28 09:16:17,096 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:17,097 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [585907358] [2021-10-28 09:16:17,097 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:17,097 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:17,155 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:17,272 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:17,272 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:17,272 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [585907358] [2021-10-28 09:16:17,273 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [585907358] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:17,273 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:17,273 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:16:17,273 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1164756061] [2021-10-28 09:16:17,274 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:16:17,274 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:17,275 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:16:17,275 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:17,275 INFO L87 Difference]: Start difference. First operand 74 states and 104 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,471 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:17,471 INFO L93 Difference]: Finished difference Result 373 states and 541 transitions. [2021-10-28 09:16:17,472 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:16:17,472 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:16:17,472 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:17,476 INFO L225 Difference]: With dead ends: 373 [2021-10-28 09:16:17,476 INFO L226 Difference]: Without dead ends: 305 [2021-10-28 09:16:17,477 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:16:17,478 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 305 states. [2021-10-28 09:16:17,503 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 305 to 121. [2021-10-28 09:16:17,503 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 120 states have (on average 1.3916666666666666) internal successors, (167), 120 states have internal predecessors, (167), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,504 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 167 transitions. [2021-10-28 09:16:17,505 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 167 transitions. Word has length 32 [2021-10-28 09:16:17,505 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:17,505 INFO L470 AbstractCegarLoop]: Abstraction has 121 states and 167 transitions. [2021-10-28 09:16:17,506 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,506 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 167 transitions. [2021-10-28 09:16:17,507 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:16:17,508 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:17,508 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:17,508 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-28 09:16:17,508 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:17,509 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:17,509 INFO L85 PathProgramCache]: Analyzing trace with hash -1115283092, now seen corresponding path program 1 times [2021-10-28 09:16:17,509 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:17,510 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1184885364] [2021-10-28 09:16:17,510 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:17,510 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:17,542 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:17,593 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:17,594 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:17,594 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1184885364] [2021-10-28 09:16:17,594 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1184885364] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:17,595 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:17,595 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:16:17,595 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [657389217] [2021-10-28 09:16:17,596 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:16:17,596 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:17,597 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:16:17,597 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:16:17,597 INFO L87 Difference]: Start difference. First operand 121 states and 167 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,762 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:17,763 INFO L93 Difference]: Finished difference Result 250 states and 352 transitions. [2021-10-28 09:16:17,763 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 09:16:17,763 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:16:17,764 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:17,765 INFO L225 Difference]: With dead ends: 250 [2021-10-28 09:16:17,766 INFO L226 Difference]: Without dead ends: 182 [2021-10-28 09:16:17,767 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:16:17,767 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2021-10-28 09:16:17,789 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 179. [2021-10-28 09:16:17,790 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3932584269662922) internal successors, (248), 178 states have internal predecessors, (248), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,791 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 248 transitions. [2021-10-28 09:16:17,792 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 248 transitions. Word has length 33 [2021-10-28 09:16:17,792 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:17,792 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 248 transitions. [2021-10-28 09:16:17,792 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,793 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 248 transitions. [2021-10-28 09:16:17,794 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:16:17,794 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:17,795 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:17,795 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-28 09:16:17,795 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:17,796 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:17,796 INFO L85 PathProgramCache]: Analyzing trace with hash -2126400342, now seen corresponding path program 1 times [2021-10-28 09:16:17,796 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:17,797 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [874078275] [2021-10-28 09:16:17,797 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:17,797 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:17,825 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:17,872 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:17,872 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:17,872 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [874078275] [2021-10-28 09:16:17,873 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [874078275] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:17,873 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:17,873 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:16:17,873 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [697713735] [2021-10-28 09:16:17,874 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:16:17,874 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:17,875 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:16:17,875 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:16:17,875 INFO L87 Difference]: Start difference. First operand 179 states and 248 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,938 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:17,938 INFO L93 Difference]: Finished difference Result 497 states and 700 transitions. [2021-10-28 09:16:17,938 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:16:17,939 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:16:17,939 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:17,941 INFO L225 Difference]: With dead ends: 497 [2021-10-28 09:16:17,941 INFO L226 Difference]: Without dead ends: 370 [2021-10-28 09:16:17,942 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:17,943 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 370 states. [2021-10-28 09:16:17,961 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 370 to 179. [2021-10-28 09:16:17,962 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3820224719101124) internal successors, (246), 178 states have internal predecessors, (246), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,963 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 246 transitions. [2021-10-28 09:16:17,963 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 246 transitions. Word has length 33 [2021-10-28 09:16:17,963 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:17,963 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 246 transitions. [2021-10-28 09:16:17,964 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:17,964 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 246 transitions. [2021-10-28 09:16:17,965 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:16:17,965 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:17,965 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:17,966 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-28 09:16:17,966 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:17,966 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:17,966 INFO L85 PathProgramCache]: Analyzing trace with hash -1868234904, now seen corresponding path program 1 times [2021-10-28 09:16:17,967 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:17,967 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [907218864] [2021-10-28 09:16:17,967 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:17,967 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:17,987 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:18,028 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:18,029 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:18,029 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [907218864] [2021-10-28 09:16:18,029 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [907218864] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:18,029 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:18,029 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:16:18,030 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1288455951] [2021-10-28 09:16:18,030 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:16:18,030 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:18,031 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:16:18,031 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:18,031 INFO L87 Difference]: Start difference. First operand 179 states and 246 transitions. Second operand has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:18,127 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:18,128 INFO L93 Difference]: Finished difference Result 540 states and 754 transitions. [2021-10-28 09:16:18,128 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:16:18,138 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:16:18,139 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:18,143 INFO L225 Difference]: With dead ends: 540 [2021-10-28 09:16:18,143 INFO L226 Difference]: Without dead ends: 367 [2021-10-28 09:16:18,144 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:16:18,144 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 367 states. [2021-10-28 09:16:18,178 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 367 to 188. [2021-10-28 09:16:18,179 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 188 states, 187 states have (on average 1.3529411764705883) internal successors, (253), 187 states have internal predecessors, (253), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:18,180 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 188 states to 188 states and 253 transitions. [2021-10-28 09:16:18,180 INFO L78 Accepts]: Start accepts. Automaton has 188 states and 253 transitions. Word has length 33 [2021-10-28 09:16:18,181 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:18,181 INFO L470 AbstractCegarLoop]: Abstraction has 188 states and 253 transitions. [2021-10-28 09:16:18,182 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:18,182 INFO L276 IsEmpty]: Start isEmpty. Operand 188 states and 253 transitions. [2021-10-28 09:16:18,184 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:16:18,185 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:18,185 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:18,185 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-28 09:16:18,186 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:18,186 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:18,186 INFO L85 PathProgramCache]: Analyzing trace with hash 941421312, now seen corresponding path program 1 times [2021-10-28 09:16:18,186 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:18,187 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [852032331] [2021-10-28 09:16:18,187 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:18,187 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:18,232 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:18,319 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:18,319 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:18,320 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [852032331] [2021-10-28 09:16:18,320 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [852032331] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:18,320 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:18,321 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:16:18,321 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1317045914] [2021-10-28 09:16:18,321 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:16:18,323 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:18,324 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:16:18,325 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:16:18,325 INFO L87 Difference]: Start difference. First operand 188 states and 253 transitions. Second operand has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:18,659 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:18,662 INFO L93 Difference]: Finished difference Result 1177 states and 1553 transitions. [2021-10-28 09:16:18,663 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-28 09:16:18,663 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:16:18,663 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:18,671 INFO L225 Difference]: With dead ends: 1177 [2021-10-28 09:16:18,671 INFO L226 Difference]: Without dead ends: 995 [2021-10-28 09:16:18,678 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-28 09:16:18,680 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 995 states. [2021-10-28 09:16:18,733 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 995 to 356. [2021-10-28 09:16:18,738 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 356 states, 355 states have (on average 1.3295774647887324) internal successors, (472), 355 states have internal predecessors, (472), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:18,740 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 356 states to 356 states and 472 transitions. [2021-10-28 09:16:18,740 INFO L78 Accepts]: Start accepts. Automaton has 356 states and 472 transitions. Word has length 36 [2021-10-28 09:16:18,743 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:18,743 INFO L470 AbstractCegarLoop]: Abstraction has 356 states and 472 transitions. [2021-10-28 09:16:18,743 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:18,743 INFO L276 IsEmpty]: Start isEmpty. Operand 356 states and 472 transitions. [2021-10-28 09:16:18,750 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:16:18,750 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:18,751 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:18,751 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-28 09:16:18,752 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:18,752 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:18,752 INFO L85 PathProgramCache]: Analyzing trace with hash 1621479682, now seen corresponding path program 1 times [2021-10-28 09:16:18,753 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:18,756 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1658876723] [2021-10-28 09:16:18,756 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:18,757 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:18,813 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:18,883 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:18,884 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:18,884 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1658876723] [2021-10-28 09:16:18,884 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1658876723] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:18,885 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:18,885 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:16:18,885 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [783994417] [2021-10-28 09:16:18,887 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:16:18,887 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:18,888 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:16:18,888 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:18,889 INFO L87 Difference]: Start difference. First operand 356 states and 472 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:19,163 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:19,163 INFO L93 Difference]: Finished difference Result 930 states and 1259 transitions. [2021-10-28 09:16:19,164 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:16:19,164 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:16:19,164 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:19,168 INFO L225 Difference]: With dead ends: 930 [2021-10-28 09:16:19,169 INFO L226 Difference]: Without dead ends: 580 [2021-10-28 09:16:19,170 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:16:19,171 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 580 states. [2021-10-28 09:16:19,216 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 580 to 302. [2021-10-28 09:16:19,217 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.2923588039867109) internal successors, (389), 301 states have internal predecessors, (389), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:19,219 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 389 transitions. [2021-10-28 09:16:19,220 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 389 transitions. Word has length 36 [2021-10-28 09:16:19,220 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:19,220 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 389 transitions. [2021-10-28 09:16:19,221 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:19,221 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 389 transitions. [2021-10-28 09:16:19,222 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2021-10-28 09:16:19,222 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:19,222 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:19,223 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-28 09:16:19,223 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:19,223 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:19,224 INFO L85 PathProgramCache]: Analyzing trace with hash 886341574, now seen corresponding path program 1 times [2021-10-28 09:16:19,224 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:19,227 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [41801546] [2021-10-28 09:16:19,227 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:19,227 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:19,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:19,369 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:19,369 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:19,369 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [41801546] [2021-10-28 09:16:19,370 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [41801546] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:19,370 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:19,370 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-28 09:16:19,370 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [652339276] [2021-10-28 09:16:19,371 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:16:19,371 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:19,373 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:16:19,375 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:16:19,375 INFO L87 Difference]: Start difference. First operand 302 states and 389 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:19,707 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:19,708 INFO L93 Difference]: Finished difference Result 889 states and 1138 transitions. [2021-10-28 09:16:19,708 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-10-28 09:16:19,708 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 37 [2021-10-28 09:16:19,709 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:19,714 INFO L225 Difference]: With dead ends: 889 [2021-10-28 09:16:19,714 INFO L226 Difference]: Without dead ends: 593 [2021-10-28 09:16:19,715 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=65, Invalid=117, Unknown=0, NotChecked=0, Total=182 [2021-10-28 09:16:19,717 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 593 states. [2021-10-28 09:16:19,762 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 593 to 282. [2021-10-28 09:16:19,763 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2526690391459074) internal successors, (352), 281 states have internal predecessors, (352), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:19,765 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 352 transitions. [2021-10-28 09:16:19,765 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 352 transitions. Word has length 37 [2021-10-28 09:16:19,765 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:19,765 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 352 transitions. [2021-10-28 09:16:19,766 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:19,766 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 352 transitions. [2021-10-28 09:16:19,768 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-28 09:16:19,768 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:19,768 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:19,769 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-28 09:16:19,769 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:19,770 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:19,770 INFO L85 PathProgramCache]: Analyzing trace with hash 2123545264, now seen corresponding path program 1 times [2021-10-28 09:16:19,771 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:19,771 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [53731286] [2021-10-28 09:16:19,778 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:19,778 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:19,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:19,858 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-28 09:16:19,858 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:19,858 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [53731286] [2021-10-28 09:16:19,858 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [53731286] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:19,859 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:19,859 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:16:19,859 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1585370626] [2021-10-28 09:16:19,860 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:16:19,860 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:19,861 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:16:19,861 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:19,861 INFO L87 Difference]: Start difference. First operand 282 states and 352 transitions. Second operand has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:19,954 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:19,954 INFO L93 Difference]: Finished difference Result 653 states and 819 transitions. [2021-10-28 09:16:19,955 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:16:19,955 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-28 09:16:19,956 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:19,958 INFO L225 Difference]: With dead ends: 653 [2021-10-28 09:16:19,959 INFO L226 Difference]: Without dead ends: 377 [2021-10-28 09:16:19,960 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:16:19,961 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 377 states. [2021-10-28 09:16:20,004 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 377 to 282. [2021-10-28 09:16:20,005 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2384341637010676) internal successors, (348), 281 states have internal predecessors, (348), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,007 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 348 transitions. [2021-10-28 09:16:20,007 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 348 transitions. Word has length 53 [2021-10-28 09:16:20,008 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:20,008 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 348 transitions. [2021-10-28 09:16:20,008 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,009 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 348 transitions. [2021-10-28 09:16:20,010 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-28 09:16:20,010 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:20,010 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:20,010 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-10-28 09:16:20,011 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:20,011 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:20,011 INFO L85 PathProgramCache]: Analyzing trace with hash 2051158706, now seen corresponding path program 1 times [2021-10-28 09:16:20,012 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:20,012 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1607989916] [2021-10-28 09:16:20,012 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:20,012 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:20,032 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:20,063 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-28 09:16:20,064 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:20,064 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1607989916] [2021-10-28 09:16:20,064 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1607989916] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:20,064 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:20,065 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:16:20,065 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [870404750] [2021-10-28 09:16:20,065 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:16:20,065 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:20,066 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:16:20,066 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:16:20,067 INFO L87 Difference]: Start difference. First operand 282 states and 348 transitions. Second operand has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,125 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:20,126 INFO L93 Difference]: Finished difference Result 600 states and 751 transitions. [2021-10-28 09:16:20,127 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 09:16:20,127 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-28 09:16:20,127 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:20,129 INFO L225 Difference]: With dead ends: 600 [2021-10-28 09:16:20,129 INFO L226 Difference]: Without dead ends: 324 [2021-10-28 09:16:20,130 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:20,131 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 324 states. [2021-10-28 09:16:20,161 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 324 to 240. [2021-10-28 09:16:20,162 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2426778242677825) internal successors, (297), 239 states have internal predecessors, (297), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,163 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 297 transitions. [2021-10-28 09:16:20,164 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 297 transitions. Word has length 53 [2021-10-28 09:16:20,164 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:20,164 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 297 transitions. [2021-10-28 09:16:20,164 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,164 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 297 transitions. [2021-10-28 09:16:20,165 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2021-10-28 09:16:20,165 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:20,166 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:20,166 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-10-28 09:16:20,166 INFO L402 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:20,166 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:20,167 INFO L85 PathProgramCache]: Analyzing trace with hash 1485859958, now seen corresponding path program 1 times [2021-10-28 09:16:20,167 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:20,167 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1986745247] [2021-10-28 09:16:20,167 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:20,167 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:20,184 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:20,226 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:16:20,226 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:20,227 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1986745247] [2021-10-28 09:16:20,227 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1986745247] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:20,227 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:20,227 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:16:20,228 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1189447364] [2021-10-28 09:16:20,228 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:16:20,228 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:20,229 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:16:20,229 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:20,229 INFO L87 Difference]: Start difference. First operand 240 states and 297 transitions. Second operand has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,372 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:20,372 INFO L93 Difference]: Finished difference Result 612 states and 756 transitions. [2021-10-28 09:16:20,373 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:16:20,373 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 54 [2021-10-28 09:16:20,373 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:20,376 INFO L225 Difference]: With dead ends: 612 [2021-10-28 09:16:20,376 INFO L226 Difference]: Without dead ends: 378 [2021-10-28 09:16:20,377 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:16:20,378 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 378 states. [2021-10-28 09:16:20,414 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 378 to 240. [2021-10-28 09:16:20,415 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2259414225941423) internal successors, (293), 239 states have internal predecessors, (293), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,417 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 293 transitions. [2021-10-28 09:16:20,417 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 293 transitions. Word has length 54 [2021-10-28 09:16:20,417 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:20,417 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 293 transitions. [2021-10-28 09:16:20,418 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,418 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 293 transitions. [2021-10-28 09:16:20,419 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-28 09:16:20,419 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:20,419 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:20,419 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2021-10-28 09:16:20,420 INFO L402 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:20,420 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:20,421 INFO L85 PathProgramCache]: Analyzing trace with hash 675182755, now seen corresponding path program 1 times [2021-10-28 09:16:20,421 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:20,421 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [340924071] [2021-10-28 09:16:20,421 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:20,422 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:20,444 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:20,499 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-10-28 09:16:20,499 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:20,500 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [340924071] [2021-10-28 09:16:20,500 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [340924071] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:20,500 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:20,500 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:16:20,500 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [454967316] [2021-10-28 09:16:20,501 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:16:20,501 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:20,502 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:16:20,502 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:16:20,502 INFO L87 Difference]: Start difference. First operand 240 states and 293 transitions. Second operand has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,687 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:20,687 INFO L93 Difference]: Finished difference Result 571 states and 706 transitions. [2021-10-28 09:16:20,688 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-10-28 09:16:20,688 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-28 09:16:20,688 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:20,691 INFO L225 Difference]: With dead ends: 571 [2021-10-28 09:16:20,691 INFO L226 Difference]: Without dead ends: 387 [2021-10-28 09:16:20,692 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-10-28 09:16:20,693 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 387 states. [2021-10-28 09:16:20,729 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 387 to 240. [2021-10-28 09:16:20,729 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2217573221757323) internal successors, (292), 239 states have internal predecessors, (292), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,731 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 292 transitions. [2021-10-28 09:16:20,731 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 292 transitions. Word has length 56 [2021-10-28 09:16:20,732 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:20,732 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 292 transitions. [2021-10-28 09:16:20,732 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:20,732 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 292 transitions. [2021-10-28 09:16:20,733 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2021-10-28 09:16:20,734 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:20,734 INFO L513 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:20,734 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2021-10-28 09:16:20,735 INFO L402 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:20,735 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:20,735 INFO L85 PathProgramCache]: Analyzing trace with hash 666594362, now seen corresponding path program 1 times [2021-10-28 09:16:20,735 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:20,736 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1289209206] [2021-10-28 09:16:20,736 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:20,736 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:20,759 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:20,859 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 30 proven. 0 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2021-10-28 09:16:20,859 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:20,860 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1289209206] [2021-10-28 09:16:20,862 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1289209206] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:20,863 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:20,863 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-10-28 09:16:20,863 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1017270956] [2021-10-28 09:16:20,864 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-10-28 09:16:20,864 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:20,865 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-10-28 09:16:20,865 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:16:20,865 INFO L87 Difference]: Start difference. First operand 240 states and 292 transitions. Second operand has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:21,234 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:21,234 INFO L93 Difference]: Finished difference Result 609 states and 743 transitions. [2021-10-28 09:16:21,235 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-10-28 09:16:21,235 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 77 [2021-10-28 09:16:21,235 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:21,238 INFO L225 Difference]: With dead ends: 609 [2021-10-28 09:16:21,238 INFO L226 Difference]: Without dead ends: 425 [2021-10-28 09:16:21,239 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 31 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=104, Invalid=202, Unknown=0, NotChecked=0, Total=306 [2021-10-28 09:16:21,240 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 425 states. [2021-10-28 09:16:21,275 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 425 to 232. [2021-10-28 09:16:21,276 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 232 states, 231 states have (on average 1.2207792207792207) internal successors, (282), 231 states have internal predecessors, (282), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:21,278 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 232 states to 232 states and 282 transitions. [2021-10-28 09:16:21,278 INFO L78 Accepts]: Start accepts. Automaton has 232 states and 282 transitions. Word has length 77 [2021-10-28 09:16:21,279 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:21,279 INFO L470 AbstractCegarLoop]: Abstraction has 232 states and 282 transitions. [2021-10-28 09:16:21,279 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:21,279 INFO L276 IsEmpty]: Start isEmpty. Operand 232 states and 282 transitions. [2021-10-28 09:16:21,285 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2021-10-28 09:16:21,285 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:16:21,285 INFO L513 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:21,286 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15 [2021-10-28 09:16:21,286 INFO L402 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:16:21,286 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:16:21,287 INFO L85 PathProgramCache]: Analyzing trace with hash 1176968629, now seen corresponding path program 1 times [2021-10-28 09:16:21,287 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:16:21,287 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [638937386] [2021-10-28 09:16:21,287 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:16:21,288 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:16:21,332 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:16:21,408 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2021-10-28 09:16:21,408 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:16:21,408 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [638937386] [2021-10-28 09:16:21,408 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [638937386] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:16:21,409 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:16:21,409 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:16:21,409 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [206855967] [2021-10-28 09:16:21,410 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:16:21,410 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:16:21,411 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:16:21,411 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:16:21,412 INFO L87 Difference]: Start difference. First operand 232 states and 282 transitions. Second operand has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:21,630 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:16:21,630 INFO L93 Difference]: Finished difference Result 887 states and 1096 transitions. [2021-10-28 09:16:21,631 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:16:21,631 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 79 [2021-10-28 09:16:21,632 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:16:21,632 INFO L225 Difference]: With dead ends: 887 [2021-10-28 09:16:21,632 INFO L226 Difference]: Without dead ends: 0 [2021-10-28 09:16:21,634 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:16:21,634 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-28 09:16:21,635 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-28 09:16:21,635 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:21,635 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-28 09:16:21,635 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 79 [2021-10-28 09:16:21,635 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:16:21,636 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-28 09:16:21,636 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:16:21,636 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-28 09:16:21,636 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-28 09:16:21,639 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:16:21,640 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:16:21,640 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:16:21,641 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable16 [2021-10-28 09:16:21,643 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-28 09:16:21,649 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:21,652 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,465 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,545 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,591 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,592 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,593 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,595 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,595 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,596 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,597 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,598 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,598 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,599 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,600 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,681 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,682 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,925 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,926 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,927 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,927 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,928 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,929 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:22,930 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,319 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,320 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,349 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,350 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,351 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,352 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,353 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,354 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,411 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,416 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,417 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,418 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:24,846 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,053 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,054 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,055 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,062 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,062 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,063 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,064 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,065 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,066 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,068 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,070 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,071 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,072 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,073 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,240 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,241 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,641 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,641 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,643 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:26,932 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:16:38,611 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-28 09:16:38,611 INFO L857 garLoopResultBuilder]: For program point L498(lines 498 502) no Hoare annotation was computed. [2021-10-28 09:16:38,612 INFO L853 garLoopResultBuilder]: At program point L168(lines 163 171) the Hoare annotation is: (let ((.cse10 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse9 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9) (and .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse2 .cse3 .cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse5 (= |ULTIMATE.start_getWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse6 .cse7 (= ~waterLevel~0 1)) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 .cse10 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0) .cse2 .cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) .cse4 (<= ~waterLevel~0 1) (not .cse8) .cse5) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse8 .cse9))) [2021-10-28 09:16:38,612 INFO L853 garLoopResultBuilder]: At program point L168-1(lines 163 171) the Hoare annotation is: false [2021-10-28 09:16:38,612 INFO L853 garLoopResultBuilder]: At program point L168-2(lines 163 171) the Hoare annotation is: false [2021-10-28 09:16:38,613 INFO L857 garLoopResultBuilder]: For program point L69(lines 69 82) no Hoare annotation was computed. [2021-10-28 09:16:38,613 INFO L853 garLoopResultBuilder]: At program point L69-1(lines 1 959) the Hoare annotation is: (let ((.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse11 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse13 (= ~waterLevel~0 1)) (.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse17 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse9 (= ~pumpRunning~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse10 (= ~pumpRunning~0 0)) (.cse12 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse16 (not .cse8)) (.cse14 (not .cse2)) (.cse5 (= 1 ~systemActive~0)) (.cse18 (not .cse3)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse15 (not .cse4))) (or (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9) (and .cse1 .cse10 .cse11 .cse3 .cse12 .cse5 .cse13) (and .cse1 .cse10 .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse14 .cse5 .cse13 .cse15) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 .cse10 .cse2 .cse3 .cse12 .cse4 (<= ~waterLevel~0 1) .cse16 .cse5 .cse7 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse17 .cse8 .cse9) (and .cse0 .cse1 .cse16 .cse14 .cse5 .cse18 .cse6 .cse7 .cse17 .cse15 .cse9) (and .cse1 .cse10 .cse12 .cse16 .cse14 .cse5 .cse18 .cse7 .cse15)))) [2021-10-28 09:16:38,613 INFO L857 garLoopResultBuilder]: For program point L69-2(lines 69 82) no Hoare annotation was computed. [2021-10-28 09:16:38,614 INFO L853 garLoopResultBuilder]: At program point L69-3(lines 1 959) the Hoare annotation is: false [2021-10-28 09:16:38,614 INFO L857 garLoopResultBuilder]: For program point L69-4(lines 69 82) no Hoare annotation was computed. [2021-10-28 09:16:38,614 INFO L853 garLoopResultBuilder]: At program point L69-5(lines 1 959) the Hoare annotation is: false [2021-10-28 09:16:38,614 INFO L857 garLoopResultBuilder]: For program point L532(lines 532 536) no Hoare annotation was computed. [2021-10-28 09:16:38,614 INFO L857 garLoopResultBuilder]: For program point L532-2(lines 298 304) no Hoare annotation was computed. [2021-10-28 09:16:38,615 INFO L857 garLoopResultBuilder]: For program point L334(lines 334 342) no Hoare annotation was computed. [2021-10-28 09:16:38,615 INFO L857 garLoopResultBuilder]: For program point L334-1(lines 334 342) no Hoare annotation was computed. [2021-10-28 09:16:38,615 INFO L857 garLoopResultBuilder]: For program point L334-2(lines 334 342) no Hoare annotation was computed. [2021-10-28 09:16:38,615 INFO L857 garLoopResultBuilder]: For program point L334-3(lines 334 342) no Hoare annotation was computed. [2021-10-28 09:16:38,615 INFO L857 garLoopResultBuilder]: For program point L334-4(lines 334 342) no Hoare annotation was computed. [2021-10-28 09:16:38,616 INFO L857 garLoopResultBuilder]: For program point L334-5(lines 334 342) no Hoare annotation was computed. [2021-10-28 09:16:38,616 INFO L853 garLoopResultBuilder]: At program point L136(lines 131 139) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) (not .cse2) .cse3 (not .cse4) .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse4 .cse3 (= ULTIMATE.start_main_~tmp~1 1) .cse5 .cse6))) [2021-10-28 09:16:38,616 INFO L853 garLoopResultBuilder]: At program point L136-1(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,617 INFO L853 garLoopResultBuilder]: At program point L136-2(lines 131 139) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1)) (.cse6 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse7 (= 1 ~systemActive~0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (not .cse6) .cse7 (not .cse8) .cse9 .cse10 .cse11 .cse12) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse6 .cse8 .cse5 .cse7 .cse9 .cse10 .cse11 .cse12))) [2021-10-28 09:16:38,617 INFO L853 garLoopResultBuilder]: At program point L136-3(lines 131 139) the Hoare annotation is: (let ((.cse3 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse9 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse13 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse14 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse15 (= ~waterLevel~0 1)) (.cse4 (not .cse9)) (.cse11 (not .cse2)) (.cse12 (not .cse3)) (.cse8 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse16 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse10 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) .cse4 .cse5 .cse6 .cse7) (and .cse8 .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse9 .cse10) (and .cse0 .cse1 .cse4 .cse11 .cse5 .cse12 .cse6 .cse7) (and .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse1 .cse13 .cse2 .cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) .cse14 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse6 .cse7 .cse15) (and .cse0 .cse1 .cse13 .cse14 .cse11 .cse5 .cse12 .cse6 .cse7 .cse15) (and .cse8 .cse0 .cse4 .cse11 .cse5 .cse12 .cse6 .cse7 .cse16 .cse10) (and .cse8 .cse0 .cse2 .cse3 .cse5 .cse6 .cse7 .cse16 .cse9 .cse10)))) [2021-10-28 09:16:38,617 INFO L853 garLoopResultBuilder]: At program point L136-4(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,617 INFO L853 garLoopResultBuilder]: At program point L136-5(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,618 INFO L853 garLoopResultBuilder]: At program point L136-6(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,618 INFO L853 garLoopResultBuilder]: At program point L136-7(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,618 INFO L853 garLoopResultBuilder]: At program point L136-8(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,618 INFO L853 garLoopResultBuilder]: At program point L136-9(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,618 INFO L853 garLoopResultBuilder]: At program point L136-10(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,619 INFO L853 garLoopResultBuilder]: At program point L136-11(lines 131 139) the Hoare annotation is: false [2021-10-28 09:16:38,619 INFO L857 garLoopResultBuilder]: For program point L203(lines 203 207) no Hoare annotation was computed. [2021-10-28 09:16:38,619 INFO L857 garLoopResultBuilder]: For program point L203-1(lines 298 304) no Hoare annotation was computed. [2021-10-28 09:16:38,620 INFO L857 garLoopResultBuilder]: For program point L73(lines 73 79) no Hoare annotation was computed. [2021-10-28 09:16:38,620 INFO L857 garLoopResultBuilder]: For program point L73-2(lines 73 79) no Hoare annotation was computed. [2021-10-28 09:16:38,620 INFO L857 garLoopResultBuilder]: For program point L73-4(lines 73 79) no Hoare annotation was computed. [2021-10-28 09:16:38,621 INFO L853 garLoopResultBuilder]: At program point L305(lines 305 311) the Hoare annotation is: (let ((.cse9 (= ~methaneLevelCritical~0 0)) (.cse12 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse14 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse15 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse16 (= ~waterLevel~0 1)) (.cse4 (not .cse12)) (.cse6 (not .cse9)) (.cse7 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse8 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= 1 ~systemActive~0)) (.cse10 (= ULTIMATE.start_main_~tmp~1 1)) (.cse11 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse17 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse13 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse7 .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse8 .cse9 (<= 2 ~waterLevel~0) .cse5 .cse10 .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) .cse4 .cse5) (and .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse1 .cse14 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) .cse15 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse10 .cse11 .cse16) (and .cse0 .cse1 .cse14 .cse15 .cse5 .cse6 .cse10 .cse11 .cse16) (and .cse7 .cse0 .cse4 (not .cse8) .cse5 .cse6 .cse10 .cse11 .cse17 .cse13) (and .cse7 .cse0 .cse8 .cse9 .cse5 .cse10 .cse11 .cse17 .cse12 .cse13)))) [2021-10-28 09:16:38,621 INFO L853 garLoopResultBuilder]: At program point L305-1(lines 305 311) the Hoare annotation is: false [2021-10-28 09:16:38,621 INFO L853 garLoopResultBuilder]: At program point L305-2(lines 305 311) the Hoare annotation is: false [2021-10-28 09:16:38,621 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-28 09:16:38,621 INFO L857 garLoopResultBuilder]: For program point L506(lines 506 512) no Hoare annotation was computed. [2021-10-28 09:16:38,622 INFO L853 garLoopResultBuilder]: At program point L506-1(lines 506 512) the Hoare annotation is: (let ((.cse8 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse7 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse19 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse12 (= ~waterLevel~0 1)) (.cse13 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse9 (not .cse19)) (.cse16 (not .cse3)) (.cse10 (= ULTIMATE.start_main_~tmp~1 1)) (.cse11 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse18 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse14 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse4 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse15 (not .cse7)) (.cse6 (= 1 ~systemActive~0)) (.cse17 (not .cse8))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse0 .cse1 .cse7 .cse3 .cse8 .cse9 .cse6 .cse10 .cse11 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse6 .cse12) (and (or (and .cse13 .cse0 .cse6 .cse12 .cse14) (and .cse13 .cse0 .cse5 .cse6 .cse14)) .cse9 .cse15 .cse16 .cse10 .cse11 .cse17) (and .cse0 .cse1 .cse9 .cse15 .cse6 .cse16 .cse10 .cse11 .cse17) (and .cse0 .cse1 .cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse15 .cse6 .cse12 .cse17) (and .cse13 .cse0 .cse7 .cse3 .cse8 .cse6 .cse10 .cse11 .cse18 .cse19 .cse14) (and .cse8 (or (and .cse13 .cse0 .cse7 .cse3 .cse6 .cse12 .cse14) (and .cse13 .cse0 .cse7 .cse3 .cse5 .cse6 .cse14)) .cse10 .cse11 .cse19) (and .cse13 .cse0 .cse9 .cse15 .cse6 .cse16 .cse10 .cse11 .cse18 .cse17 .cse14) (and .cse0 .cse1 .cse2 .cse4 .cse5 .cse15 .cse6 .cse17)))) [2021-10-28 09:16:38,622 INFO L857 garLoopResultBuilder]: For program point L275(lines 275 282) no Hoare annotation was computed. [2021-10-28 09:16:38,622 INFO L860 garLoopResultBuilder]: At program point L275-1(lines 275 282) the Hoare annotation is: true [2021-10-28 09:16:38,623 INFO L857 garLoopResultBuilder]: For program point L176(lines 176 182) no Hoare annotation was computed. [2021-10-28 09:16:38,623 INFO L857 garLoopResultBuilder]: For program point L176-1(lines 176 182) no Hoare annotation was computed. [2021-10-28 09:16:38,623 INFO L857 garLoopResultBuilder]: For program point L176-2(lines 176 182) no Hoare annotation was computed. [2021-10-28 09:16:38,623 INFO L857 garLoopResultBuilder]: For program point L176-3(lines 176 182) no Hoare annotation was computed. [2021-10-28 09:16:38,623 INFO L857 garLoopResultBuilder]: For program point L176-4(lines 176 182) no Hoare annotation was computed. [2021-10-28 09:16:38,623 INFO L857 garLoopResultBuilder]: For program point L176-5(lines 176 182) no Hoare annotation was computed. [2021-10-28 09:16:38,623 INFO L853 garLoopResultBuilder]: At program point L573(lines 1 959) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-28 09:16:38,623 INFO L857 garLoopResultBuilder]: For program point L111(lines 111 115) no Hoare annotation was computed. [2021-10-28 09:16:38,624 INFO L857 garLoopResultBuilder]: For program point L475(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,624 INFO L857 garLoopResultBuilder]: For program point L475-2(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,624 INFO L857 garLoopResultBuilder]: For program point L475-3(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,624 INFO L857 garLoopResultBuilder]: For program point L475-5(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,624 INFO L857 garLoopResultBuilder]: For program point L475-6(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,624 INFO L857 garLoopResultBuilder]: For program point L475-8(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,624 INFO L857 garLoopResultBuilder]: For program point L475-9(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,625 INFO L857 garLoopResultBuilder]: For program point L475-11(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,625 INFO L857 garLoopResultBuilder]: For program point L475-12(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,625 INFO L857 garLoopResultBuilder]: For program point L475-14(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,625 INFO L857 garLoopResultBuilder]: For program point L475-15(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,625 INFO L857 garLoopResultBuilder]: For program point L475-17(lines 475 479) no Hoare annotation was computed. [2021-10-28 09:16:38,626 INFO L853 garLoopResultBuilder]: At program point L542(lines 495 543) the Hoare annotation is: false [2021-10-28 09:16:38,626 INFO L853 garLoopResultBuilder]: At program point L181(lines 172 185) the Hoare annotation is: false [2021-10-28 09:16:38,626 INFO L853 garLoopResultBuilder]: At program point L181-1(lines 172 185) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse5 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4 .cse5) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse5 (= ULTIMATE.start_main_~tmp~1 1) (= |ULTIMATE.start_valid_product_#res| 1) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (= ~waterLevel~0 1)))) [2021-10-28 09:16:38,626 INFO L853 garLoopResultBuilder]: At program point L181-2(lines 172 185) the Hoare annotation is: false [2021-10-28 09:16:38,627 INFO L853 garLoopResultBuilder]: At program point L181-3(lines 172 185) the Hoare annotation is: false [2021-10-28 09:16:38,627 INFO L853 garLoopResultBuilder]: At program point L181-4(lines 172 185) the Hoare annotation is: false [2021-10-28 09:16:38,627 INFO L853 garLoopResultBuilder]: At program point L181-5(lines 172 185) the Hoare annotation is: false [2021-10-28 09:16:38,627 INFO L853 garLoopResultBuilder]: At program point L248(lines 244 250) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ULTIMATE.start_main_~tmp~1 1) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1)) [2021-10-28 09:16:38,627 INFO L853 garLoopResultBuilder]: At program point L481(lines 466 484) the Hoare annotation is: false [2021-10-28 09:16:38,628 INFO L853 garLoopResultBuilder]: At program point L481-1(lines 466 484) the Hoare annotation is: (let ((.cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= 1 ~systemActive~0)) (.cse8 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) .cse4 .cse5 .cse6 .cse7 (= ~waterLevel~0 1)) (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4 .cse5 .cse6 .cse8 .cse7) (and .cse0 .cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (<= 2 ~waterLevel~0) .cse6 .cse8 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)))) [2021-10-28 09:16:38,628 INFO L853 garLoopResultBuilder]: At program point L481-2(lines 466 484) the Hoare annotation is: false [2021-10-28 09:16:38,628 INFO L853 garLoopResultBuilder]: At program point L481-3(lines 466 484) the Hoare annotation is: false [2021-10-28 09:16:38,628 INFO L853 garLoopResultBuilder]: At program point L481-4(lines 466 484) the Hoare annotation is: false [2021-10-28 09:16:38,628 INFO L853 garLoopResultBuilder]: At program point L481-5(lines 466 484) the Hoare annotation is: false [2021-10-28 09:16:38,629 INFO L853 garLoopResultBuilder]: At program point L581(lines 576 584) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1)) [2021-10-28 09:16:38,629 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-28 09:16:38,629 INFO L860 garLoopResultBuilder]: At program point L284(lines 265 287) the Hoare annotation is: true [2021-10-28 09:16:38,629 INFO L857 garLoopResultBuilder]: For program point L516(lines 516 522) no Hoare annotation was computed. [2021-10-28 09:16:38,630 INFO L853 garLoopResultBuilder]: At program point L516-1(lines 516 522) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse5 (= ~waterLevel~0 1)) (.cse6 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse7 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse4 (= 1 ~systemActive~0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse6 .cse0 .cse2 .cse3 .cse4 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse7) (and .cse0 .cse1 .cse2 .cse3 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4) (and (or (and .cse6 .cse0 .cse4 .cse5 .cse7) (and .cse6 .cse0 .cse8 .cse4 .cse7)) .cse9 .cse10) (and .cse0 .cse1 .cse8 .cse4 .cse9 .cse10))) [2021-10-28 09:16:38,630 INFO L853 garLoopResultBuilder]: At program point L417(lines 410 420) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse2 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse7 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) (not .cse2) (not .cse3) .cse4 (not .cse5) .cse6 .cse7) (and .cse0 .cse1 .cse3 .cse5 .cse4 (= ULTIMATE.start_main_~tmp~1 1) .cse6 .cse2 .cse7))) [2021-10-28 09:16:38,630 INFO L853 garLoopResultBuilder]: At program point L417-1(lines 410 420) the Hoare annotation is: false [2021-10-28 09:16:38,630 INFO L853 garLoopResultBuilder]: At program point L417-2(lines 410 420) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1)) (.cse13 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= 1 ~systemActive~0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse3 .cse4 (not .cse13) .cse7 (not .cse5) .cse8 (not .cse6) .cse9 .cse10 .cse11 .cse12))) [2021-10-28 09:16:38,631 INFO L853 garLoopResultBuilder]: At program point L417-3(lines 410 420) the Hoare annotation is: false [2021-10-28 09:16:38,631 INFO L853 garLoopResultBuilder]: At program point L417-4(lines 410 420) the Hoare annotation is: false [2021-10-28 09:16:38,631 INFO L853 garLoopResultBuilder]: At program point L417-5(lines 410 420) the Hoare annotation is: false [2021-10-28 09:16:38,631 INFO L853 garLoopResultBuilder]: At program point L417-6(lines 410 420) the Hoare annotation is: false [2021-10-28 09:16:38,631 INFO L853 garLoopResultBuilder]: At program point L417-7(lines 410 420) the Hoare annotation is: false [2021-10-28 09:16:38,632 INFO L853 garLoopResultBuilder]: At program point L417-8(lines 410 420) the Hoare annotation is: false [2021-10-28 09:16:38,632 INFO L857 garLoopResultBuilder]: For program point L123(lines 123 127) no Hoare annotation was computed. [2021-10-28 09:16:38,632 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-28 09:16:38,632 INFO L857 garLoopResultBuilder]: For program point L356(lines 356 373) no Hoare annotation was computed. [2021-10-28 09:16:38,632 INFO L857 garLoopResultBuilder]: For program point L356-1(lines 356 373) no Hoare annotation was computed. [2021-10-28 09:16:38,633 INFO L857 garLoopResultBuilder]: For program point L356-2(lines 356 373) no Hoare annotation was computed. [2021-10-28 09:16:38,633 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-28 09:16:38,633 INFO L857 garLoopResultBuilder]: For program point L590(line 590) no Hoare annotation was computed. [2021-10-28 09:16:38,633 INFO L857 garLoopResultBuilder]: For program point L590-1(line 590) no Hoare annotation was computed. [2021-10-28 09:16:38,633 INFO L857 garLoopResultBuilder]: For program point L590-2(line 590) no Hoare annotation was computed. [2021-10-28 09:16:38,634 INFO L857 garLoopResultBuilder]: For program point L392(lines 392 398) no Hoare annotation was computed. [2021-10-28 09:16:38,634 INFO L857 garLoopResultBuilder]: For program point L392-2(lines 392 398) no Hoare annotation was computed. [2021-10-28 09:16:38,634 INFO L857 garLoopResultBuilder]: For program point L392-4(lines 392 398) no Hoare annotation was computed. [2021-10-28 09:16:38,634 INFO L857 garLoopResultBuilder]: For program point L392-6(lines 392 398) no Hoare annotation was computed. [2021-10-28 09:16:38,634 INFO L857 garLoopResultBuilder]: For program point L392-8(lines 392 398) no Hoare annotation was computed. [2021-10-28 09:16:38,634 INFO L857 garLoopResultBuilder]: For program point L392-10(lines 392 398) no Hoare annotation was computed. [2021-10-28 09:16:38,635 INFO L853 garLoopResultBuilder]: At program point L426(lines 421 429) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse9 (= |ULTIMATE.start_isPumpRunning_#res| 1)) (.cse10 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse8 .cse9 .cse10) (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9 .cse10))) [2021-10-28 09:16:38,635 INFO L853 garLoopResultBuilder]: At program point L426-1(lines 421 429) the Hoare annotation is: false [2021-10-28 09:16:38,635 INFO L857 garLoopResultBuilder]: For program point L360(lines 360 368) no Hoare annotation was computed. [2021-10-28 09:16:38,635 INFO L853 garLoopResultBuilder]: At program point L426-2(lines 421 429) the Hoare annotation is: false [2021-10-28 09:16:38,636 INFO L857 garLoopResultBuilder]: For program point L360-1(lines 360 368) no Hoare annotation was computed. [2021-10-28 09:16:38,636 INFO L857 garLoopResultBuilder]: For program point L360-2(lines 360 368) no Hoare annotation was computed. [2021-10-28 09:16:38,636 INFO L857 garLoopResultBuilder]: For program point L63(lines 63 83) no Hoare annotation was computed. [2021-10-28 09:16:38,636 INFO L857 garLoopResultBuilder]: For program point L63-2(lines 63 83) no Hoare annotation was computed. [2021-10-28 09:16:38,636 INFO L857 garLoopResultBuilder]: For program point L63-4(lines 63 83) no Hoare annotation was computed. [2021-10-28 09:16:38,637 INFO L857 garLoopResultBuilder]: For program point L526(lines 526 537) no Hoare annotation was computed. [2021-10-28 09:16:38,637 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-28 09:16:38,637 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-28 09:16:38,637 INFO L857 garLoopResultBuilder]: For program point L330(lines 330 347) no Hoare annotation was computed. [2021-10-28 09:16:38,637 INFO L857 garLoopResultBuilder]: For program point L330-1(lines 330 347) no Hoare annotation was computed. [2021-10-28 09:16:38,638 INFO L857 garLoopResultBuilder]: For program point L330-2(lines 330 347) no Hoare annotation was computed. [2021-10-28 09:16:38,638 INFO L857 garLoopResultBuilder]: For program point L330-3(lines 330 347) no Hoare annotation was computed. [2021-10-28 09:16:38,638 INFO L857 garLoopResultBuilder]: For program point L330-4(lines 330 347) no Hoare annotation was computed. [2021-10-28 09:16:38,638 INFO L857 garLoopResultBuilder]: For program point L330-5(lines 330 347) no Hoare annotation was computed. [2021-10-28 09:16:38,638 INFO L857 garLoopResultBuilder]: For program point L99(lines 99 103) no Hoare annotation was computed. [2021-10-28 09:16:38,639 INFO L857 garLoopResultBuilder]: For program point L99-3(lines 99 103) no Hoare annotation was computed. [2021-10-28 09:16:38,639 INFO L857 garLoopResultBuilder]: For program point L99-6(lines 99 103) no Hoare annotation was computed. [2021-10-28 09:16:38,639 INFO L853 garLoopResultBuilder]: At program point L298(lines 297 316) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= ULTIMATE.start_main_~tmp~1 1)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse1 .cse2 .cse3 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4) (and (= ULTIMATE.start_activatePump_~tmp~4 0) .cse0 .cse4 .cse5 .cse6 (= ~pumpRunning~0 1)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse4 .cse5 .cse6))) [2021-10-28 09:16:38,639 INFO L857 garLoopResultBuilder]: For program point L298-1(lines 298 304) no Hoare annotation was computed. [2021-10-28 09:16:38,639 INFO L853 garLoopResultBuilder]: At program point L298-2(lines 297 316) the Hoare annotation is: false [2021-10-28 09:16:38,640 INFO L853 garLoopResultBuilder]: At program point L298-3(lines 297 316) the Hoare annotation is: false [2021-10-28 09:16:38,640 INFO L853 garLoopResultBuilder]: At program point L199-2(lines 199 213) the Hoare annotation is: false [2021-10-28 09:16:38,640 INFO L857 garLoopResultBuilder]: For program point L497(lines 496 541) no Hoare annotation was computed. [2021-10-28 09:16:38,640 INFO L857 garLoopResultBuilder]: For program point L200(line 200) no Hoare annotation was computed. [2021-10-28 09:16:38,644 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:16:38,646 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-28 09:16:38,699 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.10 09:16:38 BoogieIcfgContainer [2021-10-28 09:16:38,699 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-28 09:16:38,700 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-28 09:16:38,700 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-28 09:16:38,700 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-28 09:16:38,701 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:16:15" (3/4) ... [2021-10-28 09:16:38,705 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-28 09:16:38,732 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-28 09:16:38,734 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-28 09:16:38,735 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-28 09:16:38,737 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-28 09:16:38,739 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-28 09:16:38,741 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:16:38,742 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:16:38,772 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1 [2021-10-28 09:16:38,773 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && waterLevel == 1 [2021-10-28 09:16:38,773 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && \result == 1) && tmp___0 <= 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && !(tmp == 0)) [2021-10-28 09:16:38,774 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 2 <= waterLevel) && 1 == systemActive) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp___0 <= 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((tmp == 0 && (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && \result == 1) && \result == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) [2021-10-28 09:16:38,774 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) [2021-10-28 09:16:38,775 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) [2021-10-28 09:16:38,776 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-28 09:16:38,777 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-28 09:16:38,778 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1) [2021-10-28 09:16:38,779 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0) && pumpRunning == 1) [2021-10-28 09:16:38,779 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && \result == 1) && 1 == systemActive) && waterLevel == 1) [2021-10-28 09:16:38,780 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == systemActive) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-28 09:16:38,781 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && tmp == systemActive) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && waterLevel == 1) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 1) && \result == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-28 09:16:38,782 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && \result == 1) && pumpRunning == 1) [2021-10-28 09:16:38,784 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-28 09:16:38,785 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-28 09:16:38,851 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/witness.graphml [2021-10-28 09:16:38,851 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-28 09:16:38,853 INFO L168 Benchmark]: Toolchain (without parser) took 25201.29 ms. Allocated memory was 125.8 MB in the beginning and 316.7 MB in the end (delta: 190.8 MB). Free memory was 86.0 MB in the beginning and 139.3 MB in the end (delta: -53.3 MB). Peak memory consumption was 136.6 MB. Max. memory is 16.1 GB. [2021-10-28 09:16:38,854 INFO L168 Benchmark]: CDTParser took 0.32 ms. Allocated memory is still 125.8 MB. Free memory is still 103.4 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-28 09:16:38,854 INFO L168 Benchmark]: CACSL2BoogieTranslator took 574.62 ms. Allocated memory is still 125.8 MB. Free memory was 85.7 MB in the beginning and 90.8 MB in the end (delta: -5.0 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-10-28 09:16:38,855 INFO L168 Benchmark]: Boogie Procedure Inliner took 115.47 ms. Allocated memory is still 125.8 MB. Free memory was 90.8 MB in the beginning and 86.6 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 09:16:38,855 INFO L168 Benchmark]: Boogie Preprocessor took 59.92 ms. Allocated memory is still 125.8 MB. Free memory was 86.6 MB in the beginning and 83.4 MB in the end (delta: 3.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 09:16:38,856 INFO L168 Benchmark]: RCFGBuilder took 1278.22 ms. Allocated memory was 125.8 MB in the beginning and 157.3 MB in the end (delta: 31.5 MB). Free memory was 83.4 MB in the beginning and 119.0 MB in the end (delta: -35.6 MB). Peak memory consumption was 43.0 MB. Max. memory is 16.1 GB. [2021-10-28 09:16:38,856 INFO L168 Benchmark]: TraceAbstraction took 23010.46 ms. Allocated memory was 157.3 MB in the beginning and 316.7 MB in the end (delta: 159.4 MB). Free memory was 118.0 MB in the beginning and 150.9 MB in the end (delta: -32.9 MB). Peak memory consumption was 180.3 MB. Max. memory is 16.1 GB. [2021-10-28 09:16:38,857 INFO L168 Benchmark]: Witness Printer took 151.87 ms. Allocated memory is still 316.7 MB. Free memory was 150.9 MB in the beginning and 139.3 MB in the end (delta: 11.5 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. [2021-10-28 09:16:38,859 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.32 ms. Allocated memory is still 125.8 MB. Free memory is still 103.4 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 574.62 ms. Allocated memory is still 125.8 MB. Free memory was 85.7 MB in the beginning and 90.8 MB in the end (delta: -5.0 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 115.47 ms. Allocated memory is still 125.8 MB. Free memory was 90.8 MB in the beginning and 86.6 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 59.92 ms. Allocated memory is still 125.8 MB. Free memory was 86.6 MB in the beginning and 83.4 MB in the end (delta: 3.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1278.22 ms. Allocated memory was 125.8 MB in the beginning and 157.3 MB in the end (delta: 31.5 MB). Free memory was 83.4 MB in the beginning and 119.0 MB in the end (delta: -35.6 MB). Peak memory consumption was 43.0 MB. Max. memory is 16.1 GB. * TraceAbstraction took 23010.46 ms. Allocated memory was 157.3 MB in the beginning and 316.7 MB in the end (delta: 159.4 MB). Free memory was 118.0 MB in the beginning and 150.9 MB in the end (delta: -32.9 MB). Peak memory consumption was 180.3 MB. Max. memory is 16.1 GB. * Witness Printer took 151.87 ms. Allocated memory is still 316.7 MB. Free memory was 150.9 MB in the beginning and 139.3 MB in the end (delta: 11.5 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 135 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 22.8s, OverallIterations: 17, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 3.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 16.9s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 2002 SDtfs, 3011 SDslu, 3594 SDs, 0 SdLazy, 603 SolverSat, 103 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 1.0s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 149 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 87 ImplicationChecksByTransitivity, 0.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=356occurred in iteration=9, InterpolantAutomatonStates: 112, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 17 MinimizatonAttempts, 2444 StatesRemovedByMinimization, 13 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 57 LocationsWithAnnotation, 57 PreInvPairs, 311 NumberOfFragments, 2066 HoareAnnotationTreeSize, 57 FomulaSimplifications, 49120324 FormulaSimplificationTreeSizeReduction, 5.2s HoareSimplificationTime, 57 FomulaSimplificationsInter, 13289997 FormulaSimplificationTreeSizeReductionInter, 11.6s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 1.1s InterpolantComputationTime, 699 NumberOfCodeBlocks, 699 NumberOfCodeBlocksAsserted, 17 NumberOfCheckSat, 682 ConstructedInterpolants, 0 QuantifiedInterpolants, 1224 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 17 InterpolantComputations, 17 PerfectInterpolantSequences, 160/160 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 506]: Loop Invariant Derived loop invariant: ((((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 2 <= waterLevel) && 1 == systemActive) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp___0 <= 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((tmp == 0 && (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && \result == 1) && \result == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: (((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == systemActive) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 495]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: (((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: ((((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 199]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && tmp == systemActive) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && waterLevel == 1) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 1) && \result == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 516]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 275]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && \result == 1) && tmp___0 <= 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && !(tmp == 0)) - InvariantResult [Line: 265]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && waterLevel == 1 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && \result == 1) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 576]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1 RESULT: Ultimate proved your program to be correct! [2021-10-28 09:16:38,955 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_5af923cd-f01d-452b-b8cd-8b940a8112d7/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...