./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product58.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product58.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash ae631a30e0cfb00652c35b082fd4038988aa5f3b2e1b026ceeb94d0624c45642 ........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-28 09:40:10,960 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-28 09:40:10,962 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-28 09:40:11,002 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-28 09:40:11,003 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-28 09:40:11,005 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-28 09:40:11,007 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-28 09:40:11,010 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-28 09:40:11,013 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-28 09:40:11,014 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-28 09:40:11,016 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-28 09:40:11,017 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-28 09:40:11,018 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-28 09:40:11,020 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-28 09:40:11,022 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-28 09:40:11,024 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-28 09:40:11,025 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-28 09:40:11,026 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-28 09:40:11,029 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-28 09:40:11,033 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-28 09:40:11,035 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-28 09:40:11,037 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-28 09:40:11,039 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-28 09:40:11,040 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-28 09:40:11,045 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-28 09:40:11,046 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-28 09:40:11,046 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-28 09:40:11,048 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-28 09:40:11,049 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-28 09:40:11,050 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-28 09:40:11,051 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-28 09:40:11,052 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-28 09:40:11,053 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-28 09:40:11,054 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-28 09:40:11,056 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-28 09:40:11,057 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-28 09:40:11,058 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-28 09:40:11,058 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-28 09:40:11,059 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-28 09:40:11,060 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-28 09:40:11,061 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-28 09:40:11,062 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-28 09:40:11,095 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-28 09:40:11,096 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-28 09:40:11,096 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-28 09:40:11,097 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-28 09:40:11,098 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-28 09:40:11,099 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-28 09:40:11,099 INFO L138 SettingsManager]: * Use SBE=true [2021-10-28 09:40:11,100 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-28 09:40:11,100 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-28 09:40:11,101 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-28 09:40:11,101 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-28 09:40:11,101 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-28 09:40:11,102 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-28 09:40:11,102 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-28 09:40:11,103 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-28 09:40:11,103 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-28 09:40:11,104 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-28 09:40:11,104 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-28 09:40:11,104 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-28 09:40:11,105 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-28 09:40:11,105 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-28 09:40:11,106 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-28 09:40:11,106 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:40:11,107 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-28 09:40:11,107 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-28 09:40:11,108 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-28 09:40:11,108 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-28 09:40:11,113 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-28 09:40:11,114 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-28 09:40:11,114 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-28 09:40:11,114 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-28 09:40:11,115 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-28 09:40:11,115 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> ae631a30e0cfb00652c35b082fd4038988aa5f3b2e1b026ceeb94d0624c45642 [2021-10-28 09:40:11,519 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-28 09:40:11,564 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-28 09:40:11,567 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-28 09:40:11,569 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-28 09:40:11,569 INFO L275 PluginConnector]: CDTParser initialized [2021-10-28 09:40:11,570 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/../../sv-benchmarks/c/product-lines/minepump_spec3_product58.cil.c [2021-10-28 09:40:11,671 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/data/d1603425c/5144dc206f714fdd9e692f7f44c0f598/FLAG64ec8dd5e [2021-10-28 09:40:12,371 INFO L306 CDTParser]: Found 1 translation units. [2021-10-28 09:40:12,371 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/sv-benchmarks/c/product-lines/minepump_spec3_product58.cil.c [2021-10-28 09:40:12,399 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/data/d1603425c/5144dc206f714fdd9e692f7f44c0f598/FLAG64ec8dd5e [2021-10-28 09:40:12,670 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/data/d1603425c/5144dc206f714fdd9e692f7f44c0f598 [2021-10-28 09:40:12,672 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-28 09:40:12,674 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-28 09:40:12,675 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-28 09:40:12,675 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-28 09:40:12,694 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-28 09:40:12,694 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:40:12" (1/1) ... [2021-10-28 09:40:12,695 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@e4d65cf and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:12, skipping insertion in model container [2021-10-28 09:40:12,695 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 09:40:12" (1/1) ... [2021-10-28 09:40:12,701 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-28 09:40:12,754 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-28 09:40:13,104 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/sv-benchmarks/c/product-lines/minepump_spec3_product58.cil.c[13037,13050] [2021-10-28 09:40:13,149 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:40:13,160 INFO L203 MainTranslator]: Completed pre-run [2021-10-28 09:40:13,224 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/sv-benchmarks/c/product-lines/minepump_spec3_product58.cil.c[13037,13050] [2021-10-28 09:40:13,249 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 09:40:13,267 INFO L208 MainTranslator]: Completed translation [2021-10-28 09:40:13,268 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13 WrapperNode [2021-10-28 09:40:13,268 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-28 09:40:13,269 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-28 09:40:13,269 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-28 09:40:13,269 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-28 09:40:13,277 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,294 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,359 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-28 09:40:13,359 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-28 09:40:13,359 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-28 09:40:13,360 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-28 09:40:13,368 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,368 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,375 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,375 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,392 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,401 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,405 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,412 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-28 09:40:13,413 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-28 09:40:13,413 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-28 09:40:13,413 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-28 09:40:13,414 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (1/1) ... [2021-10-28 09:40:13,443 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 09:40:13,459 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 [2021-10-28 09:40:13,474 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-28 09:40:13,478 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-28 09:40:13,528 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-28 09:40:13,528 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-28 09:40:13,528 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-28 09:40:13,528 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-28 09:40:14,657 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-28 09:40:14,658 INFO L299 CfgBuilder]: Removed 200 assume(true) statements. [2021-10-28 09:40:14,661 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:40:14 BoogieIcfgContainer [2021-10-28 09:40:14,661 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-28 09:40:14,665 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-28 09:40:14,666 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-28 09:40:14,669 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-28 09:40:14,670 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.10 09:40:12" (1/3) ... [2021-10-28 09:40:14,671 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3a62c1c4 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:40:14, skipping insertion in model container [2021-10-28 09:40:14,671 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 09:40:13" (2/3) ... [2021-10-28 09:40:14,672 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3a62c1c4 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 09:40:14, skipping insertion in model container [2021-10-28 09:40:14,672 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:40:14" (3/3) ... [2021-10-28 09:40:14,674 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product58.cil.c [2021-10-28 09:40:14,681 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-28 09:40:14,682 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-28 09:40:14,756 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-28 09:40:14,766 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-28 09:40:14,766 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-28 09:40:14,787 INFO L276 IsEmpty]: Start isEmpty. Operand has 141 states, 137 states have (on average 1.532846715328467) internal successors, (210), 140 states have internal predecessors, (210), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:14,795 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-28 09:40:14,795 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:14,796 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:14,796 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:14,801 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:14,802 INFO L85 PathProgramCache]: Analyzing trace with hash -1179839814, now seen corresponding path program 1 times [2021-10-28 09:40:14,809 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:14,810 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2039090813] [2021-10-28 09:40:14,810 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:14,811 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:15,008 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:15,157 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:15,158 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:15,158 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2039090813] [2021-10-28 09:40:15,159 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2039090813] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:15,159 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:15,160 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:40:15,162 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [754877551] [2021-10-28 09:40:15,180 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-28 09:40:15,180 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:15,194 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-28 09:40:15,195 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:40:15,198 INFO L87 Difference]: Start difference. First operand has 141 states, 137 states have (on average 1.532846715328467) internal successors, (210), 140 states have internal predecessors, (210), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,237 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:15,237 INFO L93 Difference]: Finished difference Result 276 states and 413 transitions. [2021-10-28 09:40:15,238 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-28 09:40:15,239 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-28 09:40:15,240 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:15,252 INFO L225 Difference]: With dead ends: 276 [2021-10-28 09:40:15,252 INFO L226 Difference]: Without dead ends: 137 [2021-10-28 09:40:15,256 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 09:40:15,275 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 137 states. [2021-10-28 09:40:15,302 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 137 to 137. [2021-10-28 09:40:15,304 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 137 states, 134 states have (on average 1.4776119402985075) internal successors, (198), 136 states have internal predecessors, (198), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,307 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 137 states to 137 states and 198 transitions. [2021-10-28 09:40:15,309 INFO L78 Accepts]: Start accepts. Automaton has 137 states and 198 transitions. Word has length 18 [2021-10-28 09:40:15,309 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:15,309 INFO L470 AbstractCegarLoop]: Abstraction has 137 states and 198 transitions. [2021-10-28 09:40:15,310 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,310 INFO L276 IsEmpty]: Start isEmpty. Operand 137 states and 198 transitions. [2021-10-28 09:40:15,311 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-28 09:40:15,311 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:15,312 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:15,312 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-28 09:40:15,312 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:15,313 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:15,313 INFO L85 PathProgramCache]: Analyzing trace with hash -2090870567, now seen corresponding path program 1 times [2021-10-28 09:40:15,314 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:15,314 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [534660787] [2021-10-28 09:40:15,314 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:15,315 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:15,407 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:15,507 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:15,508 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:15,508 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [534660787] [2021-10-28 09:40:15,508 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [534660787] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:15,508 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:15,509 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:40:15,509 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1085631646] [2021-10-28 09:40:15,513 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:40:15,513 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:15,514 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:40:15,515 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:40:15,515 INFO L87 Difference]: Start difference. First operand 137 states and 198 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,564 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:15,568 INFO L93 Difference]: Finished difference Result 137 states and 198 transitions. [2021-10-28 09:40:15,569 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:40:15,569 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-28 09:40:15,570 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:15,571 INFO L225 Difference]: With dead ends: 137 [2021-10-28 09:40:15,571 INFO L226 Difference]: Without dead ends: 55 [2021-10-28 09:40:15,572 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:40:15,573 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2021-10-28 09:40:15,578 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2021-10-28 09:40:15,579 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 54 states have (on average 1.462962962962963) internal successors, (79), 54 states have internal predecessors, (79), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,580 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 79 transitions. [2021-10-28 09:40:15,580 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 79 transitions. Word has length 19 [2021-10-28 09:40:15,580 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:15,581 INFO L470 AbstractCegarLoop]: Abstraction has 55 states and 79 transitions. [2021-10-28 09:40:15,581 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,581 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 79 transitions. [2021-10-28 09:40:15,582 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-28 09:40:15,582 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:15,583 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:15,583 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-28 09:40:15,583 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:15,584 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:15,594 INFO L85 PathProgramCache]: Analyzing trace with hash -917137565, now seen corresponding path program 1 times [2021-10-28 09:40:15,594 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:15,595 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1609566168] [2021-10-28 09:40:15,595 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:15,596 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:15,671 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:15,786 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:15,786 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:15,787 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1609566168] [2021-10-28 09:40:15,787 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1609566168] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:15,787 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:15,788 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:40:15,788 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1105061191] [2021-10-28 09:40:15,788 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:40:15,789 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:15,789 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:40:15,790 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:15,790 INFO L87 Difference]: Start difference. First operand 55 states and 79 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,866 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:15,866 INFO L93 Difference]: Finished difference Result 104 states and 152 transitions. [2021-10-28 09:40:15,876 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:40:15,877 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-28 09:40:15,877 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:15,878 INFO L225 Difference]: With dead ends: 104 [2021-10-28 09:40:15,879 INFO L226 Difference]: Without dead ends: 55 [2021-10-28 09:40:15,881 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:40:15,882 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2021-10-28 09:40:15,888 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2021-10-28 09:40:15,888 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 54 states have (on average 1.4444444444444444) internal successors, (78), 54 states have internal predecessors, (78), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,889 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 78 transitions. [2021-10-28 09:40:15,889 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 78 transitions. Word has length 24 [2021-10-28 09:40:15,890 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:15,890 INFO L470 AbstractCegarLoop]: Abstraction has 55 states and 78 transitions. [2021-10-28 09:40:15,890 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,891 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 78 transitions. [2021-10-28 09:40:15,892 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-10-28 09:40:15,892 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:15,892 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:15,892 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-28 09:40:15,893 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:15,893 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:15,893 INFO L85 PathProgramCache]: Analyzing trace with hash -1642774406, now seen corresponding path program 1 times [2021-10-28 09:40:15,894 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:15,894 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1740342013] [2021-10-28 09:40:15,894 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:15,894 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:15,921 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:15,958 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:15,958 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:15,958 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1740342013] [2021-10-28 09:40:15,959 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1740342013] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:15,959 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:15,959 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 09:40:15,959 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1614486864] [2021-10-28 09:40:15,960 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 09:40:15,960 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:15,961 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 09:40:15,961 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:40:15,962 INFO L87 Difference]: Start difference. First operand 55 states and 78 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:15,993 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:15,994 INFO L93 Difference]: Finished difference Result 127 states and 183 transitions. [2021-10-28 09:40:15,994 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 09:40:15,994 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-10-28 09:40:15,995 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:16,001 INFO L225 Difference]: With dead ends: 127 [2021-10-28 09:40:16,004 INFO L226 Difference]: Without dead ends: 78 [2021-10-28 09:40:16,005 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 09:40:16,005 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 78 states. [2021-10-28 09:40:16,014 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 78 to 76. [2021-10-28 09:40:16,020 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 75 states have (on average 1.4266666666666667) internal successors, (107), 75 states have internal predecessors, (107), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,022 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 107 transitions. [2021-10-28 09:40:16,023 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 107 transitions. Word has length 26 [2021-10-28 09:40:16,024 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:16,024 INFO L470 AbstractCegarLoop]: Abstraction has 76 states and 107 transitions. [2021-10-28 09:40:16,024 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,025 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 107 transitions. [2021-10-28 09:40:16,027 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 09:40:16,028 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:16,029 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:16,029 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-28 09:40:16,029 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:16,031 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:16,032 INFO L85 PathProgramCache]: Analyzing trace with hash -1904097010, now seen corresponding path program 1 times [2021-10-28 09:40:16,032 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:16,033 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [841526666] [2021-10-28 09:40:16,033 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:16,034 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:16,062 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:16,115 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:16,116 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:16,116 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [841526666] [2021-10-28 09:40:16,116 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [841526666] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:16,117 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:16,117 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:40:16,117 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1777431317] [2021-10-28 09:40:16,118 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:40:16,118 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:16,118 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:40:16,119 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:16,119 INFO L87 Difference]: Start difference. First operand 76 states and 107 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,220 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:16,220 INFO L93 Difference]: Finished difference Result 381 states and 553 transitions. [2021-10-28 09:40:16,220 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:40:16,221 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 09:40:16,221 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:16,223 INFO L225 Difference]: With dead ends: 381 [2021-10-28 09:40:16,224 INFO L226 Difference]: Without dead ends: 311 [2021-10-28 09:40:16,224 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:40:16,225 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 311 states. [2021-10-28 09:40:16,242 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 311 to 123. [2021-10-28 09:40:16,242 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 122 states have (on average 1.3934426229508197) internal successors, (170), 122 states have internal predecessors, (170), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,243 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 170 transitions. [2021-10-28 09:40:16,243 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 170 transitions. Word has length 32 [2021-10-28 09:40:16,244 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:16,244 INFO L470 AbstractCegarLoop]: Abstraction has 123 states and 170 transitions. [2021-10-28 09:40:16,244 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,244 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 170 transitions. [2021-10-28 09:40:16,245 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:40:16,246 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:16,246 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:16,246 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-28 09:40:16,247 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:16,247 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:16,247 INFO L85 PathProgramCache]: Analyzing trace with hash 1319823756, now seen corresponding path program 1 times [2021-10-28 09:40:16,247 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:16,248 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [746937991] [2021-10-28 09:40:16,248 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:16,248 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:16,266 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:16,300 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:16,300 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:16,300 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [746937991] [2021-10-28 09:40:16,301 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [746937991] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:16,301 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:16,301 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 09:40:16,301 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1547414112] [2021-10-28 09:40:16,302 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:40:16,302 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:16,303 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:40:16,303 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:40:16,303 INFO L87 Difference]: Start difference. First operand 123 states and 170 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,427 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:16,427 INFO L93 Difference]: Finished difference Result 254 states and 358 transitions. [2021-10-28 09:40:16,427 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 09:40:16,427 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:40:16,428 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:16,429 INFO L225 Difference]: With dead ends: 254 [2021-10-28 09:40:16,429 INFO L226 Difference]: Without dead ends: 184 [2021-10-28 09:40:16,430 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:40:16,430 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 184 states. [2021-10-28 09:40:16,446 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 184 to 181. [2021-10-28 09:40:16,447 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 181 states, 180 states have (on average 1.3944444444444444) internal successors, (251), 180 states have internal predecessors, (251), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,448 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 181 states to 181 states and 251 transitions. [2021-10-28 09:40:16,448 INFO L78 Accepts]: Start accepts. Automaton has 181 states and 251 transitions. Word has length 33 [2021-10-28 09:40:16,448 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:16,449 INFO L470 AbstractCegarLoop]: Abstraction has 181 states and 251 transitions. [2021-10-28 09:40:16,449 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,449 INFO L276 IsEmpty]: Start isEmpty. Operand 181 states and 251 transitions. [2021-10-28 09:40:16,450 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:40:16,450 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:16,451 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:16,451 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-28 09:40:16,451 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:16,451 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:16,452 INFO L85 PathProgramCache]: Analyzing trace with hash 308706506, now seen corresponding path program 1 times [2021-10-28 09:40:16,452 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:16,452 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [319515667] [2021-10-28 09:40:16,452 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:16,453 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:16,470 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:16,508 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:16,509 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:16,509 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [319515667] [2021-10-28 09:40:16,509 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [319515667] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:16,510 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:16,510 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:40:16,510 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [501692118] [2021-10-28 09:40:16,511 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:40:16,512 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:16,512 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:40:16,512 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:40:16,513 INFO L87 Difference]: Start difference. First operand 181 states and 251 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,579 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:16,579 INFO L93 Difference]: Finished difference Result 505 states and 712 transitions. [2021-10-28 09:40:16,580 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:40:16,580 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:40:16,582 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:16,585 INFO L225 Difference]: With dead ends: 505 [2021-10-28 09:40:16,586 INFO L226 Difference]: Without dead ends: 376 [2021-10-28 09:40:16,587 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:16,588 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 376 states. [2021-10-28 09:40:16,609 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 376 to 181. [2021-10-28 09:40:16,610 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 181 states, 180 states have (on average 1.3833333333333333) internal successors, (249), 180 states have internal predecessors, (249), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,611 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 181 states to 181 states and 249 transitions. [2021-10-28 09:40:16,611 INFO L78 Accepts]: Start accepts. Automaton has 181 states and 249 transitions. Word has length 33 [2021-10-28 09:40:16,612 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:16,612 INFO L470 AbstractCegarLoop]: Abstraction has 181 states and 249 transitions. [2021-10-28 09:40:16,612 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,612 INFO L276 IsEmpty]: Start isEmpty. Operand 181 states and 249 transitions. [2021-10-28 09:40:16,614 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-28 09:40:16,614 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:16,614 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:16,615 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-28 09:40:16,615 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:16,615 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:16,616 INFO L85 PathProgramCache]: Analyzing trace with hash 566871944, now seen corresponding path program 1 times [2021-10-28 09:40:16,616 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:16,616 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1378608364] [2021-10-28 09:40:16,617 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:16,617 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:16,638 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:16,701 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:16,701 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:16,701 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1378608364] [2021-10-28 09:40:16,702 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1378608364] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:16,702 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:16,702 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-28 09:40:16,702 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [200408615] [2021-10-28 09:40:16,703 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:40:16,703 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:16,704 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:40:16,704 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:40:16,705 INFO L87 Difference]: Start difference. First operand 181 states and 249 transitions. Second operand has 7 states, 7 states have (on average 4.714285714285714) internal successors, (33), 7 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,860 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:16,861 INFO L93 Difference]: Finished difference Result 634 states and 889 transitions. [2021-10-28 09:40:16,861 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-28 09:40:16,862 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.714285714285714) internal successors, (33), 7 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-28 09:40:16,862 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:16,865 INFO L225 Difference]: With dead ends: 634 [2021-10-28 09:40:16,866 INFO L226 Difference]: Without dead ends: 459 [2021-10-28 09:40:16,867 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-10-28 09:40:16,868 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 459 states. [2021-10-28 09:40:16,892 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 459 to 190. [2021-10-28 09:40:16,893 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 190 states, 189 states have (on average 1.3544973544973544) internal successors, (256), 189 states have internal predecessors, (256), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,894 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 190 states to 190 states and 256 transitions. [2021-10-28 09:40:16,894 INFO L78 Accepts]: Start accepts. Automaton has 190 states and 256 transitions. Word has length 33 [2021-10-28 09:40:16,895 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:16,895 INFO L470 AbstractCegarLoop]: Abstraction has 190 states and 256 transitions. [2021-10-28 09:40:16,895 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.714285714285714) internal successors, (33), 7 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:16,895 INFO L276 IsEmpty]: Start isEmpty. Operand 190 states and 256 transitions. [2021-10-28 09:40:16,897 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:40:16,897 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:16,897 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:16,897 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-28 09:40:16,898 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:16,898 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:16,899 INFO L85 PathProgramCache]: Analyzing trace with hash -1083058712, now seen corresponding path program 1 times [2021-10-28 09:40:16,899 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:16,899 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1416606185] [2021-10-28 09:40:16,899 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:16,900 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:16,975 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:17,052 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:17,053 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:17,053 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1416606185] [2021-10-28 09:40:17,054 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1416606185] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:17,054 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:17,054 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:40:17,055 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [93047061] [2021-10-28 09:40:17,055 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 09:40:17,056 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:17,056 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 09:40:17,057 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 09:40:17,057 INFO L87 Difference]: Start difference. First operand 190 states and 256 transitions. Second operand has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:17,426 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:17,426 INFO L93 Difference]: Finished difference Result 1391 states and 1856 transitions. [2021-10-28 09:40:17,426 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-28 09:40:17,427 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:40:17,427 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:17,436 INFO L225 Difference]: With dead ends: 1391 [2021-10-28 09:40:17,436 INFO L226 Difference]: Without dead ends: 1207 [2021-10-28 09:40:17,437 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-28 09:40:17,439 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1207 states. [2021-10-28 09:40:17,499 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1207 to 360. [2021-10-28 09:40:17,500 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 360 states, 359 states have (on average 1.3314763231197773) internal successors, (478), 359 states have internal predecessors, (478), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:17,502 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 360 states to 360 states and 478 transitions. [2021-10-28 09:40:17,503 INFO L78 Accepts]: Start accepts. Automaton has 360 states and 478 transitions. Word has length 36 [2021-10-28 09:40:17,503 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:17,504 INFO L470 AbstractCegarLoop]: Abstraction has 360 states and 478 transitions. [2021-10-28 09:40:17,504 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:17,504 INFO L276 IsEmpty]: Start isEmpty. Operand 360 states and 478 transitions. [2021-10-28 09:40:17,505 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 09:40:17,505 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:17,506 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:17,506 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-28 09:40:17,506 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:17,507 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:17,507 INFO L85 PathProgramCache]: Analyzing trace with hash -403000342, now seen corresponding path program 1 times [2021-10-28 09:40:17,507 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:17,508 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [12907749] [2021-10-28 09:40:17,508 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:17,508 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:17,527 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:17,589 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:17,589 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:17,589 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [12907749] [2021-10-28 09:40:17,590 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [12907749] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:17,590 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:17,590 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:40:17,590 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1691145567] [2021-10-28 09:40:17,591 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:40:17,591 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:17,592 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:40:17,592 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:17,592 INFO L87 Difference]: Start difference. First operand 360 states and 478 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:17,850 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:17,850 INFO L93 Difference]: Finished difference Result 946 states and 1283 transitions. [2021-10-28 09:40:17,850 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:40:17,851 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 09:40:17,851 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:17,855 INFO L225 Difference]: With dead ends: 946 [2021-10-28 09:40:17,856 INFO L226 Difference]: Without dead ends: 592 [2021-10-28 09:40:17,857 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:40:17,858 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 592 states. [2021-10-28 09:40:17,914 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 592 to 306. [2021-10-28 09:40:17,915 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 306 states, 305 states have (on average 1.2950819672131149) internal successors, (395), 305 states have internal predecessors, (395), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:17,916 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 306 states to 306 states and 395 transitions. [2021-10-28 09:40:17,917 INFO L78 Accepts]: Start accepts. Automaton has 306 states and 395 transitions. Word has length 36 [2021-10-28 09:40:17,917 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:17,917 INFO L470 AbstractCegarLoop]: Abstraction has 306 states and 395 transitions. [2021-10-28 09:40:17,918 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:17,918 INFO L276 IsEmpty]: Start isEmpty. Operand 306 states and 395 transitions. [2021-10-28 09:40:17,919 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2021-10-28 09:40:17,919 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:17,919 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:17,920 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-28 09:40:17,920 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:17,920 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:17,921 INFO L85 PathProgramCache]: Analyzing trace with hash -1138138450, now seen corresponding path program 1 times [2021-10-28 09:40:17,921 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:17,924 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1671350812] [2021-10-28 09:40:17,924 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:17,924 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:17,945 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:18,027 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:18,027 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:18,028 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1671350812] [2021-10-28 09:40:18,028 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1671350812] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:18,028 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:18,028 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-28 09:40:18,029 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [100802326] [2021-10-28 09:40:18,029 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:40:18,029 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:18,031 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:40:18,032 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:40:18,032 INFO L87 Difference]: Start difference. First operand 306 states and 395 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,425 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:18,426 INFO L93 Difference]: Finished difference Result 916 states and 1175 transitions. [2021-10-28 09:40:18,426 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-10-28 09:40:18,426 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 37 [2021-10-28 09:40:18,427 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:18,431 INFO L225 Difference]: With dead ends: 916 [2021-10-28 09:40:18,432 INFO L226 Difference]: Without dead ends: 616 [2021-10-28 09:40:18,433 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=65, Invalid=117, Unknown=0, NotChecked=0, Total=182 [2021-10-28 09:40:18,434 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 616 states. [2021-10-28 09:40:18,484 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 616 to 286. [2021-10-28 09:40:18,485 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 286 states, 285 states have (on average 1.256140350877193) internal successors, (358), 285 states have internal predecessors, (358), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,486 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 286 states to 286 states and 358 transitions. [2021-10-28 09:40:18,487 INFO L78 Accepts]: Start accepts. Automaton has 286 states and 358 transitions. Word has length 37 [2021-10-28 09:40:18,487 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:18,487 INFO L470 AbstractCegarLoop]: Abstraction has 286 states and 358 transitions. [2021-10-28 09:40:18,487 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,487 INFO L276 IsEmpty]: Start isEmpty. Operand 286 states and 358 transitions. [2021-10-28 09:40:18,489 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-10-28 09:40:18,489 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:18,489 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:18,490 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-28 09:40:18,490 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:18,490 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:18,491 INFO L85 PathProgramCache]: Analyzing trace with hash 113257525, now seen corresponding path program 1 times [2021-10-28 09:40:18,491 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:18,491 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [463059827] [2021-10-28 09:40:18,491 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:18,492 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:18,515 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:18,579 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-28 09:40:18,579 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:18,579 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [463059827] [2021-10-28 09:40:18,582 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [463059827] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:18,582 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:18,582 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:40:18,584 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1677633365] [2021-10-28 09:40:18,585 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:40:18,585 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:18,586 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:40:18,586 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:18,586 INFO L87 Difference]: Start difference. First operand 286 states and 358 transitions. Second operand has 5 states, 5 states have (on average 10.6) internal successors, (53), 5 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,687 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:18,687 INFO L93 Difference]: Finished difference Result 661 states and 831 transitions. [2021-10-28 09:40:18,688 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 09:40:18,688 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.6) internal successors, (53), 5 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 55 [2021-10-28 09:40:18,689 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:18,692 INFO L225 Difference]: With dead ends: 661 [2021-10-28 09:40:18,692 INFO L226 Difference]: Without dead ends: 381 [2021-10-28 09:40:18,693 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:40:18,694 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 381 states. [2021-10-28 09:40:18,739 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 381 to 286. [2021-10-28 09:40:18,740 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 286 states, 285 states have (on average 1.2421052631578948) internal successors, (354), 285 states have internal predecessors, (354), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,741 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 286 states to 286 states and 354 transitions. [2021-10-28 09:40:18,742 INFO L78 Accepts]: Start accepts. Automaton has 286 states and 354 transitions. Word has length 55 [2021-10-28 09:40:18,743 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:18,743 INFO L470 AbstractCegarLoop]: Abstraction has 286 states and 354 transitions. [2021-10-28 09:40:18,744 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.6) internal successors, (53), 5 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,744 INFO L276 IsEmpty]: Start isEmpty. Operand 286 states and 354 transitions. [2021-10-28 09:40:18,746 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-10-28 09:40:18,746 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:18,746 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:18,746 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-10-28 09:40:18,747 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:18,747 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:18,748 INFO L85 PathProgramCache]: Analyzing trace with hash -730747977, now seen corresponding path program 1 times [2021-10-28 09:40:18,748 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:18,748 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [448807864] [2021-10-28 09:40:18,748 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:18,749 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:18,782 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:18,826 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-28 09:40:18,827 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:18,827 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [448807864] [2021-10-28 09:40:18,828 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [448807864] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:18,828 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:18,828 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:40:18,828 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1885293817] [2021-10-28 09:40:18,829 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 09:40:18,829 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:18,830 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 09:40:18,830 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 09:40:18,831 INFO L87 Difference]: Start difference. First operand 286 states and 354 transitions. Second operand has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,914 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:18,915 INFO L93 Difference]: Finished difference Result 608 states and 763 transitions. [2021-10-28 09:40:18,915 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 09:40:18,915 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 55 [2021-10-28 09:40:18,916 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:18,918 INFO L225 Difference]: With dead ends: 608 [2021-10-28 09:40:18,918 INFO L226 Difference]: Without dead ends: 328 [2021-10-28 09:40:18,919 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:18,920 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 328 states. [2021-10-28 09:40:18,958 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 328 to 244. [2021-10-28 09:40:18,959 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 244 states, 243 states have (on average 1.2469135802469136) internal successors, (303), 243 states have internal predecessors, (303), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,960 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 244 states to 244 states and 303 transitions. [2021-10-28 09:40:18,961 INFO L78 Accepts]: Start accepts. Automaton has 244 states and 303 transitions. Word has length 55 [2021-10-28 09:40:18,961 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:18,961 INFO L470 AbstractCegarLoop]: Abstraction has 244 states and 303 transitions. [2021-10-28 09:40:18,962 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:18,962 INFO L276 IsEmpty]: Start isEmpty. Operand 244 states and 303 transitions. [2021-10-28 09:40:18,963 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-28 09:40:18,963 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:18,963 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:18,963 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-10-28 09:40:18,964 INFO L402 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:18,964 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:18,964 INFO L85 PathProgramCache]: Analyzing trace with hash 1478001787, now seen corresponding path program 1 times [2021-10-28 09:40:18,964 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:18,965 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1518276866] [2021-10-28 09:40:18,965 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:18,965 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:18,984 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:19,035 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 09:40:19,035 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:19,035 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1518276866] [2021-10-28 09:40:19,035 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1518276866] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:19,036 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:19,036 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 09:40:19,036 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1422456679] [2021-10-28 09:40:19,036 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:40:19,037 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:19,037 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:40:19,037 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:19,038 INFO L87 Difference]: Start difference. First operand 244 states and 303 transitions. Second operand has 5 states, 5 states have (on average 11.2) internal successors, (56), 4 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:19,163 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:19,164 INFO L93 Difference]: Finished difference Result 622 states and 772 transitions. [2021-10-28 09:40:19,164 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 09:40:19,164 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 11.2) internal successors, (56), 4 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-28 09:40:19,165 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:19,167 INFO L225 Difference]: With dead ends: 622 [2021-10-28 09:40:19,168 INFO L226 Difference]: Without dead ends: 384 [2021-10-28 09:40:19,169 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 09:40:19,170 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 384 states. [2021-10-28 09:40:19,208 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 384 to 244. [2021-10-28 09:40:19,210 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 244 states, 243 states have (on average 1.2304526748971194) internal successors, (299), 243 states have internal predecessors, (299), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:19,211 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 244 states to 244 states and 299 transitions. [2021-10-28 09:40:19,211 INFO L78 Accepts]: Start accepts. Automaton has 244 states and 299 transitions. Word has length 56 [2021-10-28 09:40:19,212 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:19,212 INFO L470 AbstractCegarLoop]: Abstraction has 244 states and 299 transitions. [2021-10-28 09:40:19,212 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 11.2) internal successors, (56), 4 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:19,212 INFO L276 IsEmpty]: Start isEmpty. Operand 244 states and 299 transitions. [2021-10-28 09:40:19,213 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2021-10-28 09:40:19,213 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:19,214 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:19,214 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2021-10-28 09:40:19,214 INFO L402 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:19,215 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:19,215 INFO L85 PathProgramCache]: Analyzing trace with hash 458072168, now seen corresponding path program 1 times [2021-10-28 09:40:19,215 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:19,218 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [393315892] [2021-10-28 09:40:19,218 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:19,218 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:19,241 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:19,287 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-10-28 09:40:19,288 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:19,288 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [393315892] [2021-10-28 09:40:19,288 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [393315892] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 09:40:19,289 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 09:40:19,289 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 09:40:19,289 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1343753715] [2021-10-28 09:40:19,289 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 09:40:19,290 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:19,290 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 09:40:19,291 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 09:40:19,291 INFO L87 Difference]: Start difference. First operand 244 states and 299 transitions. Second operand has 5 states, 5 states have (on average 10.0) internal successors, (50), 5 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:19,397 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:19,398 INFO L93 Difference]: Finished difference Result 514 states and 643 transitions. [2021-10-28 09:40:19,398 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-10-28 09:40:19,399 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.0) internal successors, (50), 5 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 58 [2021-10-28 09:40:19,399 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:19,401 INFO L225 Difference]: With dead ends: 514 [2021-10-28 09:40:19,401 INFO L226 Difference]: Without dead ends: 326 [2021-10-28 09:40:19,402 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:40:19,403 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 326 states. [2021-10-28 09:40:19,452 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 326 to 250. [2021-10-28 09:40:19,453 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 250 states, 249 states have (on average 1.2248995983935742) internal successors, (305), 249 states have internal predecessors, (305), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:19,455 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 250 states to 250 states and 305 transitions. [2021-10-28 09:40:19,455 INFO L78 Accepts]: Start accepts. Automaton has 250 states and 305 transitions. Word has length 58 [2021-10-28 09:40:19,455 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:19,455 INFO L470 AbstractCegarLoop]: Abstraction has 250 states and 305 transitions. [2021-10-28 09:40:19,456 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.0) internal successors, (50), 5 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:19,456 INFO L276 IsEmpty]: Start isEmpty. Operand 250 states and 305 transitions. [2021-10-28 09:40:19,457 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2021-10-28 09:40:19,457 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 09:40:19,457 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:19,458 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2021-10-28 09:40:19,458 INFO L402 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 09:40:19,459 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 09:40:19,459 INFO L85 PathProgramCache]: Analyzing trace with hash 716237606, now seen corresponding path program 1 times [2021-10-28 09:40:19,459 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 09:40:19,459 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [339670300] [2021-10-28 09:40:19,460 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:19,460 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 09:40:19,492 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:19,570 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 6 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2021-10-28 09:40:19,571 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 09:40:19,571 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [339670300] [2021-10-28 09:40:19,571 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [339670300] provided 0 perfect and 1 imperfect interpolant sequences [2021-10-28 09:40:19,572 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1263857684] [2021-10-28 09:40:19,572 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 09:40:19,572 INFO L170 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-10-28 09:40:19,573 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 [2021-10-28 09:40:19,575 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-10-28 09:40:19,597 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-10-28 09:40:19,747 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 09:40:19,751 INFO L263 TraceCheckSpWp]: Trace formula consists of 463 conjuncts, 7 conjunts are in the unsatisfiable core [2021-10-28 09:40:19,760 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-10-28 09:40:20,032 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 6 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2021-10-28 09:40:20,033 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1263857684] provided 0 perfect and 1 imperfect interpolant sequences [2021-10-28 09:40:20,033 INFO L186 FreeRefinementEngine]: Constructing automaton from 0 perfect and 2 imperfect interpolant sequences. [2021-10-28 09:40:20,033 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [6, 5] total 6 [2021-10-28 09:40:20,034 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [852812270] [2021-10-28 09:40:20,034 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 09:40:20,034 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 09:40:20,035 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 09:40:20,035 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=28, Unknown=0, NotChecked=0, Total=42 [2021-10-28 09:40:20,035 INFO L87 Difference]: Start difference. First operand 250 states and 305 transitions. Second operand has 7 states, 7 states have (on average 9.285714285714286) internal successors, (65), 6 states have internal predecessors, (65), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:20,343 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 09:40:20,343 INFO L93 Difference]: Finished difference Result 863 states and 1076 transitions. [2021-10-28 09:40:20,344 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-10-28 09:40:20,344 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 9.285714285714286) internal successors, (65), 6 states have internal predecessors, (65), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 58 [2021-10-28 09:40:20,344 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 09:40:20,344 INFO L225 Difference]: With dead ends: 863 [2021-10-28 09:40:20,345 INFO L226 Difference]: Without dead ends: 0 [2021-10-28 09:40:20,346 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 69 GetRequests, 58 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 19 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=59, Invalid=97, Unknown=0, NotChecked=0, Total=156 [2021-10-28 09:40:20,346 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-28 09:40:20,347 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-28 09:40:20,347 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:20,347 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-28 09:40:20,347 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 58 [2021-10-28 09:40:20,348 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 09:40:20,348 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-28 09:40:20,348 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 9.285714285714286) internal successors, (65), 6 states have internal predecessors, (65), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 09:40:20,348 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-28 09:40:20,349 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-28 09:40:20,351 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:40:20,352 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:40:20,352 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 09:40:20,397 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-10-28 09:40:20,568 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2021-10-28 09:40:20,570 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-28 09:40:20,575 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,577 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,577 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,579 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,579 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,580 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,884 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,885 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:20,888 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:21,946 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:21,947 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:21,947 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,124 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,126 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,126 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,406 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,407 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,407 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,408 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,409 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,409 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,410 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,493 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,494 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,494 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,495 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,495 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,496 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,496 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,599 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,599 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,600 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,601 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,601 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,602 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,603 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,604 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,604 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:22,605 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:23,666 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,069 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,070 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,299 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,300 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,300 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,308 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,310 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,312 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:24,347 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,216 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,732 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,733 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,734 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,735 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,761 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,761 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,764 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:25,765 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 09:40:35,313 INFO L857 garLoopResultBuilder]: For program point L729(lines 729 735) no Hoare annotation was computed. [2021-10-28 09:40:35,313 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 559) no Hoare annotation was computed. [2021-10-28 09:40:35,314 INFO L853 garLoopResultBuilder]: At program point L729-1(lines 729 735) the Hoare annotation is: (let ((.cse18 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0)) (.cse13 (= ~methaneLevelCritical~0 0)) (.cse17 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse2 (not .cse17)) (.cse3 (not .cse13)) (.cse4 (not .cse18)) (.cse21 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0))) (.cse14 (= ~waterLevel~0 1)) (.cse16 (<= |ULTIMATE.start_getWaterLevel_#res| 1)) (.cse20 (<= ~waterLevel~0 1)) (.cse7 (= ULTIMATE.start_processEnvironment_~tmp~7 0)) (.cse8 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1))) (.cse9 (<= ULTIMATE.start_activatePump_~tmp~8 0)) (.cse19 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (.cse11 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse12 (= ~pumpRunning~0 0)) (.cse15 (<= 2 ~waterLevel~0)) (.cse5 (<= ~waterLevel~0 2)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11) (and .cse0 .cse1 .cse12 .cse13 .cse6 .cse14 .cse10) (and .cse0 .cse1 .cse12 .cse15 .cse2 .cse4 .cse5 .cse6 .cse10) (and .cse16 .cse0 .cse1 .cse12 .cse17 .cse13 .cse18 .cse5 .cse6 .cse19 .cse10) (and .cse0 .cse1 .cse12 .cse20 .cse2 .cse3 .cse4 .cse6 .cse10) (and .cse2 .cse3 .cse4 .cse5 .cse6 (or (and .cse0 .cse1 .cse21 .cse14 .cse8 .cse9 .cse10 .cse11) (and .cse0 .cse1 .cse15 .cse8 .cse9 .cse10 .cse11))) (and (or (and .cse0 .cse1 .cse17 .cse13 (<= |ULTIMATE.start_isMethaneAlarm_#res| 0) (<= 0 |ULTIMATE.start_isMethaneAlarm_#res|) .cse21 .cse14 .cse8 .cse9 .cse10 .cse11) (and .cse0 .cse1 .cse17 .cse13 .cse15 .cse8 .cse9 .cse10 .cse11)) .cse18 .cse5 .cse6) (and .cse16 .cse0 .cse1 .cse17 .cse13 .cse20 .cse18 .cse6 .cse7 .cse8 .cse9 .cse19 .cse10 .cse11) (and .cse0 .cse1 .cse12 .cse13 .cse15 .cse5 .cse6 .cse10)))) [2021-10-28 09:40:35,314 INFO L857 garLoopResultBuilder]: For program point L963(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,314 INFO L857 garLoopResultBuilder]: For program point L963-2(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,314 INFO L857 garLoopResultBuilder]: For program point L963-3(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,314 INFO L857 garLoopResultBuilder]: For program point L963-5(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,315 INFO L857 garLoopResultBuilder]: For program point L963-6(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,315 INFO L857 garLoopResultBuilder]: For program point L963-8(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,315 INFO L857 garLoopResultBuilder]: For program point L963-9(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,315 INFO L857 garLoopResultBuilder]: For program point L600(lines 600 604) no Hoare annotation was computed. [2021-10-28 09:40:35,315 INFO L857 garLoopResultBuilder]: For program point L963-11(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,315 INFO L857 garLoopResultBuilder]: For program point L963-12(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,315 INFO L857 garLoopResultBuilder]: For program point L963-14(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,316 INFO L857 garLoopResultBuilder]: For program point L963-15(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,316 INFO L857 garLoopResultBuilder]: For program point L963-17(lines 963 967) no Hoare annotation was computed. [2021-10-28 09:40:35,316 INFO L853 garLoopResultBuilder]: At program point L767(lines 718 768) the Hoare annotation is: false [2021-10-28 09:40:35,316 INFO L853 garLoopResultBuilder]: At program point L668(lines 663 671) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ULTIMATE.start_test_~splverifierCounter~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1)) (<= ULTIMATE.start_activatePump_~tmp~8 0) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 1)) [2021-10-28 09:40:35,316 INFO L853 garLoopResultBuilder]: At program point L668-1(lines 663 671) the Hoare annotation is: false [2021-10-28 09:40:35,316 INFO L853 garLoopResultBuilder]: At program point L668-2(lines 663 671) the Hoare annotation is: false [2021-10-28 09:40:35,317 INFO L857 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2021-10-28 09:40:35,317 INFO L860 garLoopResultBuilder]: At program point L140-1(lines 140 147) the Hoare annotation is: true [2021-10-28 09:40:35,317 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 559) no Hoare annotation was computed. [2021-10-28 09:40:35,317 INFO L853 garLoopResultBuilder]: At program point L176(lines 1 999) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:40:35,317 INFO L853 garLoopResultBuilder]: At program point L969(lines 954 972) the Hoare annotation is: false [2021-10-28 09:40:35,318 INFO L853 garLoopResultBuilder]: At program point L969-1(lines 954 972) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0)) (.cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~9 1) (<= ~waterLevel~0 1) .cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse5 .cse6) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) (not .cse3) (not .cse4) (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0) (<= ~waterLevel~0 2) .cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse6))) [2021-10-28 09:40:35,318 INFO L853 garLoopResultBuilder]: At program point L969-2(lines 954 972) the Hoare annotation is: false [2021-10-28 09:40:35,318 INFO L853 garLoopResultBuilder]: At program point L969-3(lines 954 972) the Hoare annotation is: false [2021-10-28 09:40:35,318 INFO L853 garLoopResultBuilder]: At program point L969-4(lines 954 972) the Hoare annotation is: false [2021-10-28 09:40:35,318 INFO L853 garLoopResultBuilder]: At program point L969-5(lines 954 972) the Hoare annotation is: false [2021-10-28 09:40:35,318 INFO L857 garLoopResultBuilder]: For program point L739(lines 739 745) no Hoare annotation was computed. [2021-10-28 09:40:35,319 INFO L853 garLoopResultBuilder]: At program point L739-1(lines 739 745) the Hoare annotation is: (let ((.cse2 (<= ~waterLevel~0 2)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse4 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1))) (.cse5 (<= ULTIMATE.start_activatePump_~tmp~8 0)) (.cse6 (not (= 0 ~systemActive~0))) (.cse7 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (= ULTIMATE.start_processEnvironment_~tmp~7 0) .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 (= ~pumpRunning~0 0) .cse2 .cse3 .cse6) (and .cse2 .cse3 (or (and .cse0 .cse1 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0)) (= ~waterLevel~0 1) .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse4 .cse5 .cse6 .cse7))))) [2021-10-28 09:40:35,319 INFO L853 garLoopResultBuilder]: At program point L905(lines 898 908) the Hoare annotation is: false [2021-10-28 09:40:35,319 INFO L853 garLoopResultBuilder]: At program point L905-1(lines 898 908) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse6 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0))) (.cse7 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse8 (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse9 (<= ~waterLevel~0 2)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0))) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse13 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (<= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse5 .cse6 .cse7 .cse8 (<= 0 |ULTIMATE.start_isMethaneAlarm_#res|) .cse9 .cse10 .cse11 .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse5 .cse6 .cse7 .cse8 (not .cse3) (not .cse4) .cse9 .cse10 .cse11 .cse12 .cse13))) [2021-10-28 09:40:35,319 INFO L853 garLoopResultBuilder]: At program point L905-2(lines 898 908) the Hoare annotation is: false [2021-10-28 09:40:35,319 INFO L853 garLoopResultBuilder]: At program point L905-3(lines 898 908) the Hoare annotation is: false [2021-10-28 09:40:35,319 INFO L853 garLoopResultBuilder]: At program point L905-4(lines 898 908) the Hoare annotation is: false [2021-10-28 09:40:35,320 INFO L853 garLoopResultBuilder]: At program point L905-5(lines 898 908) the Hoare annotation is: false [2021-10-28 09:40:35,320 INFO L853 garLoopResultBuilder]: At program point L113(lines 109 115) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:40:35,320 INFO L857 garLoopResultBuilder]: For program point L576(lines 576 580) no Hoare annotation was computed. [2021-10-28 09:40:35,320 INFO L857 garLoopResultBuilder]: For program point L576-3(lines 576 580) no Hoare annotation was computed. [2021-10-28 09:40:35,320 INFO L857 garLoopResultBuilder]: For program point L576-6(lines 576 580) no Hoare annotation was computed. [2021-10-28 09:40:35,320 INFO L860 garLoopResultBuilder]: At program point L149(lines 130 152) the Hoare annotation is: true [2021-10-28 09:40:35,321 INFO L857 garLoopResultBuilder]: For program point L843(lines 843 860) no Hoare annotation was computed. [2021-10-28 09:40:35,321 INFO L857 garLoopResultBuilder]: For program point L843-1(lines 843 860) no Hoare annotation was computed. [2021-10-28 09:40:35,321 INFO L857 garLoopResultBuilder]: For program point L843-2(lines 843 860) no Hoare annotation was computed. [2021-10-28 09:40:35,321 INFO L853 garLoopResultBuilder]: At program point L645(lines 640 648) the Hoare annotation is: (let ((.cse10 (<= |ULTIMATE.start_getWaterLevel_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse11 (<= ~waterLevel~0 1)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0)) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1))) (.cse7 (<= ULTIMATE.start_activatePump_~tmp~8 0)) (.cse8 (not (= 0 ~systemActive~0))) (.cse9 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (<= |ULTIMATE.start_isMethaneAlarm_#res| 0) (<= 2 ~waterLevel~0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0)) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse4 (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0) (<= 0 |ULTIMATE.start_isMethaneAlarm_#res|) (<= ~waterLevel~0 2) .cse5 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0)) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse6 .cse7 .cse8 .cse9) (and .cse10 .cse0 .cse1 (= ~pumpRunning~0 0) .cse2 .cse3 .cse11 .cse4 .cse5 .cse8) (and .cse10 .cse0 .cse1 .cse2 .cse3 .cse11 .cse4 .cse5 (= ULTIMATE.start_processEnvironment_~tmp~7 0) .cse6 .cse7 .cse8 .cse9))) [2021-10-28 09:40:35,321 INFO L853 garLoopResultBuilder]: At program point L645-1(lines 640 648) the Hoare annotation is: false [2021-10-28 09:40:35,321 INFO L853 garLoopResultBuilder]: At program point L645-2(lines 640 648) the Hoare annotation is: false [2021-10-28 09:40:35,322 INFO L853 garLoopResultBuilder]: At program point L613(lines 608 616) the Hoare annotation is: false [2021-10-28 09:40:35,322 INFO L853 garLoopResultBuilder]: At program point L613-1(lines 608 616) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse7 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0))) (.cse5 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse6 (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0)) (.cse9 (<= ~waterLevel~0 2)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0))) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse13 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 (not .cse7) (not .cse8) .cse9 .cse10 .cse11 .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse7 .cse8 .cse3 .cse4 .cse5 .cse6 .cse9 .cse10 .cse11 .cse12 .cse13))) [2021-10-28 09:40:35,322 INFO L853 garLoopResultBuilder]: At program point L613-2(lines 608 616) the Hoare annotation is: (let ((.cse19 (= ~methaneLevelCritical~0 0)) (.cse18 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse2 (= ~pumpRunning~0 0)) (.cse3 (<= ~waterLevel~0 1)) (.cse4 (not .cse18)) (.cse5 (not .cse19)) (.cse20 (= ULTIMATE.start_processEnvironment_~tmp~7 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse14 (<= 2 ~waterLevel~0)) (.cse8 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0))) (.cse9 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0)) (.cse11 (<= ~waterLevel~0 2)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse12 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0))) (.cse13 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse15 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1))) (.cse16 (<= ULTIMATE.start_activatePump_~tmp~8 0)) (.cse7 (not (= 0 ~systemActive~0))) (.cse17 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 .cse2 .cse8 .cse9 .cse10 .cse4 .cse5 .cse11 .cse6 .cse12 .cse13 .cse7) (and .cse0 .cse1 .cse14 .cse8 .cse9 .cse10 .cse4 .cse5 .cse11 .cse6 .cse12 .cse13 .cse15 .cse16 .cse7 .cse17) (and .cse0 .cse1 .cse18 .cse19 .cse3 .cse6 .cse20 .cse15 .cse16 .cse7 .cse17) (and .cse0 .cse1 .cse2 .cse18 .cse19 .cse3 .cse6 .cse7) (and .cse0 .cse1 .cse3 .cse4 .cse5 .cse6 .cse20 .cse15 .cse16 .cse7 .cse17) (and .cse0 .cse1 .cse18 .cse19 (<= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse14 .cse8 .cse9 .cse10 (<= 0 |ULTIMATE.start_isMethaneAlarm_#res|) .cse11 .cse6 .cse12 .cse13 .cse15 .cse16 .cse7 .cse17)))) [2021-10-28 09:40:35,322 INFO L853 garLoopResultBuilder]: At program point L613-3(lines 608 616) the Hoare annotation is: false [2021-10-28 09:40:35,322 INFO L853 garLoopResultBuilder]: At program point L613-4(lines 608 616) the Hoare annotation is: false [2021-10-28 09:40:35,323 INFO L853 garLoopResultBuilder]: At program point L613-5(lines 608 616) the Hoare annotation is: false [2021-10-28 09:40:35,323 INFO L853 garLoopResultBuilder]: At program point L613-6(lines 608 616) the Hoare annotation is: false [2021-10-28 09:40:35,323 INFO L853 garLoopResultBuilder]: At program point L613-7(lines 608 616) the Hoare annotation is: false [2021-10-28 09:40:35,323 INFO L853 garLoopResultBuilder]: At program point L613-8(lines 608 616) the Hoare annotation is: false [2021-10-28 09:40:35,323 INFO L853 garLoopResultBuilder]: At program point L184(lines 179 187) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-10-28 09:40:35,323 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-28 09:40:35,324 INFO L857 garLoopResultBuilder]: For program point L880(lines 880 886) no Hoare annotation was computed. [2021-10-28 09:40:35,324 INFO L857 garLoopResultBuilder]: For program point L847(lines 847 855) no Hoare annotation was computed. [2021-10-28 09:40:35,324 INFO L857 garLoopResultBuilder]: For program point L880-2(lines 880 886) no Hoare annotation was computed. [2021-10-28 09:40:35,324 INFO L857 garLoopResultBuilder]: For program point L847-1(lines 847 855) no Hoare annotation was computed. [2021-10-28 09:40:35,324 INFO L857 garLoopResultBuilder]: For program point L847-2(lines 847 855) no Hoare annotation was computed. [2021-10-28 09:40:35,324 INFO L857 garLoopResultBuilder]: For program point L880-4(lines 880 886) no Hoare annotation was computed. [2021-10-28 09:40:35,324 INFO L857 garLoopResultBuilder]: For program point L880-6(lines 880 886) no Hoare annotation was computed. [2021-10-28 09:40:35,325 INFO L857 garLoopResultBuilder]: For program point L880-8(lines 880 886) no Hoare annotation was computed. [2021-10-28 09:40:35,325 INFO L857 garLoopResultBuilder]: For program point L880-10(lines 880 886) no Hoare annotation was computed. [2021-10-28 09:40:35,325 INFO L853 garLoopResultBuilder]: At program point L914(lines 909 917) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ULTIMATE.start_test_~splverifierCounter~0 0) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) (<= |ULTIMATE.start_isMethaneAlarm_#res| 0) (<= 2 ~waterLevel~0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0)) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0) (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0) (<= 0 |ULTIMATE.start_isMethaneAlarm_#res|) (<= ~waterLevel~0 2) (= |ULTIMATE.start_valid_product_#res| 1) (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0)) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1)) (= |ULTIMATE.start_isPumpRunning_#res| 1) (<= ULTIMATE.start_activatePump_~tmp~8 0) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 1)) [2021-10-28 09:40:35,325 INFO L853 garLoopResultBuilder]: At program point L914-1(lines 909 917) the Hoare annotation is: false [2021-10-28 09:40:35,325 INFO L853 garLoopResultBuilder]: At program point L914-2(lines 909 917) the Hoare annotation is: false [2021-10-28 09:40:35,325 INFO L857 garLoopResultBuilder]: For program point L749(lines 749 762) no Hoare annotation was computed. [2021-10-28 09:40:35,326 INFO L857 garLoopResultBuilder]: For program point L683(lines 683 703) no Hoare annotation was computed. [2021-10-28 09:40:35,326 INFO L857 garLoopResultBuilder]: For program point L683-2(lines 683 703) no Hoare annotation was computed. [2021-10-28 09:40:35,326 INFO L857 garLoopResultBuilder]: For program point L683-4(lines 683 703) no Hoare annotation was computed. [2021-10-28 09:40:35,326 INFO L857 garLoopResultBuilder]: For program point L982(lines 982 986) no Hoare annotation was computed. [2021-10-28 09:40:35,326 INFO L857 garLoopResultBuilder]: For program point L982-2(lines 982 986) no Hoare annotation was computed. [2021-10-28 09:40:35,326 INFO L857 garLoopResultBuilder]: For program point L982-3(lines 982 986) no Hoare annotation was computed. [2021-10-28 09:40:35,326 INFO L857 garLoopResultBuilder]: For program point L817(lines 817 834) no Hoare annotation was computed. [2021-10-28 09:40:35,327 INFO L857 garLoopResultBuilder]: For program point L982-5(lines 982 986) no Hoare annotation was computed. [2021-10-28 09:40:35,327 INFO L857 garLoopResultBuilder]: For program point L817-1(lines 817 834) no Hoare annotation was computed. [2021-10-28 09:40:35,327 INFO L857 garLoopResultBuilder]: For program point L982-6(lines 982 986) no Hoare annotation was computed. [2021-10-28 09:40:35,327 INFO L857 garLoopResultBuilder]: For program point L817-2(lines 817 834) no Hoare annotation was computed. [2021-10-28 09:40:35,327 INFO L857 garLoopResultBuilder]: For program point L817-3(lines 817 834) no Hoare annotation was computed. [2021-10-28 09:40:35,327 INFO L857 garLoopResultBuilder]: For program point L982-8(lines 982 986) no Hoare annotation was computed. [2021-10-28 09:40:35,327 INFO L857 garLoopResultBuilder]: For program point L817-4(lines 817 834) no Hoare annotation was computed. [2021-10-28 09:40:35,328 INFO L857 garLoopResultBuilder]: For program point L817-5(lines 817 834) no Hoare annotation was computed. [2021-10-28 09:40:35,328 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-28 09:40:35,328 INFO L853 garLoopResultBuilder]: At program point L785(lines 784 803) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 (= ~pumpRunning~0 0) (<= ~waterLevel~0 2) .cse2 .cse3) (and .cse0 .cse1 (<= ~waterLevel~0 1) .cse2 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1)) (<= ULTIMATE.start_activatePump_~tmp~8 0) .cse3 (= ~pumpRunning~0 1)))) [2021-10-28 09:40:35,328 INFO L857 garLoopResultBuilder]: For program point L785-1(lines 785 791) no Hoare annotation was computed. [2021-10-28 09:40:35,328 INFO L853 garLoopResultBuilder]: At program point L785-2(lines 784 803) the Hoare annotation is: false [2021-10-28 09:40:35,328 INFO L853 garLoopResultBuilder]: At program point L785-3(lines 784 803) the Hoare annotation is: false [2021-10-28 09:40:35,329 INFO L857 garLoopResultBuilder]: For program point L653(lines 653 659) no Hoare annotation was computed. [2021-10-28 09:40:35,329 INFO L857 garLoopResultBuilder]: For program point L653-1(lines 653 659) no Hoare annotation was computed. [2021-10-28 09:40:35,329 INFO L857 garLoopResultBuilder]: For program point L653-2(lines 653 659) no Hoare annotation was computed. [2021-10-28 09:40:35,329 INFO L857 garLoopResultBuilder]: For program point L653-3(lines 653 659) no Hoare annotation was computed. [2021-10-28 09:40:35,329 INFO L857 garLoopResultBuilder]: For program point L653-4(lines 653 659) no Hoare annotation was computed. [2021-10-28 09:40:35,329 INFO L857 garLoopResultBuilder]: For program point L653-5(lines 653 659) no Hoare annotation was computed. [2021-10-28 09:40:35,329 INFO L857 garLoopResultBuilder]: For program point L720(lines 719 766) no Hoare annotation was computed. [2021-10-28 09:40:35,330 INFO L857 garLoopResultBuilder]: For program point L588(lines 588 592) no Hoare annotation was computed. [2021-10-28 09:40:35,330 INFO L857 garLoopResultBuilder]: For program point L721(lines 721 725) no Hoare annotation was computed. [2021-10-28 09:40:35,330 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-28 09:40:35,330 INFO L857 garLoopResultBuilder]: For program point L821(lines 821 829) no Hoare annotation was computed. [2021-10-28 09:40:35,330 INFO L857 garLoopResultBuilder]: For program point L821-1(lines 821 829) no Hoare annotation was computed. [2021-10-28 09:40:35,330 INFO L857 garLoopResultBuilder]: For program point L821-2(lines 821 829) no Hoare annotation was computed. [2021-10-28 09:40:35,330 INFO L857 garLoopResultBuilder]: For program point L821-3(lines 821 829) no Hoare annotation was computed. [2021-10-28 09:40:35,331 INFO L857 garLoopResultBuilder]: For program point L689(lines 689 702) no Hoare annotation was computed. [2021-10-28 09:40:35,331 INFO L857 garLoopResultBuilder]: For program point L821-4(lines 821 829) no Hoare annotation was computed. [2021-10-28 09:40:35,331 INFO L853 garLoopResultBuilder]: At program point L689-1(lines 1 999) the Hoare annotation is: (let ((.cse7 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse4 (<= 2 ~waterLevel~0)) (.cse23 (= ~pumpRunning~0 0)) (.cse5 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0))) (.cse6 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse8 (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0)) (.cse18 (not .cse2)) (.cse19 (not .cse3)) (.cse20 (not .cse7)) (.cse9 (<= ~waterLevel~0 2)) (.cse11 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0))) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse22 (<= |ULTIMATE.start_getWaterLevel_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse17 (<= ~waterLevel~0 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse21 (= ULTIMATE.start_processEnvironment_~tmp~7 0)) (.cse13 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1))) (.cse14 (<= ULTIMATE.start_activatePump_~tmp~8 0)) (.cse24 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (.cse15 (not (= 0 ~systemActive~0))) (.cse16 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (<= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse4 .cse5 .cse6 .cse7 .cse8 (<= 0 |ULTIMATE.start_isMethaneAlarm_#res|) .cse9 .cse10 .cse11 .cse12 .cse13 .cse14 .cse15 .cse16) (and .cse0 .cse1 .cse17 .cse18 .cse19 .cse20 .cse10 .cse21 .cse13 .cse14 .cse15 .cse16) (and .cse22 .cse0 .cse1 .cse23 .cse2 .cse3 .cse17 .cse7 .cse10 .cse24 .cse15) (and .cse0 .cse1 .cse23 .cse3 .cse10 (= ~waterLevel~0 1) .cse15) (and .cse0 .cse1 .cse4 .cse5 .cse6 .cse8 .cse18 .cse19 .cse20 .cse9 .cse10 .cse11 .cse12 .cse13 .cse14 .cse15 .cse16) (and .cse0 .cse1 .cse23 .cse17 .cse18 .cse19 .cse20 .cse10 .cse15) (and .cse0 .cse1 .cse23 .cse5 .cse6 .cse8 .cse18 .cse19 .cse20 .cse9 .cse10 .cse11 .cse12 .cse15) (and .cse22 .cse0 .cse1 .cse2 .cse3 .cse17 .cse7 .cse10 .cse21 .cse13 .cse14 .cse24 .cse15 .cse16)))) [2021-10-28 09:40:35,331 INFO L857 garLoopResultBuilder]: For program point L821-5(lines 821 829) no Hoare annotation was computed. [2021-10-28 09:40:35,331 INFO L857 garLoopResultBuilder]: For program point L689-2(lines 689 702) no Hoare annotation was computed. [2021-10-28 09:40:35,332 INFO L853 garLoopResultBuilder]: At program point L689-3(lines 1 999) the Hoare annotation is: false [2021-10-28 09:40:35,332 INFO L857 garLoopResultBuilder]: For program point L689-4(lines 689 702) no Hoare annotation was computed. [2021-10-28 09:40:35,332 INFO L853 garLoopResultBuilder]: At program point L689-5(lines 1 999) the Hoare annotation is: false [2021-10-28 09:40:35,332 INFO L853 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: false [2021-10-28 09:40:35,332 INFO L857 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2021-10-28 09:40:35,332 INFO L853 garLoopResultBuilder]: At program point L988(lines 973 991) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ULTIMATE.start_test_~splverifierCounter~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1)) (<= ULTIMATE.start_activatePump_~tmp~8 0) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 1)) [2021-10-28 09:40:35,332 INFO L853 garLoopResultBuilder]: At program point L988-1(lines 973 991) the Hoare annotation is: false [2021-10-28 09:40:35,333 INFO L853 garLoopResultBuilder]: At program point L988-2(lines 973 991) the Hoare annotation is: false [2021-10-28 09:40:35,333 INFO L857 garLoopResultBuilder]: For program point L757(lines 757 761) no Hoare annotation was computed. [2021-10-28 09:40:35,333 INFO L853 garLoopResultBuilder]: At program point L757-2(lines 785 791) the Hoare annotation is: (let ((.cse2 (<= ~waterLevel~0 2)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse4 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1))) (.cse5 (<= ULTIMATE.start_activatePump_~tmp~8 0)) (.cse6 (not (= 0 ~systemActive~0))) (.cse7 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (= ULTIMATE.start_processEnvironment_~tmp~7 0) .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 (= ~pumpRunning~0 0) .cse2 .cse3 .cse6) (and .cse2 .cse3 (or (and .cse0 .cse1 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0)) (= ~waterLevel~0 1) .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse4 .cse5 .cse6 .cse7))))) [2021-10-28 09:40:35,333 INFO L853 garLoopResultBuilder]: At program point L658(lines 649 662) the Hoare annotation is: false [2021-10-28 09:40:35,333 INFO L853 garLoopResultBuilder]: At program point L658-1(lines 649 662) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (<= ~waterLevel~0 1) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) (<= ~waterLevel~0 2) .cse3 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse4))) [2021-10-28 09:40:35,334 INFO L853 garLoopResultBuilder]: At program point L658-2(lines 649 662) the Hoare annotation is: false [2021-10-28 09:40:35,334 INFO L857 garLoopResultBuilder]: For program point L559(line 559) no Hoare annotation was computed. [2021-10-28 09:40:35,334 INFO L853 garLoopResultBuilder]: At program point L658-3(lines 649 662) the Hoare annotation is: false [2021-10-28 09:40:35,334 INFO L857 garLoopResultBuilder]: For program point L559-1(line 559) no Hoare annotation was computed. [2021-10-28 09:40:35,334 INFO L853 garLoopResultBuilder]: At program point L658-4(lines 649 662) the Hoare annotation is: false [2021-10-28 09:40:35,334 INFO L853 garLoopResultBuilder]: At program point L658-5(lines 649 662) the Hoare annotation is: false [2021-10-28 09:40:35,334 INFO L857 garLoopResultBuilder]: For program point L559-2(line 559) no Hoare annotation was computed. [2021-10-28 09:40:35,335 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-28 09:40:35,335 INFO L853 garLoopResultBuilder]: At program point L792(lines 792 798) the Hoare annotation is: (let ((.cse19 (= ~methaneLevelCritical~0 0)) (.cse18 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse2 (= ~pumpRunning~0 0)) (.cse9 (not .cse18)) (.cse10 (not .cse19)) (.cse14 (<= 2 ~waterLevel~0)) (.cse6 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0))) (.cse7 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse8 (= ULTIMATE.start_isHighWaterLevel_~tmp~9 0)) (.cse11 (<= ~waterLevel~0 2)) (.cse12 (not (= ULTIMATE.start_processEnvironment__wrappee__highWaterSensor_~tmp~6 0))) (.cse13 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (<= ~waterLevel~0 1)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse15 (< 0 (+ ULTIMATE.start_activatePump_~tmp~8 1))) (.cse16 (<= ULTIMATE.start_activatePump_~tmp~8 0)) (.cse5 (not (= 0 ~systemActive~0))) (.cse17 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse4 .cse12 .cse13 .cse5) (and .cse0 .cse1 .cse14 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse4 .cse12 .cse13 .cse15 .cse16 .cse5 .cse17) (and .cse0 .cse1 .cse18 .cse19 (<= |ULTIMATE.start_isMethaneAlarm_#res| 0) .cse14 .cse6 .cse7 .cse8 (<= 0 |ULTIMATE.start_isMethaneAlarm_#res|) .cse11 .cse4 .cse12 .cse13 .cse15 .cse16 .cse5 .cse17) (and .cse0 .cse1 .cse3 .cse4 (= ULTIMATE.start_processEnvironment_~tmp~7 0) .cse15 .cse16 .cse5 .cse17)))) [2021-10-28 09:40:35,335 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 559) no Hoare annotation was computed. [2021-10-28 09:40:35,335 INFO L853 garLoopResultBuilder]: At program point L792-1(lines 792 798) the Hoare annotation is: false [2021-10-28 09:40:35,335 INFO L853 garLoopResultBuilder]: At program point L792-2(lines 792 798) the Hoare annotation is: false [2021-10-28 09:40:35,336 INFO L857 garLoopResultBuilder]: For program point L693(lines 693 699) no Hoare annotation was computed. [2021-10-28 09:40:35,336 INFO L857 garLoopResultBuilder]: For program point L693-2(lines 693 699) no Hoare annotation was computed. [2021-10-28 09:40:35,336 INFO L857 garLoopResultBuilder]: For program point L693-4(lines 693 699) no Hoare annotation was computed. [2021-10-28 09:40:35,336 INFO L857 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2021-10-28 09:40:35,336 INFO L857 garLoopResultBuilder]: For program point L66-1(lines 785 791) no Hoare annotation was computed. [2021-10-28 09:40:35,339 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 09:40:35,341 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-28 09:40:35,377 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.10 09:40:35 BoogieIcfgContainer [2021-10-28 09:40:35,377 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-28 09:40:35,378 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-28 09:40:35,378 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-28 09:40:35,378 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-28 09:40:35,379 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 09:40:14" (3/4) ... [2021-10-28 09:40:35,381 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-28 09:40:35,402 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-28 09:40:35,403 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-28 09:40:35,405 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-28 09:40:35,406 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-28 09:40:35,407 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-28 09:40:35,409 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:40:35,410 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 09:40:35,434 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-10-28 09:40:35,434 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-10-28 09:40:35,434 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp___0 <= 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((((((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && \result == 1) && !(0 == systemActive))) || (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive))) || (((((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && tmp___0 <= 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:40:35,435 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((((tmp == 1 && splverifierCounter == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && !(0 == systemActive))) || ((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel <= 2) && \result == 1) && tmp___0 <= 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && \result == 1) && !(0 == systemActive))) || (((((!(\result == 0) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && ((((((((tmp == 1 && splverifierCounter == 0) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)))) || (((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 0 <= \result) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 0) && waterLevel <= 2) && \result == 1)) || (((((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && tmp___0 <= 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && waterLevel <= 2) && \result == 1) && !(0 == systemActive)) [2021-10-28 09:40:35,435 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 2) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 2) && \result == 1) && !(0 == systemActive))) || ((waterLevel <= 2 && \result == 1) && ((((((((tmp == 1 && splverifierCounter == 0) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1))) [2021-10-28 09:40:35,436 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 2) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 2) && \result == 1) && !(0 == systemActive))) || ((waterLevel <= 2 && \result == 1) && ((((((((tmp == 1 && splverifierCounter == 0) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1))) [2021-10-28 09:40:35,436 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 2) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:40:35,439 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive))) || (((((((((((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:40:35,440 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive))) || (((((((((((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:40:35,441 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1 [2021-10-28 09:40:35,442 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && waterLevel <= 2) && \result == 1) && \result == 0) && !(0 == systemActive)) [2021-10-28 09:40:35,442 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && !(0 == systemActive))) || ((((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) [2021-10-28 09:40:35,443 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1 [2021-10-28 09:40:35,443 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp___0 == 0) && tmp == 1) && waterLevel <= 1) && \result == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && waterLevel <= 2) && \result == 1) && \result == 0) && !(0 == systemActive)) [2021-10-28 09:40:35,444 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && \result == 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1 [2021-10-28 09:40:35,446 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) || (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) [2021-10-28 09:40:35,446 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) || (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) [2021-10-28 09:40:35,547 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/witness.graphml [2021-10-28 09:40:35,548 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-28 09:40:35,550 INFO L168 Benchmark]: Toolchain (without parser) took 22874.53 ms. Allocated memory was 98.6 MB in the beginning and 272.6 MB in the end (delta: 174.1 MB). Free memory was 58.1 MB in the beginning and 83.7 MB in the end (delta: -25.6 MB). Peak memory consumption was 149.4 MB. Max. memory is 16.1 GB. [2021-10-28 09:40:35,550 INFO L168 Benchmark]: CDTParser took 0.21 ms. Allocated memory is still 98.6 MB. Free memory is still 75.5 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-28 09:40:35,551 INFO L168 Benchmark]: CACSL2BoogieTranslator took 593.16 ms. Allocated memory is still 98.6 MB. Free memory was 57.9 MB in the beginning and 65.2 MB in the end (delta: -7.3 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-28 09:40:35,551 INFO L168 Benchmark]: Boogie Procedure Inliner took 89.90 ms. Allocated memory is still 98.6 MB. Free memory was 65.2 MB in the beginning and 61.0 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 09:40:35,552 INFO L168 Benchmark]: Boogie Preprocessor took 52.46 ms. Allocated memory is still 98.6 MB. Free memory was 61.0 MB in the beginning and 57.9 MB in the end (delta: 3.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 09:40:35,552 INFO L168 Benchmark]: RCFGBuilder took 1248.47 ms. Allocated memory was 98.6 MB in the beginning and 130.0 MB in the end (delta: 31.5 MB). Free memory was 57.9 MB in the beginning and 81.0 MB in the end (delta: -23.1 MB). Peak memory consumption was 33.8 MB. Max. memory is 16.1 GB. [2021-10-28 09:40:35,553 INFO L168 Benchmark]: TraceAbstraction took 20711.87 ms. Allocated memory was 130.0 MB in the beginning and 272.6 MB in the end (delta: 142.6 MB). Free memory was 80.2 MB in the beginning and 95.4 MB in the end (delta: -15.1 MB). Peak memory consumption was 145.5 MB. Max. memory is 16.1 GB. [2021-10-28 09:40:35,553 INFO L168 Benchmark]: Witness Printer took 169.95 ms. Allocated memory is still 272.6 MB. Free memory was 95.4 MB in the beginning and 83.7 MB in the end (delta: 11.7 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. [2021-10-28 09:40:35,555 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21 ms. Allocated memory is still 98.6 MB. Free memory is still 75.5 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 593.16 ms. Allocated memory is still 98.6 MB. Free memory was 57.9 MB in the beginning and 65.2 MB in the end (delta: -7.3 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 89.90 ms. Allocated memory is still 98.6 MB. Free memory was 65.2 MB in the beginning and 61.0 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 52.46 ms. Allocated memory is still 98.6 MB. Free memory was 61.0 MB in the beginning and 57.9 MB in the end (delta: 3.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1248.47 ms. Allocated memory was 98.6 MB in the beginning and 130.0 MB in the end (delta: 31.5 MB). Free memory was 57.9 MB in the beginning and 81.0 MB in the end (delta: -23.1 MB). Peak memory consumption was 33.8 MB. Max. memory is 16.1 GB. * TraceAbstraction took 20711.87 ms. Allocated memory was 130.0 MB in the beginning and 272.6 MB in the end (delta: 142.6 MB). Free memory was 80.2 MB in the beginning and 95.4 MB in the end (delta: -15.1 MB). Peak memory consumption was 145.5 MB. Max. memory is 16.1 GB. * Witness Printer took 169.95 ms. Allocated memory is still 272.6 MB. Free memory was 95.4 MB in the beginning and 83.7 MB in the end (delta: 11.7 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 559]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 559]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 559]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 141 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 20.5s, OverallIterations: 16, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 14.7s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 1885 SDtfs, 3142 SDslu, 3329 SDs, 0 SdLazy, 476 SolverSat, 80 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.6s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 191 GetRequests, 102 SyntacticMatches, 0 SemanticMatches, 89 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 65 ImplicationChecksByTransitivity, 0.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=360occurred in iteration=9, InterpolantAutomatonStates: 101, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 16 MinimizatonAttempts, 2515 StatesRemovedByMinimization, 12 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 58 LocationsWithAnnotation, 58 PreInvPairs, 324 NumberOfFragments, 2211 HoareAnnotationTreeSize, 58 FomulaSimplifications, 22468398 FormulaSimplificationTreeSizeReduction, 5.2s HoareSimplificationTime, 58 FomulaSimplificationsInter, 2705777 FormulaSimplificationTreeSizeReductionInter, 9.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.6s SatisfiabilityAnalysisTime, 1.3s InterpolantComputationTime, 667 NumberOfCodeBlocks, 667 NumberOfCodeBlocksAsserted, 17 NumberOfCheckSat, 650 ConstructedInterpolants, 0 QuantifiedInterpolants, 1237 SizeOfPredicates, 3 NumberOfNonLiveVariables, 463 ConjunctsInSsa, 7 ConjunctsInUnsatCore, 17 InterpolantComputations, 15 PerfectInterpolantSequences, 78/90 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 954]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 649]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && waterLevel <= 2) && \result == 1) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 909]: Loop Invariant Derived loop invariant: ((((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && \result == 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1 - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive))) || (((((((((((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 954]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 179]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive))) || (((((((((((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 973]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp___0 <= 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((((((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && \result == 1) && !(0 == systemActive))) || (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive))) || (((((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && tmp___0 <= 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 649]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 784]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 663]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1 - InvariantResult [Line: 784]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 954]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 909]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 649]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 649]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 973]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1 - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 718]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 649]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 663]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 640]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 739]: Loop Invariant Derived loop invariant: (((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 2) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 2) && \result == 1) && !(0 == systemActive))) || ((waterLevel <= 2 && \result == 1) && ((((((((tmp == 1 && splverifierCounter == 0) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1))) - InvariantResult [Line: 729]: Loop Invariant Derived loop invariant: ((((((((((((((((((tmp == 1 && splverifierCounter == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && !(0 == systemActive))) || ((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && waterLevel <= 2) && \result == 1) && tmp___0 <= 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(\result == 0)) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && \result == 1) && !(0 == systemActive))) || (((((!(\result == 0) && !(methaneLevelCritical == 0)) && !(tmp == 0)) && waterLevel <= 2) && \result == 1) && ((((((((tmp == 1 && splverifierCounter == 0) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)))) || (((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 0 <= \result) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1)) && tmp == 0) && waterLevel <= 2) && \result == 1)) || (((((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && tmp___0 <= 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && waterLevel <= 2) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 954]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 954]: Loop Invariant Derived loop invariant: (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp___0 == 0) && tmp == 1) && waterLevel <= 1) && \result == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && waterLevel <= 2) && \result == 1) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 663]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 909]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 640]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) || (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 785]: Loop Invariant Derived loop invariant: (((((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 2) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 2) && \result == 1) && !(0 == systemActive))) || ((waterLevel <= 2 && \result == 1) && ((((((((tmp == 1 && splverifierCounter == 0) && !(tmp == 0)) && waterLevel == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || ((((((tmp == 1 && splverifierCounter == 0) && 2 <= waterLevel) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1))) - InvariantResult [Line: 784]: Loop Invariant Derived loop invariant: (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 2) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && waterLevel <= 1) && \result == 1) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 954]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: (((((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) || (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && !(\result == 0)) && !(methaneLevelCritical == 0)) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 973]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 640]: Loop Invariant Derived loop invariant: (((((((((((((((((((tmp == 1 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && \result <= 0) && 2 <= waterLevel) && !(tmp___0 == 0)) && !(\result == 0)) && tmp == 0) && tmp == 0) && 0 <= \result) && waterLevel <= 2) && \result == 1) && !(tmp == 0)) && \result == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) || (((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && !(0 == systemActive))) || ((((((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && tmp == 0) && \result == 1) && tmp == 0) && 0 < tmp + 1) && tmp <= 0) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 649]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-10-28 09:40:35,636 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfadd423-fa3c-4ce2-847d-8a20d81301d4/bin/uautomizer-UnR33cPsHg/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...