./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 0cfed743c16ce3c8683c42b92f2e032d4ce7b489a9d3a5e140ec6101c472b3cb .................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-28 23:58:41,704 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-28 23:58:41,707 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-28 23:58:41,766 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-28 23:58:41,766 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-28 23:58:41,771 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-28 23:58:41,773 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-28 23:58:41,778 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-28 23:58:41,781 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-28 23:58:41,790 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-28 23:58:41,792 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-28 23:58:41,794 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-28 23:58:41,795 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-28 23:58:41,798 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-28 23:58:41,803 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-28 23:58:41,809 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-28 23:58:41,811 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-28 23:58:41,813 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-28 23:58:41,816 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-28 23:58:41,828 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-28 23:58:41,830 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-28 23:58:41,832 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-28 23:58:41,836 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-28 23:58:41,837 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-28 23:58:41,849 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-28 23:58:41,849 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-28 23:58:41,850 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-28 23:58:41,853 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-28 23:58:41,854 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-28 23:58:41,856 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-28 23:58:41,857 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-28 23:58:41,859 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-28 23:58:41,861 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-28 23:58:41,863 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-28 23:58:41,865 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-28 23:58:41,865 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-28 23:58:41,866 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-28 23:58:41,867 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-28 23:58:41,867 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-28 23:58:41,869 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-28 23:58:41,870 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-28 23:58:41,871 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-28 23:58:41,924 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-28 23:58:41,925 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-28 23:58:41,926 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-28 23:58:41,926 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-28 23:58:41,931 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-28 23:58:41,932 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-28 23:58:41,932 INFO L138 SettingsManager]: * Use SBE=true [2021-10-28 23:58:41,932 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-28 23:58:41,933 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-28 23:58:41,933 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-28 23:58:41,934 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-28 23:58:41,935 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-28 23:58:41,935 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-28 23:58:41,935 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-28 23:58:41,935 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-28 23:58:41,936 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-28 23:58:41,936 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-28 23:58:41,936 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-28 23:58:41,937 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-28 23:58:41,937 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-28 23:58:41,937 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-28 23:58:41,937 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-28 23:58:41,938 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 23:58:41,938 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-28 23:58:41,938 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-28 23:58:41,939 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-28 23:58:41,939 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-28 23:58:41,939 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-28 23:58:41,940 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-28 23:58:41,941 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-28 23:58:41,942 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-28 23:58:41,942 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-28 23:58:41,943 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 0cfed743c16ce3c8683c42b92f2e032d4ce7b489a9d3a5e140ec6101c472b3cb [2021-10-28 23:58:42,279 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-28 23:58:42,316 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-28 23:58:42,319 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-28 23:58:42,321 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-28 23:58:42,322 INFO L275 PluginConnector]: CDTParser initialized [2021-10-28 23:58:42,323 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/../../sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c [2021-10-28 23:58:42,404 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/data/eee3132bf/5b987d70b7604e07aea0ff581381271a/FLAGebd65acf2 [2021-10-28 23:58:43,115 INFO L306 CDTParser]: Found 1 translation units. [2021-10-28 23:58:43,121 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c [2021-10-28 23:58:43,148 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/data/eee3132bf/5b987d70b7604e07aea0ff581381271a/FLAGebd65acf2 [2021-10-28 23:58:43,337 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/data/eee3132bf/5b987d70b7604e07aea0ff581381271a [2021-10-28 23:58:43,340 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-28 23:58:43,342 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-28 23:58:43,344 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-28 23:58:43,345 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-28 23:58:43,349 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-28 23:58:43,350 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:43,352 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@169bb9b6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43, skipping insertion in model container [2021-10-28 23:58:43,352 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:43,360 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-28 23:58:43,435 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-28 23:58:43,787 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c[17978,17991] [2021-10-28 23:58:43,791 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 23:58:43,803 INFO L203 MainTranslator]: Completed pre-run [2021-10-28 23:58:43,893 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/sv-benchmarks/c/product-lines/minepump_spec3_product41.cil.c[17978,17991] [2021-10-28 23:58:43,894 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-28 23:58:43,917 INFO L208 MainTranslator]: Completed translation [2021-10-28 23:58:43,918 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43 WrapperNode [2021-10-28 23:58:43,918 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-28 23:58:43,919 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-28 23:58:43,920 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-28 23:58:43,920 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-28 23:58:43,929 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:43,950 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,002 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-28 23:58:44,003 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-28 23:58:44,003 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-28 23:58:44,003 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-28 23:58:44,014 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,015 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,020 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,021 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,035 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,043 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,046 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,051 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-28 23:58:44,052 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-28 23:58:44,053 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-28 23:58:44,053 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-28 23:58:44,054 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (1/1) ... [2021-10-28 23:58:44,063 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-28 23:58:44,080 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/z3 [2021-10-28 23:58:44,099 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-28 23:58:44,108 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-28 23:58:44,155 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-28 23:58:44,155 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-28 23:58:44,156 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-28 23:58:44,156 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-28 23:58:45,312 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-28 23:58:45,312 INFO L299 CfgBuilder]: Removed 120 assume(true) statements. [2021-10-28 23:58:45,315 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 11:58:45 BoogieIcfgContainer [2021-10-28 23:58:45,316 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-28 23:58:45,318 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-28 23:58:45,318 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-28 23:58:45,322 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-28 23:58:45,323 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.10 11:58:43" (1/3) ... [2021-10-28 23:58:45,324 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@184f2a0 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 11:58:45, skipping insertion in model container [2021-10-28 23:58:45,324 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.10 11:58:43" (2/3) ... [2021-10-28 23:58:45,324 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@184f2a0 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.10 11:58:45, skipping insertion in model container [2021-10-28 23:58:45,325 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 11:58:45" (3/3) ... [2021-10-28 23:58:45,326 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product41.cil.c [2021-10-28 23:58:45,333 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-28 23:58:45,333 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-28 23:58:45,407 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-28 23:58:45,419 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-28 23:58:45,419 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-28 23:58:45,444 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:45,453 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-28 23:58:45,453 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:45,454 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:45,454 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:45,462 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:45,463 INFO L85 PathProgramCache]: Analyzing trace with hash -611333278, now seen corresponding path program 1 times [2021-10-28 23:58:45,486 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:45,486 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1649579268] [2021-10-28 23:58:45,486 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:45,487 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:45,705 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:45,856 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:45,857 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:45,858 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1649579268] [2021-10-28 23:58:45,859 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1649579268] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:45,859 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:45,859 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 23:58:45,866 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1393986782] [2021-10-28 23:58:45,873 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-28 23:58:45,874 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:45,894 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-28 23:58:45,895 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 23:58:45,899 INFO L87 Difference]: Start difference. First operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:45,957 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:45,957 INFO L93 Difference]: Finished difference Result 180 states and 269 transitions. [2021-10-28 23:58:45,958 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-28 23:58:45,959 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-28 23:58:45,959 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:45,972 INFO L225 Difference]: With dead ends: 180 [2021-10-28 23:58:45,972 INFO L226 Difference]: Without dead ends: 89 [2021-10-28 23:58:45,976 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-28 23:58:45,995 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2021-10-28 23:58:46,031 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2021-10-28 23:58:46,035 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 86 states have (on average 1.4651162790697674) internal successors, (126), 88 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,044 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 126 transitions. [2021-10-28 23:58:46,045 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 126 transitions. Word has length 18 [2021-10-28 23:58:46,046 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:46,047 INFO L470 AbstractCegarLoop]: Abstraction has 89 states and 126 transitions. [2021-10-28 23:58:46,047 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,048 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 126 transitions. [2021-10-28 23:58:46,050 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-28 23:58:46,051 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:46,051 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:46,051 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-28 23:58:46,052 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:46,056 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:46,056 INFO L85 PathProgramCache]: Analyzing trace with hash 1493643632, now seen corresponding path program 1 times [2021-10-28 23:58:46,056 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:46,057 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1799170397] [2021-10-28 23:58:46,057 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:46,057 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:46,146 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:46,269 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:46,270 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:46,271 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1799170397] [2021-10-28 23:58:46,271 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1799170397] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:46,272 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:46,272 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 23:58:46,273 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2124796973] [2021-10-28 23:58:46,275 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:58:46,275 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:46,276 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:58:46,277 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:46,277 INFO L87 Difference]: Start difference. First operand 89 states and 126 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,290 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:46,291 INFO L93 Difference]: Finished difference Result 89 states and 126 transitions. [2021-10-28 23:58:46,291 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:58:46,292 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-28 23:58:46,292 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:46,293 INFO L225 Difference]: With dead ends: 89 [2021-10-28 23:58:46,293 INFO L226 Difference]: Without dead ends: 39 [2021-10-28 23:58:46,294 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:46,294 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-28 23:58:46,299 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-28 23:58:46,299 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 38 states have internal predecessors, (55), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,300 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 55 transitions. [2021-10-28 23:58:46,300 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 55 transitions. Word has length 19 [2021-10-28 23:58:46,300 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:46,300 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 55 transitions. [2021-10-28 23:58:46,301 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,301 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 55 transitions. [2021-10-28 23:58:46,302 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-28 23:58:46,302 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:46,302 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:46,303 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-28 23:58:46,303 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:46,303 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:46,304 INFO L85 PathProgramCache]: Analyzing trace with hash 590350463, now seen corresponding path program 1 times [2021-10-28 23:58:46,304 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:46,304 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1260789581] [2021-10-28 23:58:46,305 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:46,305 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:46,347 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:46,397 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:46,397 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:46,397 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1260789581] [2021-10-28 23:58:46,398 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1260789581] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:46,398 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:46,398 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 23:58:46,398 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [854016728] [2021-10-28 23:58:46,399 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:58:46,399 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:46,400 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:58:46,400 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:46,400 INFO L87 Difference]: Start difference. First operand 39 states and 55 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,408 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:46,409 INFO L93 Difference]: Finished difference Result 72 states and 104 transitions. [2021-10-28 23:58:46,409 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:58:46,409 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-28 23:58:46,410 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:46,411 INFO L225 Difference]: With dead ends: 72 [2021-10-28 23:58:46,411 INFO L226 Difference]: Without dead ends: 39 [2021-10-28 23:58:46,412 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:46,412 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-10-28 23:58:46,416 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-10-28 23:58:46,417 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4210526315789473) internal successors, (54), 38 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,417 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 54 transitions. [2021-10-28 23:58:46,417 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 54 transitions. Word has length 24 [2021-10-28 23:58:46,418 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:46,418 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 54 transitions. [2021-10-28 23:58:46,418 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,419 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 54 transitions. [2021-10-28 23:58:46,420 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-10-28 23:58:46,420 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:46,420 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:46,420 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-28 23:58:46,421 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:46,421 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:46,421 INFO L85 PathProgramCache]: Analyzing trace with hash 1748150010, now seen corresponding path program 1 times [2021-10-28 23:58:46,421 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:46,422 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1253012148] [2021-10-28 23:58:46,422 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:46,422 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:46,496 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:46,578 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:46,578 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:46,579 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1253012148] [2021-10-28 23:58:46,579 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1253012148] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:46,579 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:46,579 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-28 23:58:46,580 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [893684242] [2021-10-28 23:58:46,580 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-28 23:58:46,580 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:46,581 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-28 23:58:46,581 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:46,583 INFO L87 Difference]: Start difference. First operand 39 states and 54 transitions. Second operand has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,627 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:46,627 INFO L93 Difference]: Finished difference Result 95 states and 135 transitions. [2021-10-28 23:58:46,627 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-28 23:58:46,628 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-10-28 23:58:46,628 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:46,629 INFO L225 Difference]: With dead ends: 95 [2021-10-28 23:58:46,629 INFO L226 Difference]: Without dead ends: 62 [2021-10-28 23:58:46,630 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-28 23:58:46,631 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2021-10-28 23:58:46,638 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 60. [2021-10-28 23:58:46,639 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 60 states, 59 states have (on average 1.423728813559322) internal successors, (84), 59 states have internal predecessors, (84), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,640 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 60 states to 60 states and 84 transitions. [2021-10-28 23:58:46,640 INFO L78 Accepts]: Start accepts. Automaton has 60 states and 84 transitions. Word has length 25 [2021-10-28 23:58:46,640 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:46,641 INFO L470 AbstractCegarLoop]: Abstraction has 60 states and 84 transitions. [2021-10-28 23:58:46,641 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,641 INFO L276 IsEmpty]: Start isEmpty. Operand 60 states and 84 transitions. [2021-10-28 23:58:46,642 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-10-28 23:58:46,643 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:46,643 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:46,643 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-28 23:58:46,644 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:46,644 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:46,644 INFO L85 PathProgramCache]: Analyzing trace with hash 787955310, now seen corresponding path program 1 times [2021-10-28 23:58:46,645 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:46,645 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [996841982] [2021-10-28 23:58:46,645 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:46,646 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:46,681 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:46,786 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:46,786 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:46,786 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [996841982] [2021-10-28 23:58:46,787 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [996841982] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:46,787 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:46,787 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 23:58:46,787 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [57380185] [2021-10-28 23:58:46,788 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-28 23:58:46,788 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:46,789 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-28 23:58:46,789 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-28 23:58:46,789 INFO L87 Difference]: Start difference. First operand 60 states and 84 transitions. Second operand has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,937 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:46,938 INFO L93 Difference]: Finished difference Result 314 states and 458 transitions. [2021-10-28 23:58:46,938 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 23:58:46,938 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 31 [2021-10-28 23:58:46,939 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:46,942 INFO L225 Difference]: With dead ends: 314 [2021-10-28 23:58:46,942 INFO L226 Difference]: Without dead ends: 260 [2021-10-28 23:58:46,943 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-28 23:58:46,944 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 260 states. [2021-10-28 23:58:46,964 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 260 to 106. [2021-10-28 23:58:46,965 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 106 states, 105 states have (on average 1.3904761904761904) internal successors, (146), 105 states have internal predecessors, (146), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,965 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 106 states to 106 states and 146 transitions. [2021-10-28 23:58:46,965 INFO L78 Accepts]: Start accepts. Automaton has 106 states and 146 transitions. Word has length 31 [2021-10-28 23:58:46,966 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:46,966 INFO L470 AbstractCegarLoop]: Abstraction has 106 states and 146 transitions. [2021-10-28 23:58:46,966 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:46,967 INFO L276 IsEmpty]: Start isEmpty. Operand 106 states and 146 transitions. [2021-10-28 23:58:46,968 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 23:58:46,968 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:46,968 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:46,969 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-28 23:58:46,969 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:46,969 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:46,970 INFO L85 PathProgramCache]: Analyzing trace with hash -1324804560, now seen corresponding path program 1 times [2021-10-28 23:58:46,970 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:46,970 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [712853299] [2021-10-28 23:58:46,970 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:46,971 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:46,996 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:47,038 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:47,038 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:47,039 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [712853299] [2021-10-28 23:58:47,039 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [712853299] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:47,039 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:47,039 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-28 23:58:47,040 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [524047473] [2021-10-28 23:58:47,040 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 23:58:47,040 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:47,041 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 23:58:47,041 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 23:58:47,042 INFO L87 Difference]: Start difference. First operand 106 states and 146 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,167 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:47,167 INFO L93 Difference]: Finished difference Result 212 states and 299 transitions. [2021-10-28 23:58:47,168 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-28 23:58:47,169 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 23:58:47,169 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:47,171 INFO L225 Difference]: With dead ends: 212 [2021-10-28 23:58:47,171 INFO L226 Difference]: Without dead ends: 158 [2021-10-28 23:58:47,172 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 23:58:47,172 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2021-10-28 23:58:47,192 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 155. [2021-10-28 23:58:47,193 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 155 states, 154 states have (on average 1.396103896103896) internal successors, (215), 154 states have internal predecessors, (215), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,194 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 155 states to 155 states and 215 transitions. [2021-10-28 23:58:47,195 INFO L78 Accepts]: Start accepts. Automaton has 155 states and 215 transitions. Word has length 32 [2021-10-28 23:58:47,195 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:47,195 INFO L470 AbstractCegarLoop]: Abstraction has 155 states and 215 transitions. [2021-10-28 23:58:47,195 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,196 INFO L276 IsEmpty]: Start isEmpty. Operand 155 states and 215 transitions. [2021-10-28 23:58:47,197 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 23:58:47,198 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:47,198 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:47,198 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-28 23:58:47,199 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:47,199 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:47,199 INFO L85 PathProgramCache]: Analyzing trace with hash 1959045486, now seen corresponding path program 1 times [2021-10-28 23:58:47,200 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:47,200 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [706684881] [2021-10-28 23:58:47,200 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:47,201 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:47,225 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:47,266 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:47,266 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:47,267 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [706684881] [2021-10-28 23:58:47,267 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [706684881] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:47,267 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:47,267 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-28 23:58:47,268 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [541186017] [2021-10-28 23:58:47,268 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-28 23:58:47,269 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:47,269 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-28 23:58:47,269 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-28 23:58:47,270 INFO L87 Difference]: Start difference. First operand 155 states and 215 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,339 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:47,339 INFO L93 Difference]: Finished difference Result 412 states and 582 transitions. [2021-10-28 23:58:47,340 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-28 23:58:47,340 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 23:58:47,340 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:47,342 INFO L225 Difference]: With dead ends: 412 [2021-10-28 23:58:47,343 INFO L226 Difference]: Without dead ends: 308 [2021-10-28 23:58:47,344 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-28 23:58:47,345 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 308 states. [2021-10-28 23:58:47,372 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 308 to 155. [2021-10-28 23:58:47,378 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 155 states, 154 states have (on average 1.3896103896103895) internal successors, (214), 154 states have internal predecessors, (214), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,381 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 155 states to 155 states and 214 transitions. [2021-10-28 23:58:47,381 INFO L78 Accepts]: Start accepts. Automaton has 155 states and 214 transitions. Word has length 32 [2021-10-28 23:58:47,381 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:47,382 INFO L470 AbstractCegarLoop]: Abstraction has 155 states and 214 transitions. [2021-10-28 23:58:47,382 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,382 INFO L276 IsEmpty]: Start isEmpty. Operand 155 states and 214 transitions. [2021-10-28 23:58:47,384 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-28 23:58:47,385 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:47,385 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:47,385 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-28 23:58:47,386 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:47,386 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:47,387 INFO L85 PathProgramCache]: Analyzing trace with hash -2077756372, now seen corresponding path program 1 times [2021-10-28 23:58:47,387 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:47,387 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1598138908] [2021-10-28 23:58:47,388 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:47,389 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:47,419 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:47,513 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:47,513 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:47,514 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1598138908] [2021-10-28 23:58:47,514 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1598138908] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:47,514 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:47,514 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 23:58:47,515 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1441904430] [2021-10-28 23:58:47,515 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 23:58:47,515 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:47,516 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 23:58:47,517 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 23:58:47,517 INFO L87 Difference]: Start difference. First operand 155 states and 214 transitions. Second operand has 6 states, 6 states have (on average 5.333333333333333) internal successors, (32), 6 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,625 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:47,626 INFO L93 Difference]: Finished difference Result 524 states and 737 transitions. [2021-10-28 23:58:47,626 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-28 23:58:47,626 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.333333333333333) internal successors, (32), 6 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-28 23:58:47,627 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:47,630 INFO L225 Difference]: With dead ends: 524 [2021-10-28 23:58:47,630 INFO L226 Difference]: Without dead ends: 375 [2021-10-28 23:58:47,632 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2021-10-28 23:58:47,633 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 375 states. [2021-10-28 23:58:47,669 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 375 to 161. [2021-10-28 23:58:47,670 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 161 states, 160 states have (on average 1.36875) internal successors, (219), 160 states have internal predecessors, (219), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,671 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 161 states to 161 states and 219 transitions. [2021-10-28 23:58:47,671 INFO L78 Accepts]: Start accepts. Automaton has 161 states and 219 transitions. Word has length 32 [2021-10-28 23:58:47,672 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:47,673 INFO L470 AbstractCegarLoop]: Abstraction has 161 states and 219 transitions. [2021-10-28 23:58:47,673 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.333333333333333) internal successors, (32), 6 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:47,673 INFO L276 IsEmpty]: Start isEmpty. Operand 161 states and 219 transitions. [2021-10-28 23:58:47,682 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-28 23:58:47,682 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:47,683 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:47,684 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-28 23:58:47,684 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:47,686 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:47,686 INFO L85 PathProgramCache]: Analyzing trace with hash 662884577, now seen corresponding path program 1 times [2021-10-28 23:58:47,686 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:47,687 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1746838262] [2021-10-28 23:58:47,687 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:47,687 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:47,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:47,771 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:47,771 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:47,771 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1746838262] [2021-10-28 23:58:47,771 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1746838262] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:47,772 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:47,772 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-28 23:58:47,772 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1373210124] [2021-10-28 23:58:47,773 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 23:58:47,773 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:47,773 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 23:58:47,774 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 23:58:47,774 INFO L87 Difference]: Start difference. First operand 161 states and 219 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,060 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:48,061 INFO L93 Difference]: Finished difference Result 1154 states and 1559 transitions. [2021-10-28 23:58:48,061 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-28 23:58:48,061 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-28 23:58:48,062 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:48,069 INFO L225 Difference]: With dead ends: 1154 [2021-10-28 23:58:48,069 INFO L226 Difference]: Without dead ends: 999 [2021-10-28 23:58:48,070 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-28 23:58:48,072 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 999 states. [2021-10-28 23:58:48,122 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 999 to 302. [2021-10-28 23:58:48,123 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.3488372093023255) internal successors, (406), 301 states have internal predecessors, (406), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,124 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 406 transitions. [2021-10-28 23:58:48,125 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 406 transitions. Word has length 35 [2021-10-28 23:58:48,125 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:48,125 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 406 transitions. [2021-10-28 23:58:48,126 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,126 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 406 transitions. [2021-10-28 23:58:48,127 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-10-28 23:58:48,127 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:48,128 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:48,128 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-28 23:58:48,128 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:48,129 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:48,129 INFO L85 PathProgramCache]: Analyzing trace with hash 1342942947, now seen corresponding path program 1 times [2021-10-28 23:58:48,129 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:48,129 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [954451439] [2021-10-28 23:58:48,130 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:48,130 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:48,152 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:48,206 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:48,206 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:48,206 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [954451439] [2021-10-28 23:58:48,207 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [954451439] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:48,207 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:48,207 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 23:58:48,207 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1931444470] [2021-10-28 23:58:48,208 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-28 23:58:48,208 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:48,209 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-28 23:58:48,209 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-28 23:58:48,209 INFO L87 Difference]: Start difference. First operand 302 states and 406 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,418 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:48,419 INFO L93 Difference]: Finished difference Result 687 states and 937 transitions. [2021-10-28 23:58:48,419 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-10-28 23:58:48,419 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-10-28 23:58:48,420 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:48,421 INFO L225 Difference]: With dead ends: 687 [2021-10-28 23:58:48,421 INFO L226 Difference]: Without dead ends: 121 [2021-10-28 23:58:48,422 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2021-10-28 23:58:48,423 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2021-10-28 23:58:48,435 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 96. [2021-10-28 23:58:48,435 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 96 states, 95 states have (on average 1.2105263157894737) internal successors, (115), 95 states have internal predecessors, (115), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,436 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 115 transitions. [2021-10-28 23:58:48,436 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 115 transitions. Word has length 35 [2021-10-28 23:58:48,437 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:48,437 INFO L470 AbstractCegarLoop]: Abstraction has 96 states and 115 transitions. [2021-10-28 23:58:48,437 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 6 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,437 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 115 transitions. [2021-10-28 23:58:48,438 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-28 23:58:48,438 INFO L505 BasicCegarLoop]: Found error trace [2021-10-28 23:58:48,439 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:48,439 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-28 23:58:48,439 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-28 23:58:48,440 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-28 23:58:48,440 INFO L85 PathProgramCache]: Analyzing trace with hash 384013147, now seen corresponding path program 1 times [2021-10-28 23:58:48,440 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-28 23:58:48,440 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1090242750] [2021-10-28 23:58:48,441 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-28 23:58:48,441 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-28 23:58:48,461 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-28 23:58:48,531 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-28 23:58:48,531 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-28 23:58:48,532 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1090242750] [2021-10-28 23:58:48,532 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1090242750] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-28 23:58:48,532 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-28 23:58:48,532 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-10-28 23:58:48,533 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1637671252] [2021-10-28 23:58:48,533 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-28 23:58:48,533 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-28 23:58:48,534 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-28 23:58:48,534 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-28 23:58:48,535 INFO L87 Difference]: Start difference. First operand 96 states and 115 transitions. Second operand has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,850 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-28 23:58:48,851 INFO L93 Difference]: Finished difference Result 280 states and 335 transitions. [2021-10-28 23:58:48,851 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-10-28 23:58:48,851 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-28 23:58:48,852 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-28 23:58:48,852 INFO L225 Difference]: With dead ends: 280 [2021-10-28 23:58:48,852 INFO L226 Difference]: Without dead ends: 0 [2021-10-28 23:58:48,853 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=53, Invalid=103, Unknown=0, NotChecked=0, Total=156 [2021-10-28 23:58:48,853 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-28 23:58:48,854 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-28 23:58:48,854 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,854 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-28 23:58:48,854 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 36 [2021-10-28 23:58:48,854 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-28 23:58:48,855 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-28 23:58:48,855 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-28 23:58:48,855 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-28 23:58:48,855 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-28 23:58:48,858 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 23:58:48,859 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 23:58:48,859 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-28 23:58:48,859 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-28 23:58:48,862 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-28 23:58:48,867 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,869 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,870 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,871 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,872 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,872 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,893 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,894 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,895 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,896 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,896 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,897 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,939 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,940 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,940 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,941 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,942 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:48,984 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,146 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,364 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,365 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,479 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,528 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,529 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,593 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,594 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,595 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,596 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,652 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,739 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,740 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,741 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,776 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,780 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,781 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,994 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,995 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,996 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:49,996 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-28 23:58:52,219 INFO L857 garLoopResultBuilder]: For program point L481(lines 481 485) no Hoare annotation was computed. [2021-10-28 23:58:52,220 INFO L857 garLoopResultBuilder]: For program point L481-1(lines 105 111) no Hoare annotation was computed. [2021-10-28 23:58:52,220 INFO L853 garLoopResultBuilder]: At program point L415(lines 410 418) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse7 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse10 (not .cse2)) (.cse5 (= ~waterLevel~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse9 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse4 (= 1 ~systemActive~0)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse13 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0))) (.cse6 (not (= ULTIMATE.start_processEnvironment_~tmp~0 0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse7 .cse0 .cse1 .cse8 .cse9 .cse10 .cse4 .cse11 .cse12 .cse13 .cse6) (and .cse7 .cse0 .cse1 .cse10 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse8 .cse9 .cse4 .cse11 .cse12 .cse13 .cse6)))) [2021-10-28 23:58:52,220 INFO L853 garLoopResultBuilder]: At program point L415-1(lines 410 418) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse5 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse6 (not .cse2)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse5 .cse0 .cse1 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse6 .cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~0 0))) (and .cse0 (not .cse1) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse5 .cse0 .cse1 .cse6 .cse3 .cse4)))) [2021-10-28 23:58:52,220 INFO L853 garLoopResultBuilder]: At program point L415-2(lines 410 418) the Hoare annotation is: false [2021-10-28 23:58:52,221 INFO L853 garLoopResultBuilder]: At program point L415-3(lines 410 418) the Hoare annotation is: false [2021-10-28 23:58:52,221 INFO L857 garLoopResultBuilder]: For program point L283(lines 283 287) no Hoare annotation was computed. [2021-10-28 23:58:52,221 INFO L853 garLoopResultBuilder]: At program point L415-4(lines 410 418) the Hoare annotation is: false [2021-10-28 23:58:52,221 INFO L853 garLoopResultBuilder]: At program point L415-5(lines 410 418) the Hoare annotation is: false [2021-10-28 23:58:52,221 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 932) no Hoare annotation was computed. [2021-10-28 23:58:52,221 INFO L857 garLoopResultBuilder]: For program point L548(lines 548 555) no Hoare annotation was computed. [2021-10-28 23:58:52,221 INFO L860 garLoopResultBuilder]: At program point L548-1(lines 548 555) the Hoare annotation is: true [2021-10-28 23:58:52,221 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-28 23:58:52,222 INFO L857 garLoopResultBuilder]: For program point L317(lines 317 321) no Hoare annotation was computed. [2021-10-28 23:58:52,222 INFO L857 garLoopResultBuilder]: For program point L317-2(lines 105 111) no Hoare annotation was computed. [2021-10-28 23:58:52,222 INFO L857 garLoopResultBuilder]: For program point L301(lines 301 307) no Hoare annotation was computed. [2021-10-28 23:58:52,222 INFO L853 garLoopResultBuilder]: At program point L301-1(lines 301 307) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse0 .cse1 .cse2 .cse5 .cse3) (and .cse1 .cse2 .cse6 .cse3 .cse4) (and .cse1 .cse2 .cse6 .cse5 .cse3))) [2021-10-28 23:58:52,222 INFO L857 garLoopResultBuilder]: For program point L137(lines 137 154) no Hoare annotation was computed. [2021-10-28 23:58:52,222 INFO L857 garLoopResultBuilder]: For program point L137-1(lines 137 154) no Hoare annotation was computed. [2021-10-28 23:58:52,222 INFO L857 garLoopResultBuilder]: For program point L137-2(lines 137 154) no Hoare annotation was computed. [2021-10-28 23:58:52,222 INFO L857 garLoopResultBuilder]: For program point L402(lines 402 406) no Hoare annotation was computed. [2021-10-28 23:58:52,223 INFO L853 garLoopResultBuilder]: At program point L105(lines 104 123) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse0 .cse1 .cse2 .cse5 .cse3) (and .cse1 .cse2 .cse6 .cse3 .cse4) (and .cse1 .cse2 .cse6 .cse5 .cse3))) [2021-10-28 23:58:52,223 INFO L857 garLoopResultBuilder]: For program point L105-1(lines 105 111) no Hoare annotation was computed. [2021-10-28 23:58:52,223 INFO L853 garLoopResultBuilder]: At program point L105-2(lines 104 123) the Hoare annotation is: false [2021-10-28 23:58:52,223 INFO L853 garLoopResultBuilder]: At program point L105-3(lines 104 123) the Hoare annotation is: false [2021-10-28 23:58:52,223 INFO L857 garLoopResultBuilder]: For program point L353(lines 353 366) no Hoare annotation was computed. [2021-10-28 23:58:52,223 INFO L853 garLoopResultBuilder]: At program point L353-1(lines 1 935) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse3 (not (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (.cse5 (not (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0))) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse6 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse4) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse3 .cse4 .cse5 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~0 0))) (and .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse4 .cse6))) [2021-10-28 23:58:52,223 INFO L857 garLoopResultBuilder]: For program point L353-2(lines 353 366) no Hoare annotation was computed. [2021-10-28 23:58:52,224 INFO L853 garLoopResultBuilder]: At program point L353-3(lines 1 935) the Hoare annotation is: false [2021-10-28 23:58:52,224 INFO L857 garLoopResultBuilder]: For program point L353-4(lines 353 366) no Hoare annotation was computed. [2021-10-28 23:58:52,224 INFO L853 garLoopResultBuilder]: At program point L353-5(lines 1 935) the Hoare annotation is: false [2021-10-28 23:58:52,224 INFO L857 garLoopResultBuilder]: For program point L932(line 932) no Hoare annotation was computed. [2021-10-28 23:58:52,224 INFO L857 garLoopResultBuilder]: For program point L932-1(line 932) no Hoare annotation was computed. [2021-10-28 23:58:52,224 INFO L857 garLoopResultBuilder]: For program point L932-2(line 932) no Hoare annotation was computed. [2021-10-28 23:58:52,224 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-28 23:58:52,224 INFO L857 garLoopResultBuilder]: For program point L174(lines 174 180) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L141(lines 141 149) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L141-1(lines 141 149) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L174-2(lines 174 180) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L853 garLoopResultBuilder]: At program point L75(lines 1 935) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L141-2(lines 141 149) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L174-4(lines 174 180) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L455(lines 455 461) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L455-1(lines 455 461) no Hoare annotation was computed. [2021-10-28 23:58:52,225 INFO L857 garLoopResultBuilder]: For program point L455-2(lines 455 461) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L857 garLoopResultBuilder]: For program point L257(lines 257 261) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L857 garLoopResultBuilder]: For program point L257-2(lines 257 261) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L857 garLoopResultBuilder]: For program point L257-3(lines 257 261) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L857 garLoopResultBuilder]: For program point L257-5(lines 257 261) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L857 garLoopResultBuilder]: For program point L257-6(lines 257 261) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L857 garLoopResultBuilder]: For program point L257-8(lines 257 261) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 932) no Hoare annotation was computed. [2021-10-28 23:58:52,226 INFO L853 garLoopResultBuilder]: At program point L208(lines 203 211) the Hoare annotation is: (and (= ULTIMATE.start_test_~splverifierCounter~0 0) (not (= ~pumpRunning~0 0)) (not (= |ULTIMATE.start_isPumpRunning_#res| 0)) (= ULTIMATE.start_activatePump_~tmp~1 0) (= 1 ~systemActive~0)) [2021-10-28 23:58:52,227 INFO L853 garLoopResultBuilder]: At program point L208-1(lines 203 211) the Hoare annotation is: false [2021-10-28 23:58:52,227 INFO L853 garLoopResultBuilder]: At program point L208-2(lines 203 211) the Hoare annotation is: false [2021-10-28 23:58:52,227 INFO L857 garLoopResultBuilder]: For program point L390(lines 390 394) no Hoare annotation was computed. [2021-10-28 23:58:52,227 INFO L857 garLoopResultBuilder]: For program point L357(lines 357 363) no Hoare annotation was computed. [2021-10-28 23:58:52,227 INFO L857 garLoopResultBuilder]: For program point L291(lines 291 297) no Hoare annotation was computed. [2021-10-28 23:58:52,227 INFO L857 garLoopResultBuilder]: For program point L357-2(lines 357 363) no Hoare annotation was computed. [2021-10-28 23:58:52,227 INFO L853 garLoopResultBuilder]: At program point L291-1(lines 291 297) the Hoare annotation is: (let ((.cse6 (= ~waterLevel~0 1)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse3 (not (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (.cse4 (= 1 ~systemActive~0)) (.cse5 (not (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~4 0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse4) (and .cse1 .cse2 .cse7 .cse4 .cse6) (and .cse1 .cse2 .cse7 .cse8 .cse4) (and .cse0 .cse1 .cse2 .cse8 .cse3 .cse4 .cse5))) [2021-10-28 23:58:52,228 INFO L857 garLoopResultBuilder]: For program point L357-4(lines 357 363) no Hoare annotation was computed. [2021-10-28 23:58:52,232 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-28 23:58:52,232 INFO L860 garLoopResultBuilder]: At program point L557(lines 538 560) the Hoare annotation is: true [2021-10-28 23:58:52,232 INFO L853 garLoopResultBuilder]: At program point L112(lines 112 118) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) .cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~0 0))) (and .cse1 (not .cse2) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse3) (and .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4))) [2021-10-28 23:58:52,233 INFO L853 garLoopResultBuilder]: At program point L112-1(lines 112 118) the Hoare annotation is: false [2021-10-28 23:58:52,233 INFO L853 garLoopResultBuilder]: At program point L112-2(lines 112 118) the Hoare annotation is: false [2021-10-28 23:58:52,234 INFO L853 garLoopResultBuilder]: At program point L525(lines 521 527) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-28 23:58:52,234 INFO L853 garLoopResultBuilder]: At program point L327(lines 280 328) the Hoare annotation is: false [2021-10-28 23:58:52,234 INFO L857 garLoopResultBuilder]: For program point L311(lines 311 322) no Hoare annotation was computed. [2021-10-28 23:58:52,234 INFO L853 garLoopResultBuilder]: At program point L460(lines 451 464) the Hoare annotation is: (let ((.cse5 (= ~methaneLevelCritical~0 0)) (.cse4 (= ~waterLevel~0 1)) (.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0)) (.cse7 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse2 .cse5 .cse6 .cse3 .cse7) (and .cse1 .cse2 .cse5 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse7))) [2021-10-28 23:58:52,234 INFO L853 garLoopResultBuilder]: At program point L460-1(lines 451 464) the Hoare annotation is: false [2021-10-28 23:58:52,235 INFO L853 garLoopResultBuilder]: At program point L460-2(lines 451 464) the Hoare annotation is: false [2021-10-28 23:58:52,235 INFO L853 garLoopResultBuilder]: At program point L477-2(lines 477 491) the Hoare annotation is: false [2021-10-28 23:58:52,235 INFO L857 garLoopResultBuilder]: For program point L378(lines 378 382) no Hoare annotation was computed. [2021-10-28 23:58:52,235 INFO L857 garLoopResultBuilder]: For program point L378-3(lines 378 382) no Hoare annotation was computed. [2021-10-28 23:58:52,236 INFO L857 garLoopResultBuilder]: For program point L378-6(lines 378 382) no Hoare annotation was computed. [2021-10-28 23:58:52,237 INFO L853 garLoopResultBuilder]: At program point L263(lines 248 266) the Hoare annotation is: (let ((.cse0 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse6 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0)) (.cse8 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse9 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0))) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse10 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse5 .cse6 .cse3 .cse7 .cse8 .cse9) (and .cse1 .cse2 .cse10 .cse5 .cse6 .cse3 .cse7 .cse8 .cse9) (and .cse1 .cse2 .cse10 .cse3 .cse4))) [2021-10-28 23:58:52,237 INFO L853 garLoopResultBuilder]: At program point L263-1(lines 248 266) the Hoare annotation is: false [2021-10-28 23:58:52,237 INFO L853 garLoopResultBuilder]: At program point L263-2(lines 248 266) the Hoare annotation is: false [2021-10-28 23:58:52,237 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-28 23:58:52,238 INFO L857 garLoopResultBuilder]: For program point L478(line 478) no Hoare annotation was computed. [2021-10-28 23:58:52,238 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 932) no Hoare annotation was computed. [2021-10-28 23:58:52,238 INFO L857 garLoopResultBuilder]: For program point L347(lines 347 367) no Hoare annotation was computed. [2021-10-28 23:58:52,238 INFO L857 garLoopResultBuilder]: For program point L347-2(lines 347 367) no Hoare annotation was computed. [2021-10-28 23:58:52,238 INFO L857 garLoopResultBuilder]: For program point L347-4(lines 347 367) no Hoare annotation was computed. [2021-10-28 23:58:52,239 INFO L853 garLoopResultBuilder]: At program point L83(lines 78 86) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-28 23:58:52,239 INFO L853 garLoopResultBuilder]: At program point L199(lines 192 202) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0))) (let ((.cse4 (<= 2 ~waterLevel~0)) (.cse5 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~2 0)) (.cse8 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse10 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~0 0))) (.cse12 (= ~methaneLevelCritical~0 ~systemActive~0)) (.cse13 (not .cse2)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse6 (= 1 ~systemActive~0)) (.cse14 (= ~waterLevel~0 1)) (.cse9 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse11 (not (= ULTIMATE.start_processEnvironment_~tmp~0 0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11) (and .cse12 .cse0 .cse1 .cse4 .cse5 .cse13 .cse6 .cse7 .cse8 .cse10 .cse11) (and .cse12 .cse0 .cse1 .cse13 .cse6 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse3 .cse6 .cse14 .cse9 .cse11)))) [2021-10-28 23:58:52,239 INFO L853 garLoopResultBuilder]: At program point L199-1(lines 192 202) the Hoare annotation is: false [2021-10-28 23:58:52,239 INFO L853 garLoopResultBuilder]: At program point L199-2(lines 192 202) the Hoare annotation is: false [2021-10-28 23:58:52,240 INFO L853 garLoopResultBuilder]: At program point L447(lines 442 450) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 1 ~systemActive~0))) (or (and .cse0 (not .cse1) (= ULTIMATE.start_activatePump_~tmp~1 0) .cse2) (and .cse0 .cse1 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse2 (= |ULTIMATE.start_getWaterLevel_#res| 1) (= ~waterLevel~0 1)))) [2021-10-28 23:58:52,240 INFO L853 garLoopResultBuilder]: At program point L447-1(lines 442 450) the Hoare annotation is: false [2021-10-28 23:58:52,240 INFO L853 garLoopResultBuilder]: At program point L447-2(lines 442 450) the Hoare annotation is: false [2021-10-28 23:58:52,240 INFO L857 garLoopResultBuilder]: For program point L282(lines 281 326) no Hoare annotation was computed. [2021-10-28 23:58:52,244 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-28 23:58:52,247 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-28 23:58:52,299 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.10 11:58:52 BoogieIcfgContainer [2021-10-28 23:58:52,305 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-28 23:58:52,306 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-28 23:58:52,306 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-28 23:58:52,306 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-28 23:58:52,307 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.10 11:58:45" (3/4) ... [2021-10-28 23:58:52,311 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-28 23:58:52,342 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-28 23:58:52,344 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-28 23:58:52,346 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-28 23:58:52,347 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-28 23:58:52,348 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-28 23:58:52,350 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 23:58:52,351 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-28 23:58:52,385 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) [2021-10-28 23:58:52,386 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) [2021-10-28 23:58:52,389 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) [2021-10-28 23:58:52,390 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) [2021-10-28 23:58:52,391 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) [2021-10-28 23:58:52,392 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1) [2021-10-28 23:58:52,392 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) [2021-10-28 23:58:52,393 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((splverifierCounter == 0 && !(pumpRunning == 0)) && !(\result == 0)) && tmp == 0) && 1 == systemActive [2021-10-28 23:58:52,394 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) [2021-10-28 23:58:52,394 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && \result == 0) && !(tmp == 0)) [2021-10-28 23:58:52,449 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/witness.graphml [2021-10-28 23:58:52,449 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-28 23:58:52,451 INFO L168 Benchmark]: Toolchain (without parser) took 9107.70 ms. Allocated memory was 102.8 MB in the beginning and 169.9 MB in the end (delta: 67.1 MB). Free memory was 72.5 MB in the beginning and 77.8 MB in the end (delta: -5.3 MB). Peak memory consumption was 62.6 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:52,451 INFO L168 Benchmark]: CDTParser took 0.32 ms. Allocated memory is still 102.8 MB. Free memory is still 60.5 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-10-28 23:58:52,452 INFO L168 Benchmark]: CACSL2BoogieTranslator took 574.16 ms. Allocated memory was 102.8 MB in the beginning and 130.0 MB in the end (delta: 27.3 MB). Free memory was 72.4 MB in the beginning and 97.2 MB in the end (delta: -24.8 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:52,452 INFO L168 Benchmark]: Boogie Procedure Inliner took 82.80 ms. Allocated memory is still 130.0 MB. Free memory was 97.2 MB in the beginning and 94.2 MB in the end (delta: 3.0 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:52,453 INFO L168 Benchmark]: Boogie Preprocessor took 48.49 ms. Allocated memory is still 130.0 MB. Free memory was 94.2 MB in the beginning and 91.5 MB in the end (delta: 2.7 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:52,453 INFO L168 Benchmark]: RCFGBuilder took 1263.39 ms. Allocated memory is still 130.0 MB. Free memory was 91.5 MB in the beginning and 100.1 MB in the end (delta: -8.7 MB). Peak memory consumption was 41.5 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:52,454 INFO L168 Benchmark]: TraceAbstraction took 6987.37 ms. Allocated memory was 130.0 MB in the beginning and 169.9 MB in the end (delta: 39.8 MB). Free memory was 99.4 MB in the beginning and 86.3 MB in the end (delta: 13.1 MB). Peak memory consumption was 98.1 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:52,454 INFO L168 Benchmark]: Witness Printer took 143.21 ms. Allocated memory is still 169.9 MB. Free memory was 86.3 MB in the beginning and 77.8 MB in the end (delta: 8.5 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. [2021-10-28 23:58:52,457 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.32 ms. Allocated memory is still 102.8 MB. Free memory is still 60.5 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 574.16 ms. Allocated memory was 102.8 MB in the beginning and 130.0 MB in the end (delta: 27.3 MB). Free memory was 72.4 MB in the beginning and 97.2 MB in the end (delta: -24.8 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 82.80 ms. Allocated memory is still 130.0 MB. Free memory was 97.2 MB in the beginning and 94.2 MB in the end (delta: 3.0 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 48.49 ms. Allocated memory is still 130.0 MB. Free memory was 94.2 MB in the beginning and 91.5 MB in the end (delta: 2.7 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1263.39 ms. Allocated memory is still 130.0 MB. Free memory was 91.5 MB in the beginning and 100.1 MB in the end (delta: -8.7 MB). Peak memory consumption was 41.5 MB. Max. memory is 16.1 GB. * TraceAbstraction took 6987.37 ms. Allocated memory was 130.0 MB in the beginning and 169.9 MB in the end (delta: 39.8 MB). Free memory was 99.4 MB in the beginning and 86.3 MB in the end (delta: 13.1 MB). Peak memory consumption was 98.1 MB. Max. memory is 16.1 GB. * Witness Printer took 143.21 ms. Allocated memory is still 169.9 MB. Free memory was 86.3 MB in the beginning and 77.8 MB in the end (delta: 8.5 MB). Peak memory consumption was 8.4 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 932]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 932]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 932]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 93 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 6.8s, OverallIterations: 11, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.3s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 1028 SDtfs, 1366 SDslu, 1800 SDs, 0 SdLazy, 263 SolverSat, 37 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.5s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 77 GetRequests, 22 SyntacticMatches, 0 SemanticMatches, 55 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 47 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=302occurred in iteration=9, InterpolantAutomatonStates: 65, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 11 MinimizatonAttempts, 1248 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 39 LocationsWithAnnotation, 39 PreInvPairs, 204 NumberOfFragments, 1061 HoareAnnotationTreeSize, 39 FomulaSimplifications, 189890 FormulaSimplificationTreeSizeReduction, 1.1s HoareSimplificationTime, 39 FomulaSimplificationsInter, 8055 FormulaSimplificationTreeSizeReductionInter, 2.2s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 0.8s InterpolantComputationTime, 319 NumberOfCodeBlocks, 319 NumberOfCodeBlocksAsserted, 11 NumberOfCheckSat, 308 ConstructedInterpolants, 0 QuantifiedInterpolants, 687 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 11 InterpolantComputations, 11 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 521]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && !(pumpRunning == 0)) && !(\result == 0)) && tmp == 0) && 1 == systemActive - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 192]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 548]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 104]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 477]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 192]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0)) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && \result == 0) && !(tmp == 0)) - InvariantResult [Line: 291]: Loop Invariant Derived loop invariant: (((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) - InvariantResult [Line: 104]: Loop Invariant Derived loop invariant: (((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 112]: Loop Invariant Derived loop invariant: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 280]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || (((((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) && tmp == 0) && \result == 0) && !(tmp___0 == 0)) && !(tmp == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 78]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 112]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || (((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && \result == 0) - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: ((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || ((((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && tmp == 0) && \result == 0) && !(tmp___0 == 0))) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1) - InvariantResult [Line: 104]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 301]: Loop Invariant Derived loop invariant: (((((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 1 == systemActive) && waterLevel == 1) || (((splverifierCounter == 0 && !(pumpRunning == 0)) && tmp == 0) && 1 == systemActive)) || ((((methaneLevelCritical == systemActive && splverifierCounter == 0) && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1)) || ((((splverifierCounter == 0 && pumpRunning == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) - InvariantResult [Line: 538]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 112]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 192]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-10-28 23:58:52,545 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_9b58748c-012f-4ec7-81aa-6b2e6a1b9858/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...