./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 5a0a9a5f1521df25ea0ff390c35c7186e45318cd30c225704d83030e156744fb ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-28 23:57:54,445 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-28 23:57:54,449 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-28 23:57:54,515 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-28 23:57:54,516 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-28 23:57:54,521 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-28 23:57:54,523 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-28 23:57:54,527 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-28 23:57:54,530 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-28 23:57:54,537 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-28 23:57:54,538 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-28 23:57:54,541 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-28 23:57:54,541 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-28 23:57:54,544 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-28 23:57:54,547 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-28 23:57:54,552 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-28 23:57:54,554 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-28 23:57:54,555 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-28 23:57:54,559 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-28 23:57:54,567 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-28 23:57:54,570 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-28 23:57:54,572 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-28 23:57:54,576 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-28 23:57:54,577 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-28 23:57:54,588 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-28 23:57:54,589 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-28 23:57:54,589 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-28 23:57:54,592 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-28 23:57:54,593 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-28 23:57:54,595 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-28 23:57:54,595 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-28 23:57:54,597 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-28 23:57:54,599 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-28 23:57:54,601 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-28 23:57:54,603 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-28 23:57:54,604 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-28 23:57:54,605 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-28 23:57:54,605 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-28 23:57:54,606 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-28 23:57:54,607 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-28 23:57:54,608 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-28 23:57:54,609 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-28 23:57:54,651 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-28 23:57:54,651 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-28 23:57:54,651 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-28 23:57:54,652 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-28 23:57:54,653 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-28 23:57:54,653 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-28 23:57:54,654 INFO L138 SettingsManager]: * Use SBE=true [2021-10-28 23:57:54,654 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-28 23:57:54,654 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-28 23:57:54,654 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-28 23:57:54,655 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-28 23:57:54,655 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-28 23:57:54,655 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-28 23:57:54,655 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-28 23:57:54,655 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-28 23:57:54,656 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-28 23:57:54,656 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-28 23:57:54,656 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-28 23:57:54,656 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-28 23:57:54,657 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-28 23:57:54,661 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-28 23:57:54,661 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-28 23:57:54,662 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 23:57:54,662 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-28 23:57:54,662 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-28 23:57:54,662 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-28 23:57:54,663 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-28 23:57:54,663 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-28 23:57:54,664 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-28 23:57:54,664 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-28 23:57:54,665 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-28 23:57:54,665 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-28 23:57:54,665 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 5a0a9a5f1521df25ea0ff390c35c7186e45318cd30c225704d83030e156744fb [2021-10-28 23:57:54,923 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-28 23:57:54,945 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-28 23:57:54,969 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-28 23:57:54,971 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-28 23:57:54,972 INFO L275 PluginConnector]: CDTParser initialized [2021-10-28 23:57:54,973 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/../../sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c [2021-10-28 23:57:55,058 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/data/5e85ef8d6/63451aecc7de439692e2d7a93b797cae/FLAGcab612274 [2021-10-28 23:57:55,744 INFO L306 CDTParser]: Found 1 translation units. [2021-10-28 23:57:55,752 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c [2021-10-28 23:57:55,773 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/data/5e85ef8d6/63451aecc7de439692e2d7a93b797cae/FLAGcab612274 [2021-10-28 23:57:55,998 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/data/5e85ef8d6/63451aecc7de439692e2d7a93b797cae [2021-10-28 23:57:56,001 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-28 23:57:56,003 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-28 23:57:56,004 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-28 23:57:56,005 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-28 23:57:56,009 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-28 23:57:56,010 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 11:57:55" (1/1) ... [2021-10-28 23:57:56,011 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@61c8d60 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56, skipping insertion in model container [2021-10-28 23:57:56,012 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 11:57:55" (1/1) ... [2021-10-28 23:57:56,019 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-28 23:57:56,104 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-28 23:57:56,316 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c[3645,3658] [2021-10-28 23:57:56,421 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 23:57:56,436 INFO L203 MainTranslator]: Completed pre-run [2021-10-28 23:57:56,497 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/sv-benchmarks/c/product-lines/minepump_spec1_product59.cil.c[3645,3658] [2021-10-28 23:57:56,572 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 23:57:56,593 INFO L208 MainTranslator]: Completed translation [2021-10-28 23:57:56,594 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56 WrapperNode [2021-10-28 23:57:56,594 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-28 23:57:56,596 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-28 23:57:56,596 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-28 23:57:56,596 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-28 23:57:56,605 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,630 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,691 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-28 23:57:56,692 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-28 23:57:56,693 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-28 23:57:56,693 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-28 23:57:56,702 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,702 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,708 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,709 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,724 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,733 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,740 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,750 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-28 23:57:56,752 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-28 23:57:56,759 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-28 23:57:56,760 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-28 23:57:56,761 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (1/1) ... [2021-10-28 23:57:56,786 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 23:57:56,801 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/z3 [2021-10-28 23:57:56,815 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-28 23:57:56,818 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-28 23:57:56,854 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-28 23:57:56,854 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-28 23:57:56,854 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-28 23:57:56,855 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-28 23:57:57,742 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-28 23:57:57,742 INFO L299 CfgBuilder]: Removed 196 assume(true) statements. [2021-10-28 23:57:57,745 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 11:57:57 BoogieIcfgContainer [2021-10-28 23:57:57,745 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-28 23:57:57,747 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-28 23:57:57,748 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-28 23:57:57,752 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-28 23:57:57,752 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.10 11:57:55" (1/3) ... [2021-10-28 23:57:57,753 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7dd6e897 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 11:57:57, skipping insertion in model container [2021-10-28 23:57:57,753 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:57:56" (2/3) ... [2021-10-28 23:57:57,754 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7dd6e897 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 11:57:57, skipping insertion in model container [2021-10-28 23:57:57,754 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 11:57:57" (3/3) ... [2021-10-28 23:57:57,756 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product59.cil.c [2021-10-28 23:57:57,762 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-28 23:57:57,762 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-28 23:57:57,848 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-28 23:57:57,857 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-28 23:57:57,857 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-28 23:57:57,886 INFO L276 IsEmpty]: Start isEmpty. Operand has 137 states, 133 states have (on average 1.5338345864661653) internal successors, (204), 136 states have internal predecessors, (204), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:57,895 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2021-10-28 23:57:57,895 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:57:57,896 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:57:57,897 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:57:57,902 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:57:57,903 INFO L85 PathProgramCache]: Analyzing trace with hash 998639577, now seen corresponding path program 1 times [2021-10-28 23:57:57,914 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:57:57,914 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [812213246] [2021-10-28 23:57:57,915 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:57:57,916 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:57:58,203 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:57:58,343 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:57:58,344 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:57:58,344 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [812213246] [2021-10-28 23:57:58,345 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [812213246] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:57:58,345 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:57:58,346 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 23:57:58,348 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1925302591] [2021-10-28 23:57:58,353 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-28 23:57:58,354 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:57:58,366 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-28 23:57:58,367 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 23:57:58,370 INFO L87 Difference]: Start difference. First operand has 137 states, 133 states have (on average 1.5338345864661653) internal successors, (204), 136 states have internal predecessors, (204), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,441 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:57:58,441 INFO L93 Difference]: Finished difference Result 268 states and 401 transitions. [2021-10-28 23:57:58,445 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-28 23:57:58,446 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 16 [2021-10-28 23:57:58,447 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:57:58,461 INFO L225 Difference]: With dead ends: 268 [2021-10-28 23:57:58,461 INFO L226 Difference]: Without dead ends: 133 [2021-10-28 23:57:58,466 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 23:57:58,484 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 133 states. [2021-10-28 23:57:58,527 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 133 to 133. [2021-10-28 23:57:58,531 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 133 states, 130 states have (on average 1.476923076923077) internal successors, (192), 132 states have internal predecessors, (192), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,536 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 133 states to 133 states and 192 transitions. [2021-10-28 23:57:58,538 INFO L78 Accepts]: Start accepts. Automaton has 133 states and 192 transitions. Word has length 16 [2021-10-28 23:57:58,539 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:57:58,540 INFO L470 AbstractCegarLoop]: Abstraction has 133 states and 192 transitions. [2021-10-28 23:57:58,540 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.0) internal successors, (16), 2 states have internal predecessors, (16), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,541 INFO L276 IsEmpty]: Start isEmpty. Operand 133 states and 192 transitions. [2021-10-28 23:57:58,542 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2021-10-28 23:57:58,542 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:57:58,543 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:57:58,543 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-28 23:57:58,543 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:57:58,547 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:57:58,547 INFO L85 PathProgramCache]: Analyzing trace with hash -48117320, now seen corresponding path program 1 times [2021-10-28 23:57:58,547 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:57:58,548 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [218544151] [2021-10-28 23:57:58,548 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:57:58,548 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:57:58,630 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:57:58,683 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:57:58,684 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:57:58,684 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [218544151] [2021-10-28 23:57:58,684 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [218544151] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:57:58,685 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:57:58,685 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 23:57:58,685 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1521449323] [2021-10-28 23:57:58,687 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:57:58,687 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:57:58,688 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:57:58,688 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:57:58,689 INFO L87 Difference]: Start difference. First operand 133 states and 192 transitions. Second operand has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,701 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:57:58,702 INFO L93 Difference]: Finished difference Result 133 states and 192 transitions. [2021-10-28 23:57:58,703 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:57:58,703 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 17 [2021-10-28 23:57:58,703 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:57:58,704 INFO L225 Difference]: With dead ends: 133 [2021-10-28 23:57:58,705 INFO L226 Difference]: Without dead ends: 55 [2021-10-28 23:57:58,706 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:57:58,707 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 55 states. [2021-10-28 23:57:58,711 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 55 to 55. [2021-10-28 23:57:58,712 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 55 states, 54 states have (on average 1.462962962962963) internal successors, (79), 54 states have internal predecessors, (79), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,713 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 55 states to 55 states and 79 transitions. [2021-10-28 23:57:58,713 INFO L78 Accepts]: Start accepts. Automaton has 55 states and 79 transitions. Word has length 17 [2021-10-28 23:57:58,713 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:57:58,713 INFO L470 AbstractCegarLoop]: Abstraction has 55 states and 79 transitions. [2021-10-28 23:57:58,714 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.666666666666667) internal successors, (17), 3 states have internal predecessors, (17), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,714 INFO L276 IsEmpty]: Start isEmpty. Operand 55 states and 79 transitions. [2021-10-28 23:57:58,715 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2021-10-28 23:57:58,715 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:57:58,716 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:57:58,716 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-28 23:57:58,716 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:57:58,717 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:57:58,717 INFO L85 PathProgramCache]: Analyzing trace with hash -1725162559, now seen corresponding path program 1 times [2021-10-28 23:57:58,718 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:57:58,718 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [272586988] [2021-10-28 23:57:58,718 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:57:58,719 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:57:58,767 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:57:58,833 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:57:58,833 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:57:58,834 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [272586988] [2021-10-28 23:57:58,834 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [272586988] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:57:58,834 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:57:58,835 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 23:57:58,835 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1718220368] [2021-10-28 23:57:58,835 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:57:58,836 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:57:58,836 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:57:58,837 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:57:58,837 INFO L87 Difference]: Start difference. First operand 55 states and 79 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,872 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:57:58,872 INFO L93 Difference]: Finished difference Result 153 states and 225 transitions. [2021-10-28 23:57:58,872 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:57:58,873 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 22 [2021-10-28 23:57:58,873 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:57:58,874 INFO L225 Difference]: With dead ends: 153 [2021-10-28 23:57:58,875 INFO L226 Difference]: Without dead ends: 104 [2021-10-28 23:57:58,876 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:57:58,876 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-10-28 23:57:58,893 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 100. [2021-10-28 23:57:58,898 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 99 states have (on average 1.4848484848484849) internal successors, (147), 99 states have internal predecessors, (147), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,899 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 147 transitions. [2021-10-28 23:57:58,901 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 147 transitions. Word has length 22 [2021-10-28 23:57:58,902 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:57:58,902 INFO L470 AbstractCegarLoop]: Abstraction has 100 states and 147 transitions. [2021-10-28 23:57:58,903 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 2 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:58,903 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 147 transitions. [2021-10-28 23:57:58,904 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-28 23:57:58,905 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:57:58,906 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:57:58,906 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-28 23:57:58,907 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:57:58,908 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:57:58,908 INFO L85 PathProgramCache]: Analyzing trace with hash 1536171928, now seen corresponding path program 1 times [2021-10-28 23:57:58,908 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:57:58,909 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1381021966] [2021-10-28 23:57:58,910 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:57:58,910 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:57:58,967 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:57:59,035 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:57:59,036 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:57:59,037 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1381021966] [2021-10-28 23:57:59,037 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1381021966] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:57:59,038 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:57:59,038 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 23:57:59,038 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [468659558] [2021-10-28 23:57:59,039 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:57:59,040 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:57:59,040 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:57:59,041 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:57:59,042 INFO L87 Difference]: Start difference. First operand 100 states and 147 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,106 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:57:59,106 INFO L93 Difference]: Finished difference Result 235 states and 350 transitions. [2021-10-28 23:57:59,106 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:57:59,107 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-28 23:57:59,107 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:57:59,112 INFO L225 Difference]: With dead ends: 235 [2021-10-28 23:57:59,112 INFO L226 Difference]: Without dead ends: 141 [2021-10-28 23:57:59,116 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:57:59,116 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 141 states. [2021-10-28 23:57:59,131 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 141 to 139. [2021-10-28 23:57:59,132 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 138 states have (on average 1.4565217391304348) internal successors, (201), 138 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,133 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 201 transitions. [2021-10-28 23:57:59,133 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 201 transitions. Word has length 24 [2021-10-28 23:57:59,133 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:57:59,133 INFO L470 AbstractCegarLoop]: Abstraction has 139 states and 201 transitions. [2021-10-28 23:57:59,134 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,134 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 201 transitions. [2021-10-28 23:57:59,140 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-10-28 23:57:59,140 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:57:59,141 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:57:59,141 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-28 23:57:59,141 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:57:59,143 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:57:59,143 INFO L85 PathProgramCache]: Analyzing trace with hash 1391898518, now seen corresponding path program 1 times [2021-10-28 23:57:59,144 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:57:59,144 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1519827608] [2021-10-28 23:57:59,145 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:57:59,145 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:57:59,191 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:57:59,280 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:57:59,280 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:57:59,280 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1519827608] [2021-10-28 23:57:59,281 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1519827608] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:57:59,281 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:57:59,292 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 23:57:59,292 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1735724098] [2021-10-28 23:57:59,293 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 23:57:59,293 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:57:59,294 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 23:57:59,294 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 23:57:59,294 INFO L87 Difference]: Start difference. First operand 139 states and 201 transitions. Second operand has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,443 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:57:59,444 INFO L93 Difference]: Finished difference Result 747 states and 1098 transitions. [2021-10-28 23:57:59,445 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-28 23:57:59,445 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-10-28 23:57:59,445 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:57:59,451 INFO L225 Difference]: With dead ends: 747 [2021-10-28 23:57:59,451 INFO L226 Difference]: Without dead ends: 614 [2021-10-28 23:57:59,455 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-28 23:57:59,458 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 614 states. [2021-10-28 23:57:59,519 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 614 to 262. [2021-10-28 23:57:59,520 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 262 states, 261 states have (on average 1.4367816091954022) internal successors, (375), 261 states have internal predecessors, (375), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,522 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 262 states to 262 states and 375 transitions. [2021-10-28 23:57:59,523 INFO L78 Accepts]: Start accepts. Automaton has 262 states and 375 transitions. Word has length 25 [2021-10-28 23:57:59,524 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:57:59,524 INFO L470 AbstractCegarLoop]: Abstraction has 262 states and 375 transitions. [2021-10-28 23:57:59,525 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.0) internal successors, (25), 4 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,526 INFO L276 IsEmpty]: Start isEmpty. Operand 262 states and 375 transitions. [2021-10-28 23:57:59,529 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-10-28 23:57:59,529 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:57:59,529 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:57:59,530 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-28 23:57:59,530 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:57:59,531 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:57:59,531 INFO L85 PathProgramCache]: Analyzing trace with hash 1188091424, now seen corresponding path program 1 times [2021-10-28 23:57:59,532 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:57:59,533 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [866279420] [2021-10-28 23:57:59,533 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:57:59,533 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:57:59,574 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:57:59,620 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:57:59,621 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:57:59,621 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [866279420] [2021-10-28 23:57:59,621 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [866279420] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:57:59,622 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:57:59,622 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 23:57:59,622 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1022839669] [2021-10-28 23:57:59,623 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 23:57:59,623 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:57:59,623 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 23:57:59,624 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 23:57:59,624 INFO L87 Difference]: Start difference. First operand 262 states and 375 transitions. Second operand has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,803 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:57:59,804 INFO L93 Difference]: Finished difference Result 768 states and 1102 transitions. [2021-10-28 23:57:59,804 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-10-28 23:57:59,805 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-10-28 23:57:59,806 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:57:59,820 INFO L225 Difference]: With dead ends: 768 [2021-10-28 23:57:59,820 INFO L226 Difference]: Without dead ends: 766 [2021-10-28 23:57:59,821 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-28 23:57:59,822 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 766 states. [2021-10-28 23:57:59,856 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 766 to 262. [2021-10-28 23:57:59,857 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 262 states, 261 states have (on average 1.4291187739463602) internal successors, (373), 261 states have internal predecessors, (373), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,859 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 262 states to 262 states and 373 transitions. [2021-10-28 23:57:59,859 INFO L78 Accepts]: Start accepts. Automaton has 262 states and 373 transitions. Word has length 26 [2021-10-28 23:57:59,859 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:57:59,859 INFO L470 AbstractCegarLoop]: Abstraction has 262 states and 373 transitions. [2021-10-28 23:57:59,860 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:57:59,860 INFO L276 IsEmpty]: Start isEmpty. Operand 262 states and 373 transitions. [2021-10-28 23:57:59,863 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-10-28 23:57:59,863 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:57:59,863 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:57:59,863 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-28 23:57:59,864 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:57:59,864 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:57:59,865 INFO L85 PathProgramCache]: Analyzing trace with hash 770731220, now seen corresponding path program 1 times [2021-10-28 23:57:59,865 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:57:59,866 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [903150028] [2021-10-28 23:57:59,873 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:57:59,873 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:57:59,902 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:57:59,958 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:57:59,958 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:57:59,959 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [903150028] [2021-10-28 23:57:59,959 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [903150028] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:57:59,959 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:57:59,959 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 23:57:59,960 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2076832675] [2021-10-28 23:57:59,960 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 23:57:59,961 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:57:59,962 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 23:57:59,962 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 23:57:59,962 INFO L87 Difference]: Start difference. First operand 262 states and 373 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,056 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:00,056 INFO L93 Difference]: Finished difference Result 698 states and 980 transitions. [2021-10-28 23:58:00,057 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-10-28 23:58:00,057 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-10-28 23:58:00,058 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:00,061 INFO L225 Difference]: With dead ends: 698 [2021-10-28 23:58:00,061 INFO L226 Difference]: Without dead ends: 442 [2021-10-28 23:58:00,064 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 23:58:00,065 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 442 states. [2021-10-28 23:58:00,091 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 442 to 286. [2021-10-28 23:58:00,092 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 286 states, 285 states have (on average 1.3929824561403508) internal successors, (397), 285 states have internal predecessors, (397), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,094 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 286 states to 286 states and 397 transitions. [2021-10-28 23:58:00,094 INFO L78 Accepts]: Start accepts. Automaton has 286 states and 397 transitions. Word has length 34 [2021-10-28 23:58:00,096 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:00,096 INFO L470 AbstractCegarLoop]: Abstraction has 286 states and 397 transitions. [2021-10-28 23:58:00,096 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,097 INFO L276 IsEmpty]: Start isEmpty. Operand 286 states and 397 transitions. [2021-10-28 23:58:00,099 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-10-28 23:58:00,099 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:00,099 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:00,100 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-28 23:58:00,100 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:00,100 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:00,100 INFO L85 PathProgramCache]: Analyzing trace with hash 183925206, now seen corresponding path program 1 times [2021-10-28 23:58:00,101 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:00,101 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [6344809] [2021-10-28 23:58:00,102 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:00,102 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:00,126 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:00,188 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:00,188 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:00,189 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [6344809] [2021-10-28 23:58:00,189 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [6344809] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:00,189 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:00,189 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 23:58:00,189 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1248201057] [2021-10-28 23:58:00,190 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 23:58:00,190 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:00,191 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 23:58:00,191 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 23:58:00,191 INFO L87 Difference]: Start difference. First operand 286 states and 397 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,319 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:00,320 INFO L93 Difference]: Finished difference Result 782 states and 1065 transitions. [2021-10-28 23:58:00,320 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-10-28 23:58:00,320 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-10-28 23:58:00,321 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:00,325 INFO L225 Difference]: With dead ends: 782 [2021-10-28 23:58:00,325 INFO L226 Difference]: Without dead ends: 502 [2021-10-28 23:58:00,326 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-10-28 23:58:00,327 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 502 states. [2021-10-28 23:58:00,370 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 502 to 302. [2021-10-28 23:58:00,371 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.372093023255814) internal successors, (413), 301 states have internal predecessors, (413), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,373 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 413 transitions. [2021-10-28 23:58:00,374 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 413 transitions. Word has length 34 [2021-10-28 23:58:00,374 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:00,374 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 413 transitions. [2021-10-28 23:58:00,375 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,375 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 413 transitions. [2021-10-28 23:58:00,376 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2021-10-28 23:58:00,376 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:00,376 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:00,377 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-28 23:58:00,377 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:00,377 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:00,378 INFO L85 PathProgramCache]: Analyzing trace with hash -1095938472, now seen corresponding path program 1 times [2021-10-28 23:58:00,378 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:00,378 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [633813579] [2021-10-28 23:58:00,379 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:00,379 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:00,398 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:00,428 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:00,429 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:00,429 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [633813579] [2021-10-28 23:58:00,429 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [633813579] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:00,430 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:00,430 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 23:58:00,430 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1475098906] [2021-10-28 23:58:00,431 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:58:00,431 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:00,432 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:58:00,432 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:00,432 INFO L87 Difference]: Start difference. First operand 302 states and 413 transitions. Second operand has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,502 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:00,502 INFO L93 Difference]: Finished difference Result 814 states and 1123 transitions. [2021-10-28 23:58:00,502 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:58:00,503 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 34 [2021-10-28 23:58:00,503 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:00,506 INFO L225 Difference]: With dead ends: 814 [2021-10-28 23:58:00,506 INFO L226 Difference]: Without dead ends: 518 [2021-10-28 23:58:00,507 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:00,508 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 518 states. [2021-10-28 23:58:00,550 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 518 to 516. [2021-10-28 23:58:00,552 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 516 states, 515 states have (on average 1.3572815533980582) internal successors, (699), 515 states have internal predecessors, (699), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,554 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 516 states to 516 states and 699 transitions. [2021-10-28 23:58:00,554 INFO L78 Accepts]: Start accepts. Automaton has 516 states and 699 transitions. Word has length 34 [2021-10-28 23:58:00,555 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:00,555 INFO L470 AbstractCegarLoop]: Abstraction has 516 states and 699 transitions. [2021-10-28 23:58:00,555 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 11.333333333333334) internal successors, (34), 2 states have internal predecessors, (34), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,555 INFO L276 IsEmpty]: Start isEmpty. Operand 516 states and 699 transitions. [2021-10-28 23:58:00,556 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-28 23:58:00,556 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:00,557 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:00,557 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-28 23:58:00,557 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:00,558 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:00,558 INFO L85 PathProgramCache]: Analyzing trace with hash 420497238, now seen corresponding path program 1 times [2021-10-28 23:58:00,558 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:00,558 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2025891018] [2021-10-28 23:58:00,558 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:00,559 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:00,575 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:00,619 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:00,620 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:00,620 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2025891018] [2021-10-28 23:58:00,620 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2025891018] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:00,620 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:00,620 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 23:58:00,621 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [180441964] [2021-10-28 23:58:00,621 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 23:58:00,621 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:00,622 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 23:58:00,622 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 23:58:00,622 INFO L87 Difference]: Start difference. First operand 516 states and 699 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:00,937 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:00,937 INFO L93 Difference]: Finished difference Result 1686 states and 2260 transitions. [2021-10-28 23:58:00,938 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-10-28 23:58:00,938 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-28 23:58:00,939 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:00,946 INFO L225 Difference]: With dead ends: 1686 [2021-10-28 23:58:00,946 INFO L226 Difference]: Without dead ends: 1176 [2021-10-28 23:58:00,948 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-10-28 23:58:00,949 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1176 states. [2021-10-28 23:58:00,999 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1176 to 516. [2021-10-28 23:58:01,001 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 516 states, 515 states have (on average 1.3339805825242719) internal successors, (687), 515 states have internal predecessors, (687), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,003 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 516 states to 516 states and 687 transitions. [2021-10-28 23:58:01,004 INFO L78 Accepts]: Start accepts. Automaton has 516 states and 687 transitions. Word has length 35 [2021-10-28 23:58:01,004 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:01,004 INFO L470 AbstractCegarLoop]: Abstraction has 516 states and 687 transitions. [2021-10-28 23:58:01,004 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,004 INFO L276 IsEmpty]: Start isEmpty. Operand 516 states and 687 transitions. [2021-10-28 23:58:01,006 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2021-10-28 23:58:01,006 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:01,006 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:01,007 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-28 23:58:01,007 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:01,007 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:01,008 INFO L85 PathProgramCache]: Analyzing trace with hash 325446782, now seen corresponding path program 1 times [2021-10-28 23:58:01,008 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:01,008 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1795039400] [2021-10-28 23:58:01,008 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:01,008 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:01,024 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:01,050 INFO L134 CoverageAnalysis]: Checked inductivity of 13 backedges. 10 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-28 23:58:01,050 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:01,050 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1795039400] [2021-10-28 23:58:01,050 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1795039400] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:01,051 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:01,051 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 23:58:01,051 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [18357347] [2021-10-28 23:58:01,051 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:58:01,052 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:01,052 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:58:01,052 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:01,053 INFO L87 Difference]: Start difference. First operand 516 states and 687 transitions. Second operand has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,138 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:01,138 INFO L93 Difference]: Finished difference Result 606 states and 804 transitions. [2021-10-28 23:58:01,138 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:58:01,139 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 52 [2021-10-28 23:58:01,139 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:01,141 INFO L225 Difference]: With dead ends: 606 [2021-10-28 23:58:01,141 INFO L226 Difference]: Without dead ends: 256 [2021-10-28 23:58:01,142 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:01,143 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 256 states. [2021-10-28 23:58:01,168 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 256 to 256. [2021-10-28 23:58:01,169 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 256 states, 255 states have (on average 1.2823529411764707) internal successors, (327), 255 states have internal predecessors, (327), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,171 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 256 states to 256 states and 327 transitions. [2021-10-28 23:58:01,171 INFO L78 Accepts]: Start accepts. Automaton has 256 states and 327 transitions. Word has length 52 [2021-10-28 23:58:01,172 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:01,172 INFO L470 AbstractCegarLoop]: Abstraction has 256 states and 327 transitions. [2021-10-28 23:58:01,172 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 16.666666666666668) internal successors, (50), 3 states have internal predecessors, (50), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,172 INFO L276 IsEmpty]: Start isEmpty. Operand 256 states and 327 transitions. [2021-10-28 23:58:01,174 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-28 23:58:01,174 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:01,174 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:01,174 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-28 23:58:01,175 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:01,175 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:01,175 INFO L85 PathProgramCache]: Analyzing trace with hash 507471461, now seen corresponding path program 1 times [2021-10-28 23:58:01,176 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:01,176 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [95702172] [2021-10-28 23:58:01,176 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:01,176 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:01,228 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:01,311 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:01,312 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:01,312 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [95702172] [2021-10-28 23:58:01,312 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [95702172] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:01,312 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:01,312 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 23:58:01,313 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1026318568] [2021-10-28 23:58:01,313 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 23:58:01,313 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:01,314 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 23:58:01,314 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-10-28 23:58:01,314 INFO L87 Difference]: Start difference. First operand 256 states and 327 transitions. Second operand has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,673 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:01,673 INFO L93 Difference]: Finished difference Result 1330 states and 1690 transitions. [2021-10-28 23:58:01,674 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-10-28 23:58:01,674 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-28 23:58:01,675 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:01,683 INFO L225 Difference]: With dead ends: 1330 [2021-10-28 23:58:01,683 INFO L226 Difference]: Without dead ends: 1080 [2021-10-28 23:58:01,684 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=47, Invalid=85, Unknown=0, NotChecked=0, Total=132 [2021-10-28 23:58:01,686 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1080 states. [2021-10-28 23:58:01,740 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1080 to 472. [2021-10-28 23:58:01,742 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 472 states, 471 states have (on average 1.2632696390658174) internal successors, (595), 471 states have internal predecessors, (595), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,744 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 472 states to 472 states and 595 transitions. [2021-10-28 23:58:01,744 INFO L78 Accepts]: Start accepts. Automaton has 472 states and 595 transitions. Word has length 56 [2021-10-28 23:58:01,744 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:01,744 INFO L470 AbstractCegarLoop]: Abstraction has 472 states and 595 transitions. [2021-10-28 23:58:01,745 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 9.333333333333334) internal successors, (56), 6 states have internal predecessors, (56), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,745 INFO L276 IsEmpty]: Start isEmpty. Operand 472 states and 595 transitions. [2021-10-28 23:58:01,745 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-28 23:58:01,746 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:01,746 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:01,746 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-10-28 23:58:01,746 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:01,747 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:01,747 INFO L85 PathProgramCache]: Analyzing trace with hash 1208536039, now seen corresponding path program 1 times [2021-10-28 23:58:01,747 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:01,747 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [578494841] [2021-10-28 23:58:01,747 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:01,747 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:01,792 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:01,852 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-10-28 23:58:01,852 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:01,853 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [578494841] [2021-10-28 23:58:01,853 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [578494841] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:01,853 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:01,853 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 23:58:01,853 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1470364398] [2021-10-28 23:58:01,854 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 23:58:01,854 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:01,855 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 23:58:01,855 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 23:58:01,856 INFO L87 Difference]: Start difference. First operand 472 states and 595 transitions. Second operand has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,942 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:01,942 INFO L93 Difference]: Finished difference Result 816 states and 1012 transitions. [2021-10-28 23:58:01,942 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 23:58:01,943 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-28 23:58:01,943 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:01,943 INFO L225 Difference]: With dead ends: 816 [2021-10-28 23:58:01,943 INFO L226 Difference]: Without dead ends: 0 [2021-10-28 23:58:01,944 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-28 23:58:01,944 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-28 23:58:01,944 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-28 23:58:01,945 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,945 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-28 23:58:01,945 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 56 [2021-10-28 23:58:01,945 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:01,945 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-28 23:58:01,945 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.8) internal successors, (49), 5 states have internal predecessors, (49), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:01,945 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-28 23:58:01,946 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-28 23:58:01,948 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 23:58:01,948 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 23:58:01,949 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 23:58:01,949 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-10-28 23:58:01,951 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-28 23:58:01,956 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,958 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,958 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,959 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,959 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,961 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,961 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,962 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,963 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,963 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:01,964 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,067 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,067 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,068 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,291 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,292 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,293 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,420 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,421 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,449 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,450 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,451 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,468 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,469 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,701 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,702 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,703 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,724 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,724 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,725 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,893 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,894 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,894 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,895 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,904 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,905 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:02,906 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,253 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,254 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,550 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,827 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,828 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,985 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,986 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,987 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,987 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,990 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:03,991 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,174 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,175 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,175 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,178 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,191 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,193 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,468 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:04,469 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:10,447 INFO L853 garLoopResultBuilder]: At program point L101-4(lines 96 104) the Hoare annotation is: false [2021-10-28 23:58:10,447 INFO L853 garLoopResultBuilder]: At program point L101-5(lines 96 104) the Hoare annotation is: false [2021-10-28 23:58:10,447 INFO L853 garLoopResultBuilder]: At program point L101-6(lines 96 104) the Hoare annotation is: false [2021-10-28 23:58:10,447 INFO L853 garLoopResultBuilder]: At program point L101-7(lines 96 104) the Hoare annotation is: false [2021-10-28 23:58:10,448 INFO L853 garLoopResultBuilder]: At program point L101-8(lines 96 104) the Hoare annotation is: false [2021-10-28 23:58:10,448 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 193) no Hoare annotation was computed. [2021-10-28 23:58:10,448 INFO L860 garLoopResultBuilder]: At program point L996(lines 977 999) the Hoare annotation is: true [2021-10-28 23:58:10,448 INFO L857 garLoopResultBuilder]: For program point L336(lines 336 353) no Hoare annotation was computed. [2021-10-28 23:58:10,448 INFO L857 garLoopResultBuilder]: For program point L336-1(lines 336 353) no Hoare annotation was computed. [2021-10-28 23:58:10,449 INFO L857 garLoopResultBuilder]: For program point L336-2(lines 336 353) no Hoare annotation was computed. [2021-10-28 23:58:10,449 INFO L857 garLoopResultBuilder]: For program point L171(lines 171 184) no Hoare annotation was computed. [2021-10-28 23:58:10,449 INFO L853 garLoopResultBuilder]: At program point L171-1(lines 1 999) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse8 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse9 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse2 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse7 .cse9) (and .cse0 .cse5 .cse2 .cse6 (<= 2 ~waterLevel~0) .cse3) (and .cse0 .cse1 .cse3 .cse8 .cse4 .cse9))) [2021-10-28 23:58:10,449 INFO L857 garLoopResultBuilder]: For program point L171-2(lines 171 184) no Hoare annotation was computed. [2021-10-28 23:58:10,449 INFO L853 garLoopResultBuilder]: At program point L171-3(lines 1 999) the Hoare annotation is: false [2021-10-28 23:58:10,449 INFO L857 garLoopResultBuilder]: For program point L171-4(lines 171 184) no Hoare annotation was computed. [2021-10-28 23:58:10,450 INFO L853 garLoopResultBuilder]: At program point L171-5(lines 1 999) the Hoare annotation is: false [2021-10-28 23:58:10,450 INFO L853 garLoopResultBuilder]: At program point L964(lines 960 966) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-10-28 23:58:10,450 INFO L853 garLoopResultBuilder]: At program point L900(lines 895 903) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-10-28 23:58:10,450 INFO L857 garLoopResultBuilder]: For program point L141(lines 141 147) no Hoare annotation was computed. [2021-10-28 23:58:10,450 INFO L857 garLoopResultBuilder]: For program point L141-1(lines 141 147) no Hoare annotation was computed. [2021-10-28 23:58:10,450 INFO L857 garLoopResultBuilder]: For program point L141-2(lines 141 147) no Hoare annotation was computed. [2021-10-28 23:58:10,451 INFO L857 garLoopResultBuilder]: For program point L141-3(lines 141 147) no Hoare annotation was computed. [2021-10-28 23:58:10,451 INFO L857 garLoopResultBuilder]: For program point L141-4(lines 141 147) no Hoare annotation was computed. [2021-10-28 23:58:10,451 INFO L857 garLoopResultBuilder]: For program point L141-5(lines 141 147) no Hoare annotation was computed. [2021-10-28 23:58:10,451 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 193) no Hoare annotation was computed. [2021-10-28 23:58:10,451 INFO L857 garLoopResultBuilder]: For program point L373(lines 373 379) no Hoare annotation was computed. [2021-10-28 23:58:10,451 INFO L857 garLoopResultBuilder]: For program point L340(lines 340 348) no Hoare annotation was computed. [2021-10-28 23:58:10,452 INFO L857 garLoopResultBuilder]: For program point L373-2(lines 373 379) no Hoare annotation was computed. [2021-10-28 23:58:10,452 INFO L857 garLoopResultBuilder]: For program point L340-1(lines 340 348) no Hoare annotation was computed. [2021-10-28 23:58:10,452 INFO L857 garLoopResultBuilder]: For program point L340-2(lines 340 348) no Hoare annotation was computed. [2021-10-28 23:58:10,452 INFO L857 garLoopResultBuilder]: For program point L241(lines 241 254) no Hoare annotation was computed. [2021-10-28 23:58:10,452 INFO L857 garLoopResultBuilder]: For program point L373-4(lines 373 379) no Hoare annotation was computed. [2021-10-28 23:58:10,452 INFO L857 garLoopResultBuilder]: For program point L175(lines 175 181) no Hoare annotation was computed. [2021-10-28 23:58:10,452 INFO L857 garLoopResultBuilder]: For program point L373-6(lines 373 379) no Hoare annotation was computed. [2021-10-28 23:58:10,453 INFO L857 garLoopResultBuilder]: For program point L175-2(lines 175 181) no Hoare annotation was computed. [2021-10-28 23:58:10,453 INFO L857 garLoopResultBuilder]: For program point L373-8(lines 373 379) no Hoare annotation was computed. [2021-10-28 23:58:10,453 INFO L857 garLoopResultBuilder]: For program point L76(lines 76 80) no Hoare annotation was computed. [2021-10-28 23:58:10,453 INFO L857 garLoopResultBuilder]: For program point L373-10(lines 373 379) no Hoare annotation was computed. [2021-10-28 23:58:10,453 INFO L857 garLoopResultBuilder]: For program point L175-4(lines 175 181) no Hoare annotation was computed. [2021-10-28 23:58:10,453 INFO L853 garLoopResultBuilder]: At program point L407(lines 402 410) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_isPumpRunning_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse4 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 (= 1 ~systemActive~0) .cse3 (<= 1 ~waterLevel~0) .cse4) (and .cse0 .cse1 .cse2 .cse3 (= 0 ~systemActive~0) .cse4))) [2021-10-28 23:58:10,454 INFO L853 garLoopResultBuilder]: At program point L407-1(lines 402 410) the Hoare annotation is: false [2021-10-28 23:58:10,454 INFO L853 garLoopResultBuilder]: At program point L407-2(lines 402 410) the Hoare annotation is: false [2021-10-28 23:58:10,454 INFO L857 garLoopResultBuilder]: For program point L475(lines 475 479) no Hoare annotation was computed. [2021-10-28 23:58:10,454 INFO L857 garLoopResultBuilder]: For program point L475-2(lines 475 479) no Hoare annotation was computed. [2021-10-28 23:58:10,454 INFO L857 garLoopResultBuilder]: For program point L475-3(lines 475 479) no Hoare annotation was computed. [2021-10-28 23:58:10,454 INFO L857 garLoopResultBuilder]: For program point L310(lines 310 327) no Hoare annotation was computed. [2021-10-28 23:58:10,455 INFO L857 garLoopResultBuilder]: For program point L475-5(lines 475 479) no Hoare annotation was computed. [2021-10-28 23:58:10,455 INFO L857 garLoopResultBuilder]: For program point L310-1(lines 310 327) no Hoare annotation was computed. [2021-10-28 23:58:10,455 INFO L857 garLoopResultBuilder]: For program point L475-6(lines 475 479) no Hoare annotation was computed. [2021-10-28 23:58:10,455 INFO L857 garLoopResultBuilder]: For program point L310-2(lines 310 327) no Hoare annotation was computed. [2021-10-28 23:58:10,455 INFO L857 garLoopResultBuilder]: For program point L310-3(lines 310 327) no Hoare annotation was computed. [2021-10-28 23:58:10,455 INFO L857 garLoopResultBuilder]: For program point L475-8(lines 475 479) no Hoare annotation was computed. [2021-10-28 23:58:10,456 INFO L857 garLoopResultBuilder]: For program point L310-4(lines 310 327) no Hoare annotation was computed. [2021-10-28 23:58:10,456 INFO L857 garLoopResultBuilder]: For program point L310-5(lines 310 327) no Hoare annotation was computed. [2021-10-28 23:58:10,456 INFO L853 garLoopResultBuilder]: At program point L278(lines 277 296) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse3 (= 0 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse2 (= ~methaneLevelCritical~0 1)) (.cse6 (<= 1 ~waterLevel~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse4 .cse3) (and .cse0 .cse5 .cse2 .cse6))) [2021-10-28 23:58:10,456 INFO L857 garLoopResultBuilder]: For program point L278-1(lines 278 284) no Hoare annotation was computed. [2021-10-28 23:58:10,456 INFO L857 garLoopResultBuilder]: For program point L212(lines 211 258) no Hoare annotation was computed. [2021-10-28 23:58:10,456 INFO L853 garLoopResultBuilder]: At program point L278-2(lines 277 296) the Hoare annotation is: false [2021-10-28 23:58:10,457 INFO L853 garLoopResultBuilder]: At program point L278-3(lines 277 296) the Hoare annotation is: false [2021-10-28 23:58:10,457 INFO L853 garLoopResultBuilder]: At program point L146(lines 137 150) the Hoare annotation is: false [2021-10-28 23:58:10,457 INFO L853 garLoopResultBuilder]: At program point L146-1(lines 137 150) the Hoare annotation is: (let ((.cse0 (not (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (.cse5 (<= 1 ~waterLevel~0)) (.cse4 (= ~methaneLevelCritical~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse5) (and .cse1 .cse2 .cse7 .cse3 .cse4) (and .cse1 .cse2 .cse6 .cse7 .cse3))) [2021-10-28 23:58:10,457 INFO L853 garLoopResultBuilder]: At program point L146-2(lines 137 150) the Hoare annotation is: false [2021-10-28 23:58:10,457 INFO L853 garLoopResultBuilder]: At program point L146-3(lines 137 150) the Hoare annotation is: false [2021-10-28 23:58:10,458 INFO L853 garLoopResultBuilder]: At program point L146-4(lines 137 150) the Hoare annotation is: false [2021-10-28 23:58:10,458 INFO L853 garLoopResultBuilder]: At program point L146-5(lines 137 150) the Hoare annotation is: false [2021-10-28 23:58:10,458 INFO L857 garLoopResultBuilder]: For program point L213(lines 213 217) no Hoare annotation was computed. [2021-10-28 23:58:10,458 INFO L857 garLoopResultBuilder]: For program point L247(lines 247 253) no Hoare annotation was computed. [2021-10-28 23:58:10,458 INFO L853 garLoopResultBuilder]: At program point L247-1(lines 278 284) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse7 .cse3 .cse5) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 .cse7 .cse3))) [2021-10-28 23:58:10,458 INFO L857 garLoopResultBuilder]: For program point L314(lines 314 322) no Hoare annotation was computed. [2021-10-28 23:58:10,459 INFO L857 garLoopResultBuilder]: For program point L314-1(lines 314 322) no Hoare annotation was computed. [2021-10-28 23:58:10,459 INFO L857 garLoopResultBuilder]: For program point L314-2(lines 314 322) no Hoare annotation was computed. [2021-10-28 23:58:10,459 INFO L857 garLoopResultBuilder]: For program point L314-3(lines 314 322) no Hoare annotation was computed. [2021-10-28 23:58:10,459 INFO L857 garLoopResultBuilder]: For program point L314-4(lines 314 322) no Hoare annotation was computed. [2021-10-28 23:58:10,459 INFO L857 garLoopResultBuilder]: For program point L314-5(lines 314 322) no Hoare annotation was computed. [2021-10-28 23:58:10,459 INFO L853 garLoopResultBuilder]: At program point L481(lines 466 484) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_isLowWaterLevel_#res| 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (< 0 (+ ULTIMATE.start_isLowWaterLevel_~tmp~6 1))) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ULTIMATE.start_isLowWaterLevel_~tmp___0~3 1)) (.cse5 (<= 1 ~waterLevel~0)) (.cse6 (<= |ULTIMATE.start_isLowWaterSensorDry_#res| 0)) (.cse7 (<= 0 |ULTIMATE.start_isLowWaterSensorDry_#res|)) (.cse8 (<= ULTIMATE.start_isLowWaterLevel_~tmp~6 0))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~methaneLevelCritical~0 1) .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 (= ~methaneLevelCritical~0 0) .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8))) [2021-10-28 23:58:10,460 INFO L853 garLoopResultBuilder]: At program point L481-1(lines 466 484) the Hoare annotation is: false [2021-10-28 23:58:10,460 INFO L853 garLoopResultBuilder]: At program point L481-2(lines 466 484) the Hoare annotation is: false [2021-10-28 23:58:10,460 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-28 23:58:10,460 INFO L853 garLoopResultBuilder]: At program point L285(lines 285 291) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 (<= 2 ~waterLevel~0) .cse3))) [2021-10-28 23:58:10,460 INFO L853 garLoopResultBuilder]: At program point L285-1(lines 285 291) the Hoare annotation is: false [2021-10-28 23:58:10,461 INFO L853 garLoopResultBuilder]: At program point L285-2(lines 285 291) the Hoare annotation is: false [2021-10-28 23:58:10,461 INFO L857 garLoopResultBuilder]: For program point L88(lines 88 92) no Hoare annotation was computed. [2021-10-28 23:58:10,461 INFO L857 garLoopResultBuilder]: For program point L221(lines 221 227) no Hoare annotation was computed. [2021-10-28 23:58:10,461 INFO L853 garLoopResultBuilder]: At program point L221-1(lines 221 227) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= ULTIMATE.start___utac_acc__Specification1_spec__1_~tmp~0 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse8 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse9 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse2 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse7 .cse9) (and .cse0 .cse5 .cse2 .cse6 (<= 2 ~waterLevel~0) .cse3) (and .cse0 .cse1 .cse3 .cse8 .cse4 .cse9))) [2021-10-28 23:58:10,461 INFO L853 garLoopResultBuilder]: At program point L156(lines 151 159) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (<= 1 ~waterLevel~0)) (.cse3 (<= |ULTIMATE.start_isLowWaterSensorDry_#res| 0)) (.cse4 (<= 0 |ULTIMATE.start_isLowWaterSensorDry_#res|))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 1) .cse2 .cse3 .cse4) (and .cse0 (= ~methaneLevelCritical~0 0) .cse1 .cse2 .cse3 .cse4))) [2021-10-28 23:58:10,461 INFO L853 garLoopResultBuilder]: At program point L156-1(lines 151 159) the Hoare annotation is: false [2021-10-28 23:58:10,462 INFO L853 garLoopResultBuilder]: At program point L156-2(lines 151 159) the Hoare annotation is: false [2021-10-28 23:58:10,462 INFO L853 garLoopResultBuilder]: At program point L916-2(lines 916 930) the Hoare annotation is: false [2021-10-28 23:58:10,462 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-28 23:58:10,462 INFO L857 garLoopResultBuilder]: For program point L917(line 917) no Hoare annotation was computed. [2021-10-28 23:58:10,462 INFO L857 garLoopResultBuilder]: For program point L489(lines 489 495) no Hoare annotation was computed. [2021-10-28 23:58:10,462 INFO L853 garLoopResultBuilder]: At program point L489-1(lines 489 495) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 0)) (and .cse0 .cse1 (= ~methaneLevelCritical~0 1)))) [2021-10-28 23:58:10,463 INFO L857 garLoopResultBuilder]: For program point L456(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,463 INFO L857 garLoopResultBuilder]: For program point L456-2(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,463 INFO L857 garLoopResultBuilder]: For program point L456-3(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,463 INFO L857 garLoopResultBuilder]: For program point L456-5(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,463 INFO L857 garLoopResultBuilder]: For program point L456-6(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,463 INFO L857 garLoopResultBuilder]: For program point L456-8(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,463 INFO L857 garLoopResultBuilder]: For program point L456-9(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,464 INFO L857 garLoopResultBuilder]: For program point L456-11(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,464 INFO L857 garLoopResultBuilder]: For program point L456-12(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,464 INFO L857 garLoopResultBuilder]: For program point L456-14(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,464 INFO L857 garLoopResultBuilder]: For program point L456-15(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,464 INFO L857 garLoopResultBuilder]: For program point L456-17(lines 456 460) no Hoare annotation was computed. [2021-10-28 23:58:10,464 INFO L853 garLoopResultBuilder]: At program point L259(lines 210 260) the Hoare annotation is: false [2021-10-28 23:58:10,465 INFO L857 garLoopResultBuilder]: For program point L193(line 193) no Hoare annotation was computed. [2021-10-28 23:58:10,465 INFO L857 garLoopResultBuilder]: For program point L193-1(line 193) no Hoare annotation was computed. [2021-10-28 23:58:10,465 INFO L857 garLoopResultBuilder]: For program point L193-2(line 193) no Hoare annotation was computed. [2021-10-28 23:58:10,465 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-28 23:58:10,465 INFO L857 garLoopResultBuilder]: For program point L920(lines 920 924) no Hoare annotation was computed. [2021-10-28 23:58:10,465 INFO L857 garLoopResultBuilder]: For program point L920-1(lines 278 284) no Hoare annotation was computed. [2021-10-28 23:58:10,466 INFO L857 garLoopResultBuilder]: For program point L987(lines 987 994) no Hoare annotation was computed. [2021-10-28 23:58:10,466 INFO L860 garLoopResultBuilder]: At program point L987-1(lines 987 994) the Hoare annotation is: true [2021-10-28 23:58:10,466 INFO L857 garLoopResultBuilder]: For program point L64(lines 64 68) no Hoare annotation was computed. [2021-10-28 23:58:10,466 INFO L857 garLoopResultBuilder]: For program point L64-3(lines 64 68) no Hoare annotation was computed. [2021-10-28 23:58:10,466 INFO L857 garLoopResultBuilder]: For program point L64-6(lines 64 68) no Hoare annotation was computed. [2021-10-28 23:58:10,466 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-28 23:58:10,467 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 193) no Hoare annotation was computed. [2021-10-28 23:58:10,467 INFO L853 garLoopResultBuilder]: At program point L462(lines 447 465) the Hoare annotation is: false [2021-10-28 23:58:10,467 INFO L853 garLoopResultBuilder]: At program point L462-1(lines 447 465) the Hoare annotation is: (let ((.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~2 0)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse6 (<= 1 ~waterLevel~0)) (.cse7 (not (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0))) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse9 (<= 2 ~waterLevel~0)) (.cse4 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse1 .cse8 .cse2 .cse3 .cse4 .cse6 .cse7) (and .cse0 .cse1 .cse9 .cse4 .cse5) (and .cse0 .cse1 .cse8 .cse9 .cse4))) [2021-10-28 23:58:10,467 INFO L853 garLoopResultBuilder]: At program point L462-2(lines 447 465) the Hoare annotation is: false [2021-10-28 23:58:10,467 INFO L853 garLoopResultBuilder]: At program point L462-3(lines 447 465) the Hoare annotation is: false [2021-10-28 23:58:10,467 INFO L853 garLoopResultBuilder]: At program point L462-4(lines 447 465) the Hoare annotation is: false [2021-10-28 23:58:10,468 INFO L853 garLoopResultBuilder]: At program point L462-5(lines 447 465) the Hoare annotation is: false [2021-10-28 23:58:10,468 INFO L857 garLoopResultBuilder]: For program point L231(lines 231 237) no Hoare annotation was computed. [2021-10-28 23:58:10,468 INFO L853 garLoopResultBuilder]: At program point L231-1(lines 231 237) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse4 (<= 1 ~waterLevel~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse6) (and .cse0 .cse7 .cse3 .cse5) (and .cse0 .cse1 .cse2 .cse6) (and .cse0 .cse1 .cse3 .cse5 .cse4) (and .cse0 .cse2 .cse7 .cse3))) [2021-10-28 23:58:10,468 INFO L853 garLoopResultBuilder]: At program point L892(lines 1 999) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= 1 ~systemActive~0) (<= 1 ~waterLevel~0)) [2021-10-28 23:58:10,468 INFO L853 garLoopResultBuilder]: At program point L398(lines 391 401) the Hoare annotation is: false [2021-10-28 23:58:10,468 INFO L853 garLoopResultBuilder]: At program point L398-1(lines 391 401) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 (= |ULTIMATE.start_isMethaneAlarm_#res| 1) (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 .cse3))) [2021-10-28 23:58:10,469 INFO L853 garLoopResultBuilder]: At program point L398-2(lines 391 401) the Hoare annotation is: false [2021-10-28 23:58:10,469 INFO L853 garLoopResultBuilder]: At program point L398-3(lines 391 401) the Hoare annotation is: false [2021-10-28 23:58:10,469 INFO L853 garLoopResultBuilder]: At program point L398-4(lines 391 401) the Hoare annotation is: false [2021-10-28 23:58:10,469 INFO L853 garLoopResultBuilder]: At program point L398-5(lines 391 401) the Hoare annotation is: false [2021-10-28 23:58:10,469 INFO L853 garLoopResultBuilder]: At program point L101(lines 96 104) the Hoare annotation is: false [2021-10-28 23:58:10,469 INFO L853 garLoopResultBuilder]: At program point L101-1(lines 96 104) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~methaneLevelCritical~0 1) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)))) [2021-10-28 23:58:10,470 INFO L853 garLoopResultBuilder]: At program point L101-2(lines 96 104) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 1)) (.cse5 (<= 1 ~waterLevel~0)) (.cse8 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse7) (and .cse0 .cse1 .cse4 .cse6 .cse5 .cse8) (and .cse0 .cse2 .cse3 (<= 2 ~waterLevel~0) .cse4))) [2021-10-28 23:58:10,470 INFO L853 garLoopResultBuilder]: At program point L101-3(lines 96 104) the Hoare annotation is: false [2021-10-28 23:58:10,473 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:10,475 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-28 23:58:10,506 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.10 11:58:10 BoogieIcfgContainer [2021-10-28 23:58:10,506 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-28 23:58:10,507 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-28 23:58:10,507 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-28 23:58:10,507 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-28 23:58:10,508 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 11:57:57" (3/4) ... [2021-10-28 23:58:10,511 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-28 23:58:10,531 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-28 23:58:10,533 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-28 23:58:10,534 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-28 23:58:10,536 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-28 23:58:10,537 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-28 23:58:10,539 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 23:58:10,540 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 23:58:10,567 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) [2021-10-28 23:58:10,568 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) [2021-10-28 23:58:10,571 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1)) || ((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-28 23:58:10,572 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) || (((((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) [2021-10-28 23:58:10,573 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-28 23:58:10,573 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1) [2021-10-28 23:58:10,574 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((\result == 1 && splverifierCounter == 0) && 0 < tmp + 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) || (((((((((\result == 1 && splverifierCounter == 0) && methaneLevelCritical == 0) && 0 < tmp + 1) && 1 == systemActive) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) [2021-10-28 23:58:10,574 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && !(tmp == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && 1 <= waterLevel) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-28 23:58:10,576 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) [2021-10-28 23:58:10,577 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 1) && methaneLevelCritical == 1) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) [2021-10-28 23:58:10,637 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/witness.graphml [2021-10-28 23:58:10,638 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-28 23:58:10,639 INFO L168 Benchmark]: Toolchain (without parser) took 14636.09 ms. Allocated memory was 102.8 MB in the beginning and 247.5 MB in the end (delta: 144.7 MB). Free memory was 65.1 MB in the beginning and 103.9 MB in the end (delta: -38.8 MB). Peak memory consumption was 104.6 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:10,640 INFO L168 Benchmark]: CDTParser took 0.29 ms. Allocated memory is still 102.8 MB. Free memory was 73.0 MB in the beginning and 73.0 MB in the end (delta: 31.3 kB). There was no memory consumed. Max. memory is 16.1 GB. [2021-10-28 23:58:10,641 INFO L168 Benchmark]: CACSL2BoogieTranslator took 589.93 ms. Allocated memory is still 102.8 MB. Free memory was 65.1 MB in the beginning and 62.9 MB in the end (delta: 2.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:10,641 INFO L168 Benchmark]: Boogie Procedure Inliner took 96.18 ms. Allocated memory is still 102.8 MB. Free memory was 62.9 MB in the beginning and 58.7 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:10,641 INFO L168 Benchmark]: Boogie Preprocessor took 59.01 ms. Allocated memory is still 102.8 MB. Free memory was 58.7 MB in the beginning and 55.8 MB in the end (delta: 3.0 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:10,642 INFO L168 Benchmark]: RCFGBuilder took 993.29 ms. Allocated memory was 102.8 MB in the beginning and 140.5 MB in the end (delta: 37.7 MB). Free memory was 55.8 MB in the beginning and 83.8 MB in the end (delta: -28.0 MB). Peak memory consumption was 23.8 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:10,642 INFO L168 Benchmark]: TraceAbstraction took 12759.10 ms. Allocated memory was 140.5 MB in the beginning and 247.5 MB in the end (delta: 107.0 MB). Free memory was 83.8 MB in the beginning and 116.5 MB in the end (delta: -32.7 MB). Peak memory consumption was 91.8 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:10,643 INFO L168 Benchmark]: Witness Printer took 130.98 ms. Allocated memory is still 247.5 MB. Free memory was 116.5 MB in the beginning and 103.9 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:10,645 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.29 ms. Allocated memory is still 102.8 MB. Free memory was 73.0 MB in the beginning and 73.0 MB in the end (delta: 31.3 kB). There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 589.93 ms. Allocated memory is still 102.8 MB. Free memory was 65.1 MB in the beginning and 62.9 MB in the end (delta: 2.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 96.18 ms. Allocated memory is still 102.8 MB. Free memory was 62.9 MB in the beginning and 58.7 MB in the end (delta: 4.2 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 59.01 ms. Allocated memory is still 102.8 MB. Free memory was 58.7 MB in the beginning and 55.8 MB in the end (delta: 3.0 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * RCFGBuilder took 993.29 ms. Allocated memory was 102.8 MB in the beginning and 140.5 MB in the end (delta: 37.7 MB). Free memory was 55.8 MB in the beginning and 83.8 MB in the end (delta: -28.0 MB). Peak memory consumption was 23.8 MB. Max. memory is 16.1 GB. * TraceAbstraction took 12759.10 ms. Allocated memory was 140.5 MB in the beginning and 247.5 MB in the end (delta: 107.0 MB). Free memory was 83.8 MB in the beginning and 116.5 MB in the end (delta: -32.7 MB). Peak memory consumption was 91.8 MB. Max. memory is 16.1 GB. * Witness Printer took 130.98 ms. Allocated memory is still 247.5 MB. Free memory was 116.5 MB in the beginning and 103.9 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 193]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 193]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 193]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 137 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 12.6s, OverallIterations: 13, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 8.4s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 1545 SDtfs, 2185 SDslu, 2768 SDs, 0 SdLazy, 330 SolverSat, 82 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.4s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 92 GetRequests, 36 SyntacticMatches, 0 SemanticMatches, 56 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 42 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=516occurred in iteration=9, InterpolantAutomatonStates: 75, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 13 MinimizatonAttempts, 2488 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 56 LocationsWithAnnotation, 56 PreInvPairs, 231 NumberOfFragments, 1056 HoareAnnotationTreeSize, 56 FomulaSimplifications, 1156004 FormulaSimplificationTreeSizeReduction, 2.5s HoareSimplificationTime, 56 FomulaSimplificationsInter, 189323 FormulaSimplificationTreeSizeReductionInter, 5.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 0.8s InterpolantComputationTime, 431 NumberOfCodeBlocks, 431 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 418 ConstructedInterpolants, 0 QuantifiedInterpolants, 760 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 13 InterpolantComputations, 13 PerfectInterpolantSequences, 41/41 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 210]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 960]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 977]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 916]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 402]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 285]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1)) || ((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 391]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 895]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: (((((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) || (((((!(\result == 0) && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1) && \result == 1) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 391]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: (((((((((\result == 1 && splverifierCounter == 0) && 0 < tmp + 1) && 1 == systemActive) && methaneLevelCritical == 1) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) || (((((((((\result == 1 && splverifierCounter == 0) && methaneLevelCritical == 0) && 0 < tmp + 1) && 1 == systemActive) && tmp___0 == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) && tmp <= 0) - InvariantResult [Line: 402]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) - InvariantResult [Line: 151]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 391]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 1) && methaneLevelCritical == 1) && \result == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 489]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) || ((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) - InvariantResult [Line: 402]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 151]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 231]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 278]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 285]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel)) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 391]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && !(tmp == 0)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && tmp___0 == 0) && \result == 0) && 1 == systemActive) && 1 <= waterLevel) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && methaneLevelCritical == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && 1 == systemActive) && 1 <= waterLevel - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 285]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 221]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 0 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) && \result == 1)) || (((((splverifierCounter == 0 && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result == 1) - InvariantResult [Line: 987]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 151]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) || (((((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel) && \result <= 0) && 0 <= \result) - InvariantResult [Line: 391]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 277]: Loop Invariant Derived loop invariant: (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 1) && 0 == systemActive) || (((splverifierCounter == 0 && methaneLevelCritical == 0) && 1 == systemActive) && 1 <= waterLevel)) || (((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 0 == systemActive)) || (((splverifierCounter == 0 && 1 == systemActive) && methaneLevelCritical == 1) && 1 <= waterLevel) - InvariantResult [Line: 96]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 391]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-10-28 23:58:10,724 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_3c12faae-649c-4f81-a331-1de99f2b7555/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...