./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product46.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product46.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 458689bcd0930e2b07a61b7490d83be8ce4e59412b26a60581bf78c492ee412e .................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-28 09:18:13,377 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-28 09:18:13,379 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-28 09:18:13,439 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-28 09:18:13,439 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-28 09:18:13,444 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-28 09:18:13,446 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-28 09:18:13,451 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-28 09:18:13,453 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-28 09:18:13,460 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-28 09:18:13,461 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-28 09:18:13,463 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-28 09:18:13,464 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-28 09:18:13,467 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-28 09:18:13,469 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-28 09:18:13,475 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-28 09:18:13,476 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-28 09:18:13,477 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-28 09:18:13,479 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-28 09:18:13,481 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-28 09:18:13,483 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-28 09:18:13,490 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-28 09:18:13,492 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-28 09:18:13,492 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-28 09:18:13,496 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-28 09:18:13,497 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-28 09:18:13,497 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-28 09:18:13,498 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-28 09:18:13,499 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-28 09:18:13,500 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-28 09:18:13,500 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-28 09:18:13,501 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-28 09:18:13,502 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-28 09:18:13,512 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-28 09:18:13,515 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-28 09:18:13,515 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-28 09:18:13,516 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-28 09:18:13,516 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-28 09:18:13,516 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-28 09:18:13,517 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-28 09:18:13,518 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-28 09:18:13,519 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-28 09:18:13,566 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-28 09:18:13,566 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-28 09:18:13,570 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-28 09:18:13,570 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-28 09:18:13,572 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-28 09:18:13,572 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-28 09:18:13,573 INFO L138 SettingsManager]: * Use SBE=true [2021-10-28 09:18:13,573 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-28 09:18:13,573 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-28 09:18:13,573 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-28 09:18:13,574 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-28 09:18:13,574 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-28 09:18:13,575 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-28 09:18:13,575 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-28 09:18:13,575 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-28 09:18:13,575 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-28 09:18:13,575 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-28 09:18:13,576 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-28 09:18:13,576 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-28 09:18:13,576 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-28 09:18:13,576 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-28 09:18:13,576 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-28 09:18:13,577 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:18:13,577 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-28 09:18:13,577 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-28 09:18:13,577 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-28 09:18:13,578 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-28 09:18:13,578 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-28 09:18:13,578 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-28 09:18:13,580 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-28 09:18:13,580 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-28 09:18:13,581 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-28 09:18:13,581 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 458689bcd0930e2b07a61b7490d83be8ce4e59412b26a60581bf78c492ee412e [2021-10-28 09:18:13,818 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-28 09:18:13,838 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-28 09:18:13,841 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-28 09:18:13,842 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-28 09:18:13,842 INFO L275 PluginConnector]: CDTParser initialized [2021-10-28 09:18:13,843 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/../../sv-benchmarks/c/product-lines/minepump_spec3_product46.cil.c [2021-10-28 09:18:13,904 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/data/0eea7a046/e9ebce7a2b19430db8e7a1bc9f5c604f/FLAG1fe09c5f9 [2021-10-28 09:18:14,416 INFO L306 CDTParser]: Found 1 translation units. [2021-10-28 09:18:14,420 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/sv-benchmarks/c/product-lines/minepump_spec3_product46.cil.c [2021-10-28 09:18:14,442 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/data/0eea7a046/e9ebce7a2b19430db8e7a1bc9f5c604f/FLAG1fe09c5f9 [2021-10-28 09:18:14,727 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/data/0eea7a046/e9ebce7a2b19430db8e7a1bc9f5c604f [2021-10-28 09:18:14,730 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-28 09:18:14,741 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-28 09:18:14,743 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-28 09:18:14,743 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-28 09:18:14,749 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-28 09:18:14,750 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:18:14" (1/1) ... [2021-10-28 09:18:14,751 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@b05c64c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:14, skipping insertion in model container [2021-10-28 09:18:14,751 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:18:14" (1/1) ... [2021-10-28 09:18:14,756 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-28 09:18:14,800 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-28 09:18:15,136 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/sv-benchmarks/c/product-lines/minepump_spec3_product46.cil.c[18431,18444] [2021-10-28 09:18:15,138 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:18:15,156 INFO L203 MainTranslator]: Completed pre-run [2021-10-28 09:18:15,237 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/sv-benchmarks/c/product-lines/minepump_spec3_product46.cil.c[18431,18444] [2021-10-28 09:18:15,238 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:18:15,260 INFO L208 MainTranslator]: Completed translation [2021-10-28 09:18:15,261 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15 WrapperNode [2021-10-28 09:18:15,261 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-28 09:18:15,263 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-28 09:18:15,263 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-28 09:18:15,263 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-28 09:18:15,271 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,305 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,369 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-28 09:18:15,370 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-28 09:18:15,370 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-28 09:18:15,371 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-28 09:18:15,380 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,380 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,386 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,387 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,403 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,413 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,416 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,423 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-28 09:18:15,424 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-28 09:18:15,424 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-28 09:18:15,424 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-28 09:18:15,425 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (1/1) ... [2021-10-28 09:18:15,443 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:18:15,460 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/z3 [2021-10-28 09:18:15,517 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-28 09:18:15,542 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-28 09:18:15,561 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-28 09:18:15,561 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-28 09:18:15,561 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-28 09:18:15,561 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-28 09:18:16,563 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-28 09:18:16,564 INFO L299 CfgBuilder]: Removed 200 assume(true) statements. [2021-10-28 09:18:16,566 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:18:16 BoogieIcfgContainer [2021-10-28 09:18:16,566 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-28 09:18:16,569 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-28 09:18:16,569 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-28 09:18:16,573 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-28 09:18:16,575 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.10 09:18:14" (1/3) ... [2021-10-28 09:18:16,576 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@62738e2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:18:16, skipping insertion in model container [2021-10-28 09:18:16,577 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:18:15" (2/3) ... [2021-10-28 09:18:16,577 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@62738e2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:18:16, skipping insertion in model container [2021-10-28 09:18:16,578 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:18:16" (3/3) ... [2021-10-28 09:18:16,579 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product46.cil.c [2021-10-28 09:18:16,586 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-28 09:18:16,586 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-28 09:18:16,640 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-28 09:18:16,652 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-28 09:18:16,653 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-28 09:18:16,673 INFO L276 IsEmpty]: Start isEmpty. Operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:16,679 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-28 09:18:16,679 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:16,680 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:16,680 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:16,685 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:16,685 INFO L85 PathProgramCache]: Analyzing trace with hash 1532365727, now seen corresponding path program 1 times [2021-10-28 09:18:16,692 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:16,693 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [832475964] [2021-10-28 09:18:16,693 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:16,694 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:16,825 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:16,937 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:16,937 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:16,937 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [832475964] [2021-10-28 09:18:16,938 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [832475964] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:16,938 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:16,939 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:18:16,947 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [270769238] [2021-10-28 09:18:16,956 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-28 09:18:16,959 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:16,976 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-28 09:18:16,977 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:18:16,982 INFO L87 Difference]: Start difference. First operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,044 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:17,045 INFO L93 Difference]: Finished difference Result 264 states and 395 transitions. [2021-10-28 09:18:17,046 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-28 09:18:17,047 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-28 09:18:17,048 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:17,066 INFO L225 Difference]: With dead ends: 264 [2021-10-28 09:18:17,066 INFO L226 Difference]: Without dead ends: 131 [2021-10-28 09:18:17,069 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:18:17,086 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2021-10-28 09:18:17,108 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 131. [2021-10-28 09:18:17,109 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 131 states, 128 states have (on average 1.4765625) internal successors, (189), 130 states have internal predecessors, (189), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,111 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 131 states to 131 states and 189 transitions. [2021-10-28 09:18:17,112 INFO L78 Accepts]: Start accepts. Automaton has 131 states and 189 transitions. Word has length 18 [2021-10-28 09:18:17,112 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:17,112 INFO L470 AbstractCegarLoop]: Abstraction has 131 states and 189 transitions. [2021-10-28 09:18:17,113 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,113 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states and 189 transitions. [2021-10-28 09:18:17,114 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-28 09:18:17,114 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:17,115 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:17,115 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-28 09:18:17,115 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:17,116 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:17,116 INFO L85 PathProgramCache]: Analyzing trace with hash -70818645, now seen corresponding path program 1 times [2021-10-28 09:18:17,116 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:17,117 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [659929222] [2021-10-28 09:18:17,117 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:17,117 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:17,160 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:17,239 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:17,240 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:17,240 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [659929222] [2021-10-28 09:18:17,240 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [659929222] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:17,241 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:17,241 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:18:17,241 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [418666635] [2021-10-28 09:18:17,242 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:18:17,243 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:17,244 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:18:17,244 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:18:17,244 INFO L87 Difference]: Start difference. First operand 131 states and 189 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,254 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:17,254 INFO L93 Difference]: Finished difference Result 131 states and 189 transitions. [2021-10-28 09:18:17,254 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:18:17,255 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-28 09:18:17,255 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:17,256 INFO L225 Difference]: With dead ends: 131 [2021-10-28 09:18:17,256 INFO L226 Difference]: Without dead ends: 53 [2021-10-28 09:18:17,257 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:18:17,257 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-28 09:18:17,262 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-28 09:18:17,262 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4615384615384615) internal successors, (76), 52 states have internal predecessors, (76), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,263 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 76 transitions. [2021-10-28 09:18:17,263 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 76 transitions. Word has length 19 [2021-10-28 09:18:17,263 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:17,263 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 76 transitions. [2021-10-28 09:18:17,264 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,264 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 76 transitions. [2021-10-28 09:18:17,265 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-28 09:18:17,265 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:17,265 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:17,265 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-28 09:18:17,266 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:17,266 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:17,267 INFO L85 PathProgramCache]: Analyzing trace with hash 1705695964, now seen corresponding path program 1 times [2021-10-28 09:18:17,267 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:17,267 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1755590366] [2021-10-28 09:18:17,267 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:17,268 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:17,305 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:17,364 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:17,365 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:17,365 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1755590366] [2021-10-28 09:18:17,365 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1755590366] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:17,365 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:17,366 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:18:17,366 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [745998457] [2021-10-28 09:18:17,366 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:18:17,367 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:17,368 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:18:17,368 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:17,368 INFO L87 Difference]: Start difference. First operand 53 states and 76 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,408 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:17,408 INFO L93 Difference]: Finished difference Result 100 states and 146 transitions. [2021-10-28 09:18:17,409 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:18:17,409 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-28 09:18:17,409 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:17,410 INFO L225 Difference]: With dead ends: 100 [2021-10-28 09:18:17,410 INFO L226 Difference]: Without dead ends: 53 [2021-10-28 09:18:17,411 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:18:17,411 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-28 09:18:17,416 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-28 09:18:17,417 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4423076923076923) internal successors, (75), 52 states have internal predecessors, (75), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,418 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 75 transitions. [2021-10-28 09:18:17,418 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 75 transitions. Word has length 24 [2021-10-28 09:18:17,418 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:17,418 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 75 transitions. [2021-10-28 09:18:17,419 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,419 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 75 transitions. [2021-10-28 09:18:17,420 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-10-28 09:18:17,420 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:17,420 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:17,420 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-28 09:18:17,420 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:17,421 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:17,421 INFO L85 PathProgramCache]: Analyzing trace with hash -1939313638, now seen corresponding path program 1 times [2021-10-28 09:18:17,421 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:17,422 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [240817208] [2021-10-28 09:18:17,422 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:17,422 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:17,449 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:17,482 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:17,482 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:17,483 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [240817208] [2021-10-28 09:18:17,483 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [240817208] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:17,483 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:17,483 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:18:17,484 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1166232483] [2021-10-28 09:18:17,484 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:18:17,484 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:17,485 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:18:17,485 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:18:17,486 INFO L87 Difference]: Start difference. First operand 53 states and 75 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,518 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:17,518 INFO L93 Difference]: Finished difference Result 123 states and 177 transitions. [2021-10-28 09:18:17,518 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:18:17,518 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-10-28 09:18:17,519 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:17,519 INFO L225 Difference]: With dead ends: 123 [2021-10-28 09:18:17,520 INFO L226 Difference]: Without dead ends: 76 [2021-10-28 09:18:17,520 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:18:17,521 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2021-10-28 09:18:17,528 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 74. [2021-10-28 09:18:17,528 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 73 states have (on average 1.4246575342465753) internal successors, (104), 73 states have internal predecessors, (104), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,529 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 104 transitions. [2021-10-28 09:18:17,529 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 104 transitions. Word has length 26 [2021-10-28 09:18:17,529 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:17,529 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 104 transitions. [2021-10-28 09:18:17,529 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,530 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 104 transitions. [2021-10-28 09:18:17,530 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:18:17,534 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:17,535 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:17,535 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-28 09:18:17,536 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:17,537 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:17,537 INFO L85 PathProgramCache]: Analyzing trace with hash -501882354, now seen corresponding path program 1 times [2021-10-28 09:18:17,537 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:17,538 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [852287149] [2021-10-28 09:18:17,538 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:17,538 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:17,590 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:17,670 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:17,670 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:17,671 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [852287149] [2021-10-28 09:18:17,671 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [852287149] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:17,672 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:17,673 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:18:17,673 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1792509423] [2021-10-28 09:18:17,674 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:18:17,674 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:17,676 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:18:17,676 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:17,676 INFO L87 Difference]: Start difference. First operand 74 states and 104 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,808 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:17,808 INFO L93 Difference]: Finished difference Result 373 states and 541 transitions. [2021-10-28 09:18:17,809 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:18:17,809 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:18:17,809 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:17,813 INFO L225 Difference]: With dead ends: 373 [2021-10-28 09:18:17,813 INFO L226 Difference]: Without dead ends: 305 [2021-10-28 09:18:17,814 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:18:17,816 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 305 states. [2021-10-28 09:18:17,842 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 305 to 121. [2021-10-28 09:18:17,842 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 120 states have (on average 1.3916666666666666) internal successors, (167), 120 states have internal predecessors, (167), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,847 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 167 transitions. [2021-10-28 09:18:17,847 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 167 transitions. Word has length 32 [2021-10-28 09:18:17,847 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:17,848 INFO L470 AbstractCegarLoop]: Abstraction has 121 states and 167 transitions. [2021-10-28 09:18:17,848 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:17,849 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 167 transitions. [2021-10-28 09:18:17,851 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:18:17,851 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:17,851 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:17,851 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-28 09:18:17,852 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:17,852 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:17,852 INFO L85 PathProgramCache]: Analyzing trace with hash -1572928884, now seen corresponding path program 1 times [2021-10-28 09:18:17,852 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:17,853 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [391567595] [2021-10-28 09:18:17,853 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:17,868 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:17,899 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:17,960 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:17,960 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:17,960 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [391567595] [2021-10-28 09:18:17,961 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [391567595] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:17,961 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:17,962 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:18:17,962 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1954149521] [2021-10-28 09:18:17,964 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:18:17,967 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:17,968 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:18:17,968 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:18:17,968 INFO L87 Difference]: Start difference. First operand 121 states and 167 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,109 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:18,110 INFO L93 Difference]: Finished difference Result 250 states and 352 transitions. [2021-10-28 09:18:18,111 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 09:18:18,111 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:18:18,111 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:18,118 INFO L225 Difference]: With dead ends: 250 [2021-10-28 09:18:18,118 INFO L226 Difference]: Without dead ends: 182 [2021-10-28 09:18:18,120 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:18:18,121 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2021-10-28 09:18:18,148 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 179. [2021-10-28 09:18:18,149 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3932584269662922) internal successors, (248), 178 states have internal predecessors, (248), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,150 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 248 transitions. [2021-10-28 09:18:18,150 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 248 transitions. Word has length 33 [2021-10-28 09:18:18,150 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:18,151 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 248 transitions. [2021-10-28 09:18:18,151 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,152 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 248 transitions. [2021-10-28 09:18:18,158 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:18:18,158 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:18,158 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:18,158 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-28 09:18:18,159 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:18,159 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:18,159 INFO L85 PathProgramCache]: Analyzing trace with hash 1710921162, now seen corresponding path program 1 times [2021-10-28 09:18:18,160 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:18,164 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1323865230] [2021-10-28 09:18:18,164 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:18,165 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:18,195 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:18,236 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:18,236 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:18,237 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1323865230] [2021-10-28 09:18:18,237 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1323865230] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:18,238 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:18,238 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:18:18,238 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1789958778] [2021-10-28 09:18:18,239 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:18:18,239 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:18,240 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:18:18,240 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:18:18,240 INFO L87 Difference]: Start difference. First operand 179 states and 248 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,304 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:18,304 INFO L93 Difference]: Finished difference Result 497 states and 700 transitions. [2021-10-28 09:18:18,304 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:18:18,305 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:18:18,306 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:18,309 INFO L225 Difference]: With dead ends: 497 [2021-10-28 09:18:18,309 INFO L226 Difference]: Without dead ends: 370 [2021-10-28 09:18:18,311 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:18,312 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 370 states. [2021-10-28 09:18:18,331 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 370 to 179. [2021-10-28 09:18:18,332 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3820224719101124) internal successors, (246), 178 states have internal predecessors, (246), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,333 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 246 transitions. [2021-10-28 09:18:18,333 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 246 transitions. Word has length 33 [2021-10-28 09:18:18,333 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:18,334 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 246 transitions. [2021-10-28 09:18:18,334 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,334 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 246 transitions. [2021-10-28 09:18:18,336 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:18:18,337 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:18,337 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:18,337 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-28 09:18:18,337 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:18,338 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:18,338 INFO L85 PathProgramCache]: Analyzing trace with hash 1969086600, now seen corresponding path program 1 times [2021-10-28 09:18:18,339 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:18,339 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1506889389] [2021-10-28 09:18:18,339 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:18,340 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:18,361 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:18,426 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:18,426 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:18,426 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1506889389] [2021-10-28 09:18:18,427 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1506889389] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:18,427 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:18,427 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-28 09:18:18,427 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1654323765] [2021-10-28 09:18:18,428 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:18:18,428 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:18,428 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:18:18,429 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:18:18,429 INFO L87 Difference]: Start difference. First operand 179 states and 246 transitions. Second operand has 7 states, 7 states have (on average 4.714285714285714) internal successors, (33), 7 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,563 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:18,563 INFO L93 Difference]: Finished difference Result 624 states and 874 transitions. [2021-10-28 09:18:18,564 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-28 09:18:18,564 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.714285714285714) internal successors, (33), 7 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:18:18,564 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:18,567 INFO L225 Difference]: With dead ends: 624 [2021-10-28 09:18:18,567 INFO L226 Difference]: Without dead ends: 451 [2021-10-28 09:18:18,568 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-10-28 09:18:18,569 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 451 states. [2021-10-28 09:18:18,592 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 451 to 188. [2021-10-28 09:18:18,593 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 188 states, 187 states have (on average 1.3529411764705883) internal successors, (253), 187 states have internal predecessors, (253), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,594 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 188 states to 188 states and 253 transitions. [2021-10-28 09:18:18,594 INFO L78 Accepts]: Start accepts. Automaton has 188 states and 253 transitions. Word has length 33 [2021-10-28 09:18:18,594 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:18,594 INFO L470 AbstractCegarLoop]: Abstraction has 188 states and 253 transitions. [2021-10-28 09:18:18,595 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.714285714285714) internal successors, (33), 7 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,595 INFO L276 IsEmpty]: Start isEmpty. Operand 188 states and 253 transitions. [2021-10-28 09:18:18,595 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:18:18,596 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:18,596 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:18,596 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-28 09:18:18,596 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:18,597 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:18,597 INFO L85 PathProgramCache]: Analyzing trace with hash -558169663, now seen corresponding path program 1 times [2021-10-28 09:18:18,597 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:18,598 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1552523645] [2021-10-28 09:18:18,598 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:18,598 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:18,616 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:18,661 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:18,661 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:18,662 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1552523645] [2021-10-28 09:18:18,662 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1552523645] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:18,662 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:18,662 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:18:18,663 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1277651831] [2021-10-28 09:18:18,663 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:18:18,663 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:18,664 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:18:18,664 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:18:18,664 INFO L87 Difference]: Start difference. First operand 188 states and 253 transitions. Second operand has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:18,922 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:18,922 INFO L93 Difference]: Finished difference Result 1177 states and 1553 transitions. [2021-10-28 09:18:18,922 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-28 09:18:18,923 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:18:18,923 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:18,928 INFO L225 Difference]: With dead ends: 1177 [2021-10-28 09:18:18,929 INFO L226 Difference]: Without dead ends: 995 [2021-10-28 09:18:18,929 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-28 09:18:18,931 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 995 states. [2021-10-28 09:18:18,997 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 995 to 356. [2021-10-28 09:18:18,998 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 356 states, 355 states have (on average 1.3295774647887324) internal successors, (472), 355 states have internal predecessors, (472), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,000 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 356 states to 356 states and 472 transitions. [2021-10-28 09:18:19,000 INFO L78 Accepts]: Start accepts. Automaton has 356 states and 472 transitions. Word has length 36 [2021-10-28 09:18:19,001 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:19,001 INFO L470 AbstractCegarLoop]: Abstraction has 356 states and 472 transitions. [2021-10-28 09:18:19,001 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,001 INFO L276 IsEmpty]: Start isEmpty. Operand 356 states and 472 transitions. [2021-10-28 09:18:19,002 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:18:19,002 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:19,002 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:19,002 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-28 09:18:19,003 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:19,003 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:19,003 INFO L85 PathProgramCache]: Analyzing trace with hash 121888707, now seen corresponding path program 1 times [2021-10-28 09:18:19,004 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:19,004 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [424564200] [2021-10-28 09:18:19,004 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:19,004 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:19,021 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:19,057 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:19,058 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:19,058 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [424564200] [2021-10-28 09:18:19,058 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [424564200] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:19,058 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:19,058 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:18:19,059 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1530708949] [2021-10-28 09:18:19,059 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:18:19,059 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:19,060 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:18:19,060 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:19,060 INFO L87 Difference]: Start difference. First operand 356 states and 472 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,271 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:19,271 INFO L93 Difference]: Finished difference Result 930 states and 1259 transitions. [2021-10-28 09:18:19,272 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:18:19,272 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:18:19,273 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:19,276 INFO L225 Difference]: With dead ends: 930 [2021-10-28 09:18:19,276 INFO L226 Difference]: Without dead ends: 580 [2021-10-28 09:18:19,277 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:18:19,278 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 580 states. [2021-10-28 09:18:19,317 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 580 to 302. [2021-10-28 09:18:19,318 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.2923588039867109) internal successors, (389), 301 states have internal predecessors, (389), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,320 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 389 transitions. [2021-10-28 09:18:19,320 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 389 transitions. Word has length 36 [2021-10-28 09:18:19,320 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:19,320 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 389 transitions. [2021-10-28 09:18:19,321 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,321 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 389 transitions. [2021-10-28 09:18:19,321 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2021-10-28 09:18:19,321 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:19,322 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:19,322 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-28 09:18:19,322 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:19,323 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:19,323 INFO L85 PathProgramCache]: Analyzing trace with hash -613249401, now seen corresponding path program 1 times [2021-10-28 09:18:19,323 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:19,323 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1364376009] [2021-10-28 09:18:19,323 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:19,324 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:19,339 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:19,398 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:19,399 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:19,399 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1364376009] [2021-10-28 09:18:19,399 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1364376009] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:19,399 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:19,400 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-28 09:18:19,400 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2140769248] [2021-10-28 09:18:19,400 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:18:19,400 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:19,401 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:18:19,401 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:18:19,401 INFO L87 Difference]: Start difference. First operand 302 states and 389 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,698 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:19,698 INFO L93 Difference]: Finished difference Result 889 states and 1138 transitions. [2021-10-28 09:18:19,698 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-10-28 09:18:19,698 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 37 [2021-10-28 09:18:19,699 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:19,702 INFO L225 Difference]: With dead ends: 889 [2021-10-28 09:18:19,702 INFO L226 Difference]: Without dead ends: 593 [2021-10-28 09:18:19,703 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=65, Invalid=117, Unknown=0, NotChecked=0, Total=182 [2021-10-28 09:18:19,704 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 593 states. [2021-10-28 09:18:19,745 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 593 to 282. [2021-10-28 09:18:19,746 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2526690391459074) internal successors, (352), 281 states have internal predecessors, (352), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,747 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 352 transitions. [2021-10-28 09:18:19,747 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 352 transitions. Word has length 37 [2021-10-28 09:18:19,747 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:19,748 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 352 transitions. [2021-10-28 09:18:19,748 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,748 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 352 transitions. [2021-10-28 09:18:19,749 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-28 09:18:19,749 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:19,749 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:19,749 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-28 09:18:19,750 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:19,750 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:19,750 INFO L85 PathProgramCache]: Analyzing trace with hash -1278493487, now seen corresponding path program 1 times [2021-10-28 09:18:19,750 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:19,750 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [185028532] [2021-10-28 09:18:19,751 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:19,751 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:19,771 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:19,819 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-28 09:18:19,820 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:19,820 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [185028532] [2021-10-28 09:18:19,820 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [185028532] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:19,820 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:19,820 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:18:19,820 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1102071094] [2021-10-28 09:18:19,821 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:18:19,821 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:19,821 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:18:19,822 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:19,822 INFO L87 Difference]: Start difference. First operand 282 states and 352 transitions. Second operand has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,901 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:19,902 INFO L93 Difference]: Finished difference Result 653 states and 819 transitions. [2021-10-28 09:18:19,902 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:18:19,902 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-28 09:18:19,904 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:19,909 INFO L225 Difference]: With dead ends: 653 [2021-10-28 09:18:19,909 INFO L226 Difference]: Without dead ends: 377 [2021-10-28 09:18:19,910 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:18:19,911 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 377 states. [2021-10-28 09:18:19,950 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 377 to 282. [2021-10-28 09:18:19,951 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2384341637010676) internal successors, (348), 281 states have internal predecessors, (348), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,952 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 348 transitions. [2021-10-28 09:18:19,952 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 348 transitions. Word has length 53 [2021-10-28 09:18:19,953 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:19,953 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 348 transitions. [2021-10-28 09:18:19,954 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:19,954 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 348 transitions. [2021-10-28 09:18:19,955 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-28 09:18:19,955 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:19,955 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:19,955 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-10-28 09:18:19,955 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:19,956 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:19,956 INFO L85 PathProgramCache]: Analyzing trace with hash -1350880045, now seen corresponding path program 1 times [2021-10-28 09:18:19,956 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:19,956 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1520785936] [2021-10-28 09:18:19,956 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:19,957 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:19,979 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:20,029 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-28 09:18:20,030 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:20,030 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1520785936] [2021-10-28 09:18:20,030 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1520785936] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:20,030 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:20,030 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:18:20,031 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1847265208] [2021-10-28 09:18:20,031 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:18:20,032 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:20,032 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:18:20,032 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:18:20,033 INFO L87 Difference]: Start difference. First operand 282 states and 348 transitions. Second operand has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,093 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:20,094 INFO L93 Difference]: Finished difference Result 600 states and 751 transitions. [2021-10-28 09:18:20,094 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 09:18:20,094 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-28 09:18:20,095 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:20,096 INFO L225 Difference]: With dead ends: 600 [2021-10-28 09:18:20,096 INFO L226 Difference]: Without dead ends: 324 [2021-10-28 09:18:20,097 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:20,098 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 324 states. [2021-10-28 09:18:20,142 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 324 to 240. [2021-10-28 09:18:20,143 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2426778242677825) internal successors, (297), 239 states have internal predecessors, (297), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,144 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 297 transitions. [2021-10-28 09:18:20,144 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 297 transitions. Word has length 53 [2021-10-28 09:18:20,145 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:20,145 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 297 transitions. [2021-10-28 09:18:20,145 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,145 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 297 transitions. [2021-10-28 09:18:20,146 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2021-10-28 09:18:20,146 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:20,146 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:20,146 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-10-28 09:18:20,147 INFO L402 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:20,147 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:20,147 INFO L85 PathProgramCache]: Analyzing trace with hash -1916178793, now seen corresponding path program 1 times [2021-10-28 09:18:20,147 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:20,148 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1173115507] [2021-10-28 09:18:20,148 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:20,148 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:20,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:20,211 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:18:20,211 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:20,212 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1173115507] [2021-10-28 09:18:20,212 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1173115507] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:20,212 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:20,212 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:18:20,212 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [605422484] [2021-10-28 09:18:20,213 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:18:20,213 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:20,213 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:18:20,214 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:20,214 INFO L87 Difference]: Start difference. First operand 240 states and 297 transitions. Second operand has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,323 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:20,323 INFO L93 Difference]: Finished difference Result 612 states and 756 transitions. [2021-10-28 09:18:20,324 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:18:20,324 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 54 [2021-10-28 09:18:20,324 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:20,326 INFO L225 Difference]: With dead ends: 612 [2021-10-28 09:18:20,326 INFO L226 Difference]: Without dead ends: 378 [2021-10-28 09:18:20,328 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:18:20,328 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 378 states. [2021-10-28 09:18:20,361 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 378 to 240. [2021-10-28 09:18:20,362 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2259414225941423) internal successors, (293), 239 states have internal predecessors, (293), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,363 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 293 transitions. [2021-10-28 09:18:20,363 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 293 transitions. Word has length 54 [2021-10-28 09:18:20,364 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:20,364 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 293 transitions. [2021-10-28 09:18:20,364 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,364 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 293 transitions. [2021-10-28 09:18:20,365 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-28 09:18:20,365 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:20,365 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:20,365 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2021-10-28 09:18:20,366 INFO L402 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:20,366 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:20,366 INFO L85 PathProgramCache]: Analyzing trace with hash 1094031012, now seen corresponding path program 1 times [2021-10-28 09:18:20,366 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:20,367 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1531873488] [2021-10-28 09:18:20,367 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:20,367 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:20,385 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:20,453 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-10-28 09:18:20,453 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:20,453 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1531873488] [2021-10-28 09:18:20,453 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1531873488] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:20,454 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:20,454 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:18:20,454 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2128787195] [2021-10-28 09:18:20,454 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:18:20,454 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:20,455 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:18:20,455 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:18:20,455 INFO L87 Difference]: Start difference. First operand 240 states and 293 transitions. Second operand has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,623 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:20,623 INFO L93 Difference]: Finished difference Result 571 states and 706 transitions. [2021-10-28 09:18:20,623 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-10-28 09:18:20,624 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-28 09:18:20,624 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:20,626 INFO L225 Difference]: With dead ends: 571 [2021-10-28 09:18:20,626 INFO L226 Difference]: Without dead ends: 387 [2021-10-28 09:18:20,627 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-10-28 09:18:20,627 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 387 states. [2021-10-28 09:18:20,682 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 387 to 240. [2021-10-28 09:18:20,683 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2217573221757323) internal successors, (292), 239 states have internal predecessors, (292), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,684 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 292 transitions. [2021-10-28 09:18:20,685 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 292 transitions. Word has length 56 [2021-10-28 09:18:20,685 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:20,685 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 292 transitions. [2021-10-28 09:18:20,685 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:20,685 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 292 transitions. [2021-10-28 09:18:20,686 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2021-10-28 09:18:20,686 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:20,687 INFO L513 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:20,687 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2021-10-28 09:18:20,687 INFO L402 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:20,688 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:20,688 INFO L85 PathProgramCache]: Analyzing trace with hash -1896433734, now seen corresponding path program 1 times [2021-10-28 09:18:20,688 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:20,688 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [394735346] [2021-10-28 09:18:20,688 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:20,689 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:20,705 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:20,763 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 30 proven. 0 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2021-10-28 09:18:20,763 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:20,763 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [394735346] [2021-10-28 09:18:20,764 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [394735346] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:20,764 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:20,764 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-10-28 09:18:20,764 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [483468352] [2021-10-28 09:18:20,765 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-10-28 09:18:20,765 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:20,765 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-10-28 09:18:20,765 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:18:20,766 INFO L87 Difference]: Start difference. First operand 240 states and 292 transitions. Second operand has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:21,078 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:21,078 INFO L93 Difference]: Finished difference Result 609 states and 743 transitions. [2021-10-28 09:18:21,078 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-10-28 09:18:21,078 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 77 [2021-10-28 09:18:21,079 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:21,081 INFO L225 Difference]: With dead ends: 609 [2021-10-28 09:18:21,081 INFO L226 Difference]: Without dead ends: 425 [2021-10-28 09:18:21,082 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 31 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=104, Invalid=202, Unknown=0, NotChecked=0, Total=306 [2021-10-28 09:18:21,083 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 425 states. [2021-10-28 09:18:21,118 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 425 to 232. [2021-10-28 09:18:21,119 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 232 states, 231 states have (on average 1.2207792207792207) internal successors, (282), 231 states have internal predecessors, (282), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:21,120 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 232 states to 232 states and 282 transitions. [2021-10-28 09:18:21,120 INFO L78 Accepts]: Start accepts. Automaton has 232 states and 282 transitions. Word has length 77 [2021-10-28 09:18:21,120 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:21,121 INFO L470 AbstractCegarLoop]: Abstraction has 232 states and 282 transitions. [2021-10-28 09:18:21,121 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:21,121 INFO L276 IsEmpty]: Start isEmpty. Operand 232 states and 282 transitions. [2021-10-28 09:18:21,127 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2021-10-28 09:18:21,127 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:18:21,127 INFO L513 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:21,128 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15 [2021-10-28 09:18:21,128 INFO L402 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:18:21,128 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:18:21,128 INFO L85 PathProgramCache]: Analyzing trace with hash -98970795, now seen corresponding path program 1 times [2021-10-28 09:18:21,128 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:18:21,129 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [588324531] [2021-10-28 09:18:21,129 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:18:21,129 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:18:21,151 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:18:21,211 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2021-10-28 09:18:21,211 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:18:21,211 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [588324531] [2021-10-28 09:18:21,211 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [588324531] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:18:21,211 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:18:21,211 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:18:21,211 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [863890958] [2021-10-28 09:18:21,212 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:18:21,212 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:18:21,213 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:18:21,213 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:18:21,213 INFO L87 Difference]: Start difference. First operand 232 states and 282 transitions. Second operand has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:21,428 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:18:21,428 INFO L93 Difference]: Finished difference Result 953 states and 1179 transitions. [2021-10-28 09:18:21,428 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-10-28 09:18:21,429 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 79 [2021-10-28 09:18:21,429 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:18:21,429 INFO L225 Difference]: With dead ends: 953 [2021-10-28 09:18:21,429 INFO L226 Difference]: Without dead ends: 0 [2021-10-28 09:18:21,431 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-28 09:18:21,431 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-28 09:18:21,431 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-28 09:18:21,431 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:21,431 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-28 09:18:21,431 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 79 [2021-10-28 09:18:21,432 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:18:21,432 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-28 09:18:21,432 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:18:21,432 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-28 09:18:21,432 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-28 09:18:21,434 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:18:21,435 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:18:21,435 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:18:21,435 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable16 [2021-10-28 09:18:21,437 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-28 09:18:21,442 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:21,446 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:21,447 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:21,448 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:21,449 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,121 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,752 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,753 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,754 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,755 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,755 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,755 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,756 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,756 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,758 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,758 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,759 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,759 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,760 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,760 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,761 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,791 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,791 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,792 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,793 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:22,793 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,132 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,132 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,133 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,134 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,212 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,213 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,245 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,662 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,799 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,800 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,800 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:23,801 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,784 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,785 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,786 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,786 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,787 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,864 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,913 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,914 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:24,915 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:25,817 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:25,822 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:25,822 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:25,823 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:26,463 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:26,652 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:26,653 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:26,654 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:26,654 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:26,655 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:26,659 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:18:39,233 INFO L853 garLoopResultBuilder]: At program point L828(lines 823 831) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse3 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse4 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse5 (= ULTIMATE.start_main_~tmp~4 1)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse7 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse8 (= |ULTIMATE.start_isPumpRunning_#res| 1)) (.cse9 (not (= 0 ~systemActive~0))) (.cse10 (= ~pumpRunning~0 1))) (or (and (= ULTIMATE.start_processEnvironment_~tmp~6 0) .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10) (and .cse0 (not (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0)) .cse1 .cse2 .cse3 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse4 .cse5 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse6 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse7 .cse8 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0) .cse9 .cse10))) [2021-10-28 09:18:39,233 INFO L853 garLoopResultBuilder]: At program point L828-1(lines 823 831) the Hoare annotation is: false [2021-10-28 09:18:39,233 INFO L857 garLoopResultBuilder]: For program point L762(lines 762 770) no Hoare annotation was computed. [2021-10-28 09:18:39,233 INFO L853 garLoopResultBuilder]: At program point L828-2(lines 823 831) the Hoare annotation is: false [2021-10-28 09:18:39,233 INFO L857 garLoopResultBuilder]: For program point L762-1(lines 762 770) no Hoare annotation was computed. [2021-10-28 09:18:39,233 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 967) no Hoare annotation was computed. [2021-10-28 09:18:39,233 INFO L857 garLoopResultBuilder]: For program point L762-2(lines 762 770) no Hoare annotation was computed. [2021-10-28 09:18:39,234 INFO L857 garLoopResultBuilder]: For program point L69(lines 69 82) no Hoare annotation was computed. [2021-10-28 09:18:39,234 INFO L853 garLoopResultBuilder]: At program point L69-1(lines 1 970) the Hoare annotation is: (let ((.cse14 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse12 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse13 (= ~methaneLevelCritical~0 0)) (.cse16 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse2 (not .cse16)) (.cse4 (not .cse13)) (.cse0 (= ULTIMATE.start_processEnvironment_~tmp~6 0)) (.cse5 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse10 (= ~pumpRunning~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse11 (= ~pumpRunning~0 0)) (.cse3 (not .cse12)) (.cse6 (= ULTIMATE.start_main_~tmp~4 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse15 (= ~waterLevel~0 1)) (.cse8 (not .cse14)) (.cse9 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10) (and .cse1 .cse11 .cse12 .cse13 .cse14 (<= ~waterLevel~0 1) .cse2 (not (= |ULTIMATE.start_getWaterLevel_#res| 2)) .cse6 .cse7 (not (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 2)) .cse9) (and .cse1 .cse11 .cse13 .cse6 .cse7 .cse15 .cse9) (and .cse1 .cse11 .cse2 .cse3 .cse4 .cse6 .cse7 .cse8 .cse9) (and .cse0 .cse1 .cse12 .cse13 .cse14 .cse5 .cse6 .cse7 .cse16 .cse9 .cse10) (and .cse1 (not (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0)) .cse12 .cse13 .cse14 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse5 .cse6 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse16 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0) .cse9 .cse10) (and .cse1 .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 1) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse3 .cse6 .cse7 .cse15 .cse8 .cse9)))) [2021-10-28 09:18:39,234 INFO L857 garLoopResultBuilder]: For program point L69-2(lines 69 82) no Hoare annotation was computed. [2021-10-28 09:18:39,234 INFO L853 garLoopResultBuilder]: At program point L69-3(lines 1 970) the Hoare annotation is: false [2021-10-28 09:18:39,234 INFO L857 garLoopResultBuilder]: For program point L69-4(lines 69 82) no Hoare annotation was computed. [2021-10-28 09:18:39,234 INFO L853 garLoopResultBuilder]: At program point L69-5(lines 1 970) the Hoare annotation is: false [2021-10-28 09:18:39,235 INFO L857 garLoopResultBuilder]: For program point L732(lines 732 749) no Hoare annotation was computed. [2021-10-28 09:18:39,235 INFO L857 garLoopResultBuilder]: For program point L732-1(lines 732 749) no Hoare annotation was computed. [2021-10-28 09:18:39,235 INFO L857 garLoopResultBuilder]: For program point L732-2(lines 732 749) no Hoare annotation was computed. [2021-10-28 09:18:39,235 INFO L857 garLoopResultBuilder]: For program point L732-3(lines 732 749) no Hoare annotation was computed. [2021-10-28 09:18:39,235 INFO L857 garLoopResultBuilder]: For program point L732-4(lines 732 749) no Hoare annotation was computed. [2021-10-28 09:18:39,235 INFO L857 garLoopResultBuilder]: For program point L732-5(lines 732 749) no Hoare annotation was computed. [2021-10-28 09:18:39,236 INFO L853 garLoopResultBuilder]: At program point L700(lines 699 718) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_main_~tmp~4 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse2 .cse3 .cse4) (and .cse0 (= ULTIMATE.start_activatePump_~tmp~7 0) .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1) .cse4))) [2021-10-28 09:18:39,236 INFO L857 garLoopResultBuilder]: For program point L700-1(lines 700 706) no Hoare annotation was computed. [2021-10-28 09:18:39,236 INFO L853 garLoopResultBuilder]: At program point L700-2(lines 699 718) the Hoare annotation is: false [2021-10-28 09:18:39,236 INFO L853 garLoopResultBuilder]: At program point L700-3(lines 699 718) the Hoare annotation is: false [2021-10-28 09:18:39,236 INFO L857 garLoopResultBuilder]: For program point L73(lines 73 79) no Hoare annotation was computed. [2021-10-28 09:18:39,236 INFO L857 garLoopResultBuilder]: For program point L73-2(lines 73 79) no Hoare annotation was computed. [2021-10-28 09:18:39,237 INFO L857 garLoopResultBuilder]: For program point L73-4(lines 73 79) no Hoare annotation was computed. [2021-10-28 09:18:39,237 INFO L857 garLoopResultBuilder]: For program point L602(lines 602 606) no Hoare annotation was computed. [2021-10-28 09:18:39,237 INFO L857 garLoopResultBuilder]: For program point L602-3(lines 602 606) no Hoare annotation was computed. [2021-10-28 09:18:39,237 INFO L857 garLoopResultBuilder]: For program point L602-6(lines 602 606) no Hoare annotation was computed. [2021-10-28 09:18:39,237 INFO L853 garLoopResultBuilder]: At program point L504-2(lines 504 518) the Hoare annotation is: false [2021-10-28 09:18:39,237 INFO L857 garLoopResultBuilder]: For program point L967(line 967) no Hoare annotation was computed. [2021-10-28 09:18:39,237 INFO L857 garLoopResultBuilder]: For program point L967-1(line 967) no Hoare annotation was computed. [2021-10-28 09:18:39,238 INFO L857 garLoopResultBuilder]: For program point L967-2(line 967) no Hoare annotation was computed. [2021-10-28 09:18:39,238 INFO L857 garLoopResultBuilder]: For program point L736(lines 736 744) no Hoare annotation was computed. [2021-10-28 09:18:39,238 INFO L857 garLoopResultBuilder]: For program point L736-1(lines 736 744) no Hoare annotation was computed. [2021-10-28 09:18:39,238 INFO L857 garLoopResultBuilder]: For program point L736-2(lines 736 744) no Hoare annotation was computed. [2021-10-28 09:18:39,238 INFO L857 garLoopResultBuilder]: For program point L736-3(lines 736 744) no Hoare annotation was computed. [2021-10-28 09:18:39,238 INFO L857 garLoopResultBuilder]: For program point L736-4(lines 736 744) no Hoare annotation was computed. [2021-10-28 09:18:39,238 INFO L857 garLoopResultBuilder]: For program point L736-5(lines 736 744) no Hoare annotation was computed. [2021-10-28 09:18:39,239 INFO L857 garLoopResultBuilder]: For program point L505(line 505) no Hoare annotation was computed. [2021-10-28 09:18:39,239 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 967) no Hoare annotation was computed. [2021-10-28 09:18:39,239 INFO L853 garLoopResultBuilder]: At program point L671(lines 666 674) the Hoare annotation is: (let ((.cse9 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse5 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse10 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse13 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse12 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse11 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0)) (.cse6 (= ULTIMATE.start_main_~tmp~4 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (<= ~waterLevel~0 1) (not .cse5) (not (= |ULTIMATE.start_getWaterLevel_#res| 2)) .cse6 .cse7 .cse8) (and (= ULTIMATE.start_processEnvironment_~tmp~6 0) .cse0 .cse2 .cse3 .cse4 .cse9 .cse6 .cse7 .cse5 .cse8 .cse10) (and .cse0 (not .cse11) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) (not .cse12) .cse9 .cse6 (not .cse13) .cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse5 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0) .cse8 .cse10) (and .cse0 .cse13 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 1) .cse2 .cse3 .cse4 .cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse11 (= |ULTIMATE.start_getWaterLevel_#res| 1) .cse6 .cse7 (= ~waterLevel~0 1) .cse8))) [2021-10-28 09:18:39,239 INFO L853 garLoopResultBuilder]: At program point L671-1(lines 666 674) the Hoare annotation is: false [2021-10-28 09:18:39,239 INFO L853 garLoopResultBuilder]: At program point L671-2(lines 666 674) the Hoare annotation is: false [2021-10-28 09:18:39,240 INFO L857 garLoopResultBuilder]: For program point L936(lines 936 949) no Hoare annotation was computed. [2021-10-28 09:18:39,240 INFO L853 garLoopResultBuilder]: At program point L639(lines 634 642) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse3 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse4 (= ULTIMATE.start_main_~tmp~4 1)) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (not (= 0 ~systemActive~0))) (.cse7 (= ~pumpRunning~0 1))) (or (and .cse0 (not .cse1) (not .cse2) .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7))) [2021-10-28 09:18:39,240 INFO L853 garLoopResultBuilder]: At program point L639-1(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,240 INFO L853 garLoopResultBuilder]: At program point L639-2(lines 634 642) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0))) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse7 (= ULTIMATE.start_main_~tmp~4 1)) (.cse8 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse9 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0)) (.cse12 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (not .cse5) (not .cse6) .cse7 .cse8 .cse9 .cse10 .cse11 .cse12) (and .cse0 .cse1 .cse2 .cse5 .cse6 .cse3 .cse4 .cse7 .cse8 .cse9 .cse10 .cse11 .cse12))) [2021-10-28 09:18:39,240 INFO L853 garLoopResultBuilder]: At program point L639-3(lines 634 642) the Hoare annotation is: (let ((.cse12 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse11 (= ~methaneLevelCritical~0 0)) (.cse10 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse0 (= ULTIMATE.start_processEnvironment_~tmp~6 0)) (.cse3 (not .cse10)) (.cse4 (not .cse11)) (.cse2 (not .cse12)) (.cse5 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse9 (= ~pumpRunning~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse19 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse13 (= ~pumpRunning~0 0)) (.cse14 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 1)) (.cse18 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse15 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse17 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0)) (.cse6 (= ULTIMATE.start_main_~tmp~4 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse16 (= ~waterLevel~0 1)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9) (and .cse0 .cse1 .cse10 .cse11 .cse5 .cse6 .cse7 .cse12 .cse8 .cse9) (and .cse1 .cse13 .cse2 .cse3 .cse4 .cse6 .cse7 .cse8) (and .cse1 .cse13 .cse14 .cse15 .cse3 .cse4 .cse6 .cse7 .cse16 .cse8) (and .cse1 .cse13 .cse10 .cse11 (<= ~waterLevel~0 1) .cse2 .cse6 .cse7 .cse8) (and .cse1 (not .cse17) .cse10 .cse11 (<= 2 ~waterLevel~0) (not .cse18) .cse5 .cse6 (not .cse19) .cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse12 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0) .cse8 .cse9) (and .cse1 .cse19 .cse13 .cse14 .cse10 .cse11 .cse18 .cse15 .cse17 .cse6 .cse7 .cse16 .cse8)))) [2021-10-28 09:18:39,241 INFO L853 garLoopResultBuilder]: At program point L639-4(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,241 INFO L853 garLoopResultBuilder]: At program point L639-5(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,241 INFO L853 garLoopResultBuilder]: At program point L639-6(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,241 INFO L853 garLoopResultBuilder]: At program point L639-7(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,241 INFO L853 garLoopResultBuilder]: At program point L639-8(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,241 INFO L853 garLoopResultBuilder]: At program point L639-9(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,242 INFO L853 garLoopResultBuilder]: At program point L639-10(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,242 INFO L853 garLoopResultBuilder]: At program point L639-11(lines 634 642) the Hoare annotation is: false [2021-10-28 09:18:39,242 INFO L857 garLoopResultBuilder]: For program point L508(lines 508 512) no Hoare annotation was computed. [2021-10-28 09:18:39,242 INFO L857 garLoopResultBuilder]: For program point L508-1(lines 700 706) no Hoare annotation was computed. [2021-10-28 09:18:39,242 INFO L853 garLoopResultBuilder]: At program point L707(lines 707 713) the Hoare annotation is: (let ((.cse10 (= ~methaneLevelCritical~0 0)) (.cse11 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse0 (= ULTIMATE.start_processEnvironment_~tmp~6 0)) (.cse17 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse15 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse5 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse12 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse9 (= ~pumpRunning~0 1)) (.cse14 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 1)) (.cse16 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse18 (= ~waterLevel~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse13 (= ~pumpRunning~0 0)) (.cse2 (not .cse11)) (.cse4 (not .cse10)) (.cse6 (= ULTIMATE.start_main_~tmp~4 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not .cse3) .cse4 .cse5 .cse6 .cse7 .cse8 .cse9) (and .cse0 .cse1 .cse3 .cse10 .cse5 .cse6 .cse7 .cse11 .cse8 .cse9) (and .cse1 .cse12 .cse13 .cse14 .cse15 .cse16 .cse17 .cse6 .cse7 .cse18 .cse8) (and .cse1 .cse13 (<= ~waterLevel~0 1) .cse2 .cse6 .cse7 .cse8) (and .cse1 (not .cse17) .cse3 .cse10 (<= 2 ~waterLevel~0) (not .cse15) .cse5 .cse6 (not .cse12) .cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0) .cse8 .cse9) (and .cse1 .cse13 .cse14 .cse16 .cse4 .cse6 .cse7 .cse18 .cse8) (and .cse1 .cse13 .cse2 .cse4 .cse6 .cse7 .cse8)))) [2021-10-28 09:18:39,243 INFO L853 garLoopResultBuilder]: At program point L707-1(lines 707 713) the Hoare annotation is: false [2021-10-28 09:18:39,243 INFO L853 garLoopResultBuilder]: At program point L707-2(lines 707 713) the Hoare annotation is: false [2021-10-28 09:18:39,243 INFO L853 garLoopResultBuilder]: At program point L113(lines 1 970) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:18:39,243 INFO L857 garLoopResultBuilder]: For program point L907(lines 906 953) no Hoare annotation was computed. [2021-10-28 09:18:39,243 INFO L857 garLoopResultBuilder]: For program point L908(lines 908 912) no Hoare annotation was computed. [2021-10-28 09:18:39,243 INFO L857 garLoopResultBuilder]: For program point L579(lines 579 586) no Hoare annotation was computed. [2021-10-28 09:18:39,243 INFO L860 garLoopResultBuilder]: At program point L579-1(lines 579 586) the Hoare annotation is: true [2021-10-28 09:18:39,244 INFO L857 garLoopResultBuilder]: For program point L877(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,244 INFO L857 garLoopResultBuilder]: For program point L877-2(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,244 INFO L857 garLoopResultBuilder]: For program point L877-3(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,244 INFO L857 garLoopResultBuilder]: For program point L877-5(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,244 INFO L857 garLoopResultBuilder]: For program point L679(lines 679 685) no Hoare annotation was computed. [2021-10-28 09:18:39,244 INFO L857 garLoopResultBuilder]: For program point L877-6(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,245 INFO L857 garLoopResultBuilder]: For program point L679-1(lines 679 685) no Hoare annotation was computed. [2021-10-28 09:18:39,245 INFO L857 garLoopResultBuilder]: For program point L679-2(lines 679 685) no Hoare annotation was computed. [2021-10-28 09:18:39,245 INFO L857 garLoopResultBuilder]: For program point L877-8(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,245 INFO L857 garLoopResultBuilder]: For program point L679-3(lines 679 685) no Hoare annotation was computed. [2021-10-28 09:18:39,245 INFO L857 garLoopResultBuilder]: For program point L877-9(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,245 INFO L857 garLoopResultBuilder]: For program point L679-4(lines 679 685) no Hoare annotation was computed. [2021-10-28 09:18:39,245 INFO L857 garLoopResultBuilder]: For program point L877-11(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,246 INFO L857 garLoopResultBuilder]: For program point L679-5(lines 679 685) no Hoare annotation was computed. [2021-10-28 09:18:39,246 INFO L857 garLoopResultBuilder]: For program point L877-12(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,246 INFO L857 garLoopResultBuilder]: For program point L877-14(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,246 INFO L857 garLoopResultBuilder]: For program point L877-15(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,246 INFO L857 garLoopResultBuilder]: For program point L877-17(lines 877 881) no Hoare annotation was computed. [2021-10-28 09:18:39,246 INFO L857 garLoopResultBuilder]: For program point L944(lines 944 948) no Hoare annotation was computed. [2021-10-28 09:18:39,246 INFO L853 garLoopResultBuilder]: At program point L944-2(lines 700 706) the Hoare annotation is: (let ((.cse1 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse5 (= ~pumpRunning~0 1)) (.cse7 (<= 2 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse8 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_main_~tmp~4 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (= ~waterLevel~0 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and (= ULTIMATE.start_processEnvironment_~tmp~6 0) .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and (or (and .cse0 (not (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0)) .cse1 .cse6 .cse4 .cse5) (and .cse0 .cse7 .cse1 .cse4 .cse5)) .cse2 .cse3) (and .cse0 .cse8 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse2 .cse3 .cse4) (and .cse0 .cse8 .cse7 .cse2 .cse3 .cse4) (and .cse0 .cse8 .cse2 .cse3 .cse6 .cse4))) [2021-10-28 09:18:39,247 INFO L857 garLoopResultBuilder]: For program point L614(lines 614 618) no Hoare annotation was computed. [2021-10-28 09:18:39,247 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-28 09:18:39,247 INFO L853 garLoopResultBuilder]: At program point L121(lines 116 124) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:18:39,247 INFO L853 garLoopResultBuilder]: At program point L684(lines 675 688) the Hoare annotation is: false [2021-10-28 09:18:39,247 INFO L853 garLoopResultBuilder]: At program point L684-1(lines 675 688) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse3 (= ULTIMATE.start_main_~tmp~4 1)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1) .cse5) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse3 .cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse5) (and .cse0 .cse1 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse2 .cse3 .cse4 .cse5))) [2021-10-28 09:18:39,248 INFO L853 garLoopResultBuilder]: At program point L684-2(lines 675 688) the Hoare annotation is: false [2021-10-28 09:18:39,248 INFO L853 garLoopResultBuilder]: At program point L684-3(lines 675 688) the Hoare annotation is: false [2021-10-28 09:18:39,248 INFO L853 garLoopResultBuilder]: At program point L684-4(lines 675 688) the Hoare annotation is: false [2021-10-28 09:18:39,248 INFO L853 garLoopResultBuilder]: At program point L684-5(lines 675 688) the Hoare annotation is: false [2021-10-28 09:18:39,248 INFO L857 garLoopResultBuilder]: For program point L916(lines 916 922) no Hoare annotation was computed. [2021-10-28 09:18:39,248 INFO L853 garLoopResultBuilder]: At program point L916-1(lines 916 922) the Hoare annotation is: (let ((.cse17 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse16 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse15 (= ~methaneLevelCritical~0 0)) (.cse18 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse8 (not .cse18)) (.cse10 (not .cse15)) (.cse6 (not (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0))) (.cse1 (<= 2 ~waterLevel~0)) (.cse13 (= ULTIMATE.start_processEnvironment_~tmp~6 0)) (.cse2 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse5 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse14 (= ~pumpRunning~0 0)) (.cse9 (not .cse16)) (.cse3 (= ULTIMATE.start_main_~tmp~4 1)) (.cse11 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse7 (= ~waterLevel~0 1)) (.cse12 (not .cse17)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse6 .cse2 .cse7 .cse4 .cse5)) .cse8 .cse9 .cse10 .cse3 .cse11 .cse12) (and .cse13 .cse0 .cse8 .cse9 .cse10 .cse2 .cse3 .cse11 .cse12 .cse4 .cse5) (and .cse0 .cse14 .cse15 .cse3 .cse11 .cse7 .cse4) (and .cse0 .cse14 .cse16 .cse15 .cse17 .cse8 (not (= |ULTIMATE.start_getWaterLevel_#res| 2)) .cse3 .cse11 (not (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 2)) .cse4) (and .cse0 .cse14 .cse8 .cse9 .cse10 .cse3 .cse11 .cse12 .cse4) (and (or (and .cse0 .cse6 .cse16 .cse15 .cse2 .cse7 .cse4 .cse5) (and .cse0 .cse16 .cse15 .cse1 .cse2 .cse3 .cse4 .cse5)) .cse17 .cse3 .cse11 .cse18) (and .cse0 .cse14 .cse1 .cse9 .cse3 .cse11 .cse12 .cse4) (and .cse0 .cse14 .cse15 .cse1 .cse3 .cse11 .cse4) (and .cse13 .cse0 .cse16 .cse15 .cse17 .cse2 .cse3 .cse11 .cse18 .cse4 .cse5) (and .cse0 .cse14 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 1) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse9 .cse3 .cse11 .cse7 .cse12 .cse4)))) [2021-10-28 09:18:39,249 INFO L853 garLoopResultBuilder]: At program point L883(lines 868 886) the Hoare annotation is: false [2021-10-28 09:18:39,249 INFO L853 garLoopResultBuilder]: At program point L883-1(lines 868 886) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 1)) (.cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse6 (= ULTIMATE.start_main_~tmp~4 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 (= ~waterLevel~0 1) .cse8) (and .cse0 .cse2 (<= 2 ~waterLevel~0) (not .cse4) .cse6 (not .cse1) .cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0) .cse8) (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4 .cse5 .cse6 .cse7 .cse8))) [2021-10-28 09:18:39,249 INFO L853 garLoopResultBuilder]: At program point L883-2(lines 868 886) the Hoare annotation is: false [2021-10-28 09:18:39,249 INFO L853 garLoopResultBuilder]: At program point L883-3(lines 868 886) the Hoare annotation is: false [2021-10-28 09:18:39,249 INFO L853 garLoopResultBuilder]: At program point L883-4(lines 868 886) the Hoare annotation is: false [2021-10-28 09:18:39,249 INFO L853 garLoopResultBuilder]: At program point L883-5(lines 868 886) the Hoare annotation is: false [2021-10-28 09:18:39,250 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-28 09:18:39,250 INFO L853 garLoopResultBuilder]: At program point L819(lines 812 822) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse5 (= ULTIMATE.start_main_~tmp~4 1)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse1 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse7 (not (= 0 ~systemActive~0))) (.cse8 (= ~pumpRunning~0 1))) (or (and .cse0 (not .cse1) (not .cse2) (not .cse3) .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse2 .cse3 .cse4 .cse5 .cse6 .cse1 .cse7 .cse8))) [2021-10-28 09:18:39,250 INFO L853 garLoopResultBuilder]: At program point L819-1(lines 812 822) the Hoare annotation is: false [2021-10-28 09:18:39,250 INFO L853 garLoopResultBuilder]: At program point L819-2(lines 812 822) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0))) (.cse6 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse4 (<= 2 ~waterLevel~0)) (.cse5 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse8 (= ULTIMATE.start_main_~tmp~4 1)) (.cse9 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse3 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse12 (= ULTIMATE.start_isHighWaterLevel_~tmp~8 0)) (.cse13 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not .cse3) .cse4 .cse5 (not .cse6) (not .cse7) .cse8 .cse9 .cse10 .cse11 .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse6 .cse7 .cse4 .cse5 .cse8 .cse9 .cse10 .cse11 .cse3 .cse12 .cse13))) [2021-10-28 09:18:39,250 INFO L853 garLoopResultBuilder]: At program point L819-3(lines 812 822) the Hoare annotation is: false [2021-10-28 09:18:39,251 INFO L853 garLoopResultBuilder]: At program point L819-4(lines 812 822) the Hoare annotation is: false [2021-10-28 09:18:39,251 INFO L853 garLoopResultBuilder]: At program point L819-5(lines 812 822) the Hoare annotation is: false [2021-10-28 09:18:39,251 INFO L853 garLoopResultBuilder]: At program point L819-6(lines 812 822) the Hoare annotation is: false [2021-10-28 09:18:39,251 INFO L853 garLoopResultBuilder]: At program point L819-7(lines 812 822) the Hoare annotation is: false [2021-10-28 09:18:39,251 INFO L860 garLoopResultBuilder]: At program point L588(lines 569 591) the Hoare annotation is: true [2021-10-28 09:18:39,251 INFO L853 garLoopResultBuilder]: At program point L555(lines 551 557) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= ULTIMATE.start_main_~tmp~4 1) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:18:39,252 INFO L853 garLoopResultBuilder]: At program point L819-8(lines 812 822) the Hoare annotation is: false [2021-10-28 09:18:39,252 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-28 09:18:39,252 INFO L853 garLoopResultBuilder]: At program point L954(lines 905 955) the Hoare annotation is: false [2021-10-28 09:18:39,252 INFO L857 garLoopResultBuilder]: For program point L63(lines 63 83) no Hoare annotation was computed. [2021-10-28 09:18:39,252 INFO L857 garLoopResultBuilder]: For program point L63-2(lines 63 83) no Hoare annotation was computed. [2021-10-28 09:18:39,252 INFO L857 garLoopResultBuilder]: For program point L63-4(lines 63 83) no Hoare annotation was computed. [2021-10-28 09:18:39,252 INFO L857 garLoopResultBuilder]: For program point L758(lines 758 775) no Hoare annotation was computed. [2021-10-28 09:18:39,253 INFO L857 garLoopResultBuilder]: For program point L758-1(lines 758 775) no Hoare annotation was computed. [2021-10-28 09:18:39,253 INFO L857 garLoopResultBuilder]: For program point L758-2(lines 758 775) no Hoare annotation was computed. [2021-10-28 09:18:39,253 INFO L857 garLoopResultBuilder]: For program point L626(lines 626 630) no Hoare annotation was computed. [2021-10-28 09:18:39,253 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-28 09:18:39,253 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 967) no Hoare annotation was computed. [2021-10-28 09:18:39,253 INFO L857 garLoopResultBuilder]: For program point L926(lines 926 932) no Hoare annotation was computed. [2021-10-28 09:18:39,254 INFO L853 garLoopResultBuilder]: At program point L926-1(lines 926 932) the Hoare annotation is: (let ((.cse1 (= ULTIMATE.start_activatePump_~tmp~7 0)) (.cse5 (= ~pumpRunning~0 1)) (.cse7 (<= 2 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse8 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_main_~tmp~4 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (= ~waterLevel~0 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and (= ULTIMATE.start_processEnvironment_~tmp~6 0) .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and (or (and .cse0 (not (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~5 0)) .cse1 .cse6 .cse4 .cse5) (and .cse0 .cse7 .cse1 .cse4 .cse5)) .cse2 .cse3) (and .cse0 .cse8 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse2 .cse3 .cse4) (and .cse0 .cse8 .cse7 .cse2 .cse3 .cse4) (and .cse0 .cse8 .cse2 .cse3 .cse6 .cse4))) [2021-10-28 09:18:39,254 INFO L857 garLoopResultBuilder]: For program point L794(lines 794 800) no Hoare annotation was computed. [2021-10-28 09:18:39,254 INFO L857 garLoopResultBuilder]: For program point L794-2(lines 794 800) no Hoare annotation was computed. [2021-10-28 09:18:39,254 INFO L857 garLoopResultBuilder]: For program point L794-4(lines 794 800) no Hoare annotation was computed. [2021-10-28 09:18:39,254 INFO L857 garLoopResultBuilder]: For program point L794-6(lines 794 800) no Hoare annotation was computed. [2021-10-28 09:18:39,254 INFO L857 garLoopResultBuilder]: For program point L794-8(lines 794 800) no Hoare annotation was computed. [2021-10-28 09:18:39,255 INFO L857 garLoopResultBuilder]: For program point L794-10(lines 794 800) no Hoare annotation was computed. [2021-10-28 09:18:39,258 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:18:39,259 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-28 09:18:39,304 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.10 09:18:39 BoogieIcfgContainer [2021-10-28 09:18:39,304 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-28 09:18:39,304 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-28 09:18:39,304 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-28 09:18:39,305 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-28 09:18:39,305 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:18:16" (3/4) ... [2021-10-28 09:18:39,308 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-28 09:18:39,331 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-28 09:18:39,333 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-28 09:18:39,334 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-28 09:18:39,336 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-28 09:18:39,337 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-28 09:18:39,338 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:18:39,340 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:18:39,364 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-10-28 09:18:39,364 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0 && methaneLevelCritical == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-10-28 09:18:39,364 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && !(\result == 2)) && tmp == 1) && \result == 1) && !(tmp___0 == 2)) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(tmp == 0)) && !(0 == systemActive)) [2021-10-28 09:18:39,365 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((((((splverifierCounter == 0 && 2 <= waterLevel) && tmp == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((splverifierCounter == 0 && !(tmp == 0)) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && !(\result == 2)) && tmp == 1) && \result == 1) && !(tmp___0 == 2)) && !(0 == systemActive))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive))) || ((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && tmp == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(tmp == 0)) && !(0 == systemActive)) [2021-10-28 09:18:39,365 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((tmp == 0 && splverifierCounter == 0) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((splverifierCounter == 0 && !(tmp == 0)) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((splverifierCounter == 0 && 2 <= waterLevel) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,366 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((tmp == 0 && splverifierCounter == 0) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((splverifierCounter == 0 && !(tmp == 0)) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((splverifierCounter == 0 && 2 <= waterLevel) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,366 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive)) || (((((splverifierCounter == 0 && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,367 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,368 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,368 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:18:39,369 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:18:39,369 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 1) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive))) || (((((((splverifierCounter == 0 && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && tmp == 1) && \result == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,370 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && !(\result == 2)) && tmp == 1) && \result == 1) && !(0 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && tmp == 0) && \result == 1) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,371 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive))) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && tmp == 1) && \result == 1) && !(0 == systemActive)) [2021-10-28 09:18:39,371 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && \result == 1) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:18:39,373 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive)) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive)) [2021-10-28 09:18:39,373 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive)) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) [2021-10-28 09:18:39,433 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/witness.graphml [2021-10-28 09:18:39,433 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-28 09:18:39,434 INFO L168 Benchmark]: Toolchain (without parser) took 24702.02 ms. Allocated memory was 100.7 MB in the beginning and 362.8 MB in the end (delta: 262.1 MB). Free memory was 73.2 MB in the beginning and 212.4 MB in the end (delta: -139.2 MB). Peak memory consumption was 122.7 MB. Max. memory is 16.1 GB. [2021-10-28 09:18:39,435 INFO L168 Benchmark]: CDTParser took 0.17 ms. Allocated memory is still 100.7 MB. Free memory is still 57.3 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-28 09:18:39,435 INFO L168 Benchmark]: CACSL2BoogieTranslator took 519.34 ms. Allocated memory was 100.7 MB in the beginning and 136.3 MB in the end (delta: 35.7 MB). Free memory was 73.0 MB in the beginning and 102.9 MB in the end (delta: -29.9 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-10-28 09:18:39,435 INFO L168 Benchmark]: Boogie Procedure Inliner took 106.59 ms. Allocated memory is still 136.3 MB. Free memory was 102.9 MB in the beginning and 98.8 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 09:18:39,436 INFO L168 Benchmark]: Boogie Preprocessor took 53.18 ms. Allocated memory is still 136.3 MB. Free memory was 98.8 MB in the beginning and 95.7 MB in the end (delta: 3.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-28 09:18:39,436 INFO L168 Benchmark]: RCFGBuilder took 1142.31 ms. Allocated memory is still 136.3 MB. Free memory was 95.7 MB in the beginning and 90.0 MB in the end (delta: 5.6 MB). Peak memory consumption was 35.5 MB. Max. memory is 16.1 GB. [2021-10-28 09:18:39,437 INFO L168 Benchmark]: TraceAbstraction took 22734.99 ms. Allocated memory was 136.3 MB in the beginning and 362.8 MB in the end (delta: 226.5 MB). Free memory was 90.0 MB in the beginning and 225.0 MB in the end (delta: -134.9 MB). Peak memory consumption was 202.2 MB. Max. memory is 16.1 GB. [2021-10-28 09:18:39,437 INFO L168 Benchmark]: Witness Printer took 128.55 ms. Allocated memory is still 362.8 MB. Free memory was 225.0 MB in the beginning and 212.4 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. [2021-10-28 09:18:39,439 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.17 ms. Allocated memory is still 100.7 MB. Free memory is still 57.3 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 519.34 ms. Allocated memory was 100.7 MB in the beginning and 136.3 MB in the end (delta: 35.7 MB). Free memory was 73.0 MB in the beginning and 102.9 MB in the end (delta: -29.9 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 106.59 ms. Allocated memory is still 136.3 MB. Free memory was 102.9 MB in the beginning and 98.8 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 53.18 ms. Allocated memory is still 136.3 MB. Free memory was 98.8 MB in the beginning and 95.7 MB in the end (delta: 3.1 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1142.31 ms. Allocated memory is still 136.3 MB. Free memory was 95.7 MB in the beginning and 90.0 MB in the end (delta: 5.6 MB). Peak memory consumption was 35.5 MB. Max. memory is 16.1 GB. * TraceAbstraction took 22734.99 ms. Allocated memory was 136.3 MB in the beginning and 362.8 MB in the end (delta: 226.5 MB). Free memory was 90.0 MB in the beginning and 225.0 MB in the end (delta: -134.9 MB). Peak memory consumption was 202.2 MB. Max. memory is 16.1 GB. * Witness Printer took 128.55 ms. Allocated memory is still 362.8 MB. Free memory was 225.0 MB in the beginning and 212.4 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 967]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 967]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 967]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 135 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 22.6s, OverallIterations: 17, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 17.7s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 2034 SDtfs, 3220 SDslu, 3671 SDs, 0 SdLazy, 609 SolverSat, 105 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.7s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 161 GetRequests, 55 SyntacticMatches, 0 SemanticMatches, 106 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 93 ImplicationChecksByTransitivity, 0.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=356occurred in iteration=9, InterpolantAutomatonStates: 117, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 17 MinimizatonAttempts, 2528 StatesRemovedByMinimization, 13 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 58 LocationsWithAnnotation, 58 PreInvPairs, 382 NumberOfFragments, 2315 HoareAnnotationTreeSize, 58 FomulaSimplifications, 107400404 FormulaSimplificationTreeSizeReduction, 5.2s HoareSimplificationTime, 58 FomulaSimplificationsInter, 21646922 FormulaSimplificationTreeSizeReductionInter, 12.5s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 0.9s InterpolantComputationTime, 699 NumberOfCodeBlocks, 699 NumberOfCodeBlocksAsserted, 17 NumberOfCheckSat, 682 ConstructedInterpolants, 0 QuantifiedInterpolants, 1202 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 17 InterpolantComputations, 17 PerfectInterpolantSequences, 160/160 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 707]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 675]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 916]: Loop Invariant Derived loop invariant: ((((((((((((((((((((splverifierCounter == 0 && 2 <= waterLevel) && tmp == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((splverifierCounter == 0 && !(tmp == 0)) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && !(\result == 2)) && tmp == 1) && \result == 1) && !(tmp___0 == 2)) && !(0 == systemActive))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive))) || ((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && tmp == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(tmp == 0)) && !(0 == systemActive)) - InvariantResult [Line: 675]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 707]: Loop Invariant Derived loop invariant: ((((((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 579]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 666]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 569]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 868]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 868]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 699]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 116]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive)) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive)) - InvariantResult [Line: 504]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 868]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 699]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 675]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 1) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive))) || (((((((splverifierCounter == 0 && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && tmp == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 868]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 868]: Loop Invariant Derived loop invariant: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive))) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && tmp == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && tmp == 0) && !(0 == systemActive)) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) - InvariantResult [Line: 823]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: ((((((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) - InvariantResult [Line: 666]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 700]: Loop Invariant Derived loop invariant: (((((((((tmp == 0 && splverifierCounter == 0) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((splverifierCounter == 0 && !(tmp == 0)) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((splverifierCounter == 0 && 2 <= waterLevel) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 707]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 666]: Loop Invariant Derived loop invariant: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && !(\result == 2)) && tmp == 1) && \result == 1) && !(0 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && tmp == 0) && \result == 1) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 868]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 926]: Loop Invariant Derived loop invariant: (((((((((tmp == 0 && splverifierCounter == 0) && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((splverifierCounter == 0 && !(tmp == 0)) && tmp == 0) && waterLevel == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((splverifierCounter == 0 && 2 <= waterLevel) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) - InvariantResult [Line: 823]: Loop Invariant Derived loop invariant: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && \result == 1) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 551]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && methaneLevelCritical == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 905]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 699]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && \result == 1) && !(0 == systemActive)) || (((((splverifierCounter == 0 && tmp == 0) && tmp == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && tmp == 1) && \result == 1) && !(0 == systemActive))) || (((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((((((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 0) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && !(\result == 2)) && tmp == 1) && \result == 1) && !(tmp___0 == 2)) && !(0 == systemActive))) || ((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp == 1) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0)) && !(0 == systemActive))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && tmp == 0) && tmp == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((splverifierCounter == 0 && !(tmp == 0)) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && !(\result == 0)) && tmp == 0) && tmp == 1) && !(tmp___0 == 0)) && \result == 1) && \result == 0) && \result == 0) && tmp == 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && tmp == 1) && \result == 1) && waterLevel == 1) && !(tmp == 0)) && !(0 == systemActive)) - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 675]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 675]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 675]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 823]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-10-28 09:18:39,513 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4514d84e-e743-4ff7-b9bd-439b51953fdc/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...