./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version b2eff8ba Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 4c4adbf609ddd472cb6a462753c6f5cc9af64c97af02da4060f4102700285790 .............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................. Execution finished normally Writing output log to file Ultimate.log Result: TRUE --- Real Ultimate output --- This is Ultimate 0.2.1-dev-b2eff8b [2021-10-29 00:00:30,671 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-10-29 00:00:30,675 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-10-29 00:00:30,742 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-10-29 00:00:30,742 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-10-29 00:00:30,747 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-10-29 00:00:30,750 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-10-29 00:00:30,754 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-10-29 00:00:30,757 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-10-29 00:00:30,765 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-10-29 00:00:30,766 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-10-29 00:00:30,768 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-10-29 00:00:30,768 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-10-29 00:00:30,771 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-10-29 00:00:30,773 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-10-29 00:00:30,781 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-10-29 00:00:30,784 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-10-29 00:00:30,785 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-10-29 00:00:30,787 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-10-29 00:00:30,794 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-10-29 00:00:30,796 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-10-29 00:00:30,798 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-10-29 00:00:30,802 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-10-29 00:00:30,803 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-10-29 00:00:30,811 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-10-29 00:00:30,811 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-10-29 00:00:30,811 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-10-29 00:00:30,812 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-10-29 00:00:30,813 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-10-29 00:00:30,814 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-10-29 00:00:30,814 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-10-29 00:00:30,815 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-10-29 00:00:30,816 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-10-29 00:00:30,817 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-10-29 00:00:30,818 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-10-29 00:00:30,818 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-10-29 00:00:30,819 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-10-29 00:00:30,819 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-10-29 00:00:30,820 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-10-29 00:00:30,821 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-10-29 00:00:30,821 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-10-29 00:00:30,822 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-10-29 00:00:30,848 INFO L113 SettingsManager]: Loading preferences was successful [2021-10-29 00:00:30,848 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-10-29 00:00:30,849 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-10-29 00:00:30,849 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-10-29 00:00:30,850 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-10-29 00:00:30,850 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-10-29 00:00:30,850 INFO L138 SettingsManager]: * Use SBE=true [2021-10-29 00:00:30,851 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-10-29 00:00:30,851 INFO L138 SettingsManager]: * sizeof long=4 [2021-10-29 00:00:30,851 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-10-29 00:00:30,851 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-10-29 00:00:30,852 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-10-29 00:00:30,852 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-10-29 00:00:30,852 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-10-29 00:00:30,852 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-10-29 00:00:30,852 INFO L138 SettingsManager]: * sizeof long double=12 [2021-10-29 00:00:30,853 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-10-29 00:00:30,853 INFO L138 SettingsManager]: * Use constant arrays=true [2021-10-29 00:00:30,853 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-10-29 00:00:30,853 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-10-29 00:00:30,853 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-10-29 00:00:30,854 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-10-29 00:00:30,854 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-29 00:00:30,854 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-10-29 00:00:30,854 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-10-29 00:00:30,854 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-10-29 00:00:30,855 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-10-29 00:00:30,855 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-10-29 00:00:30,855 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-10-29 00:00:30,855 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-10-29 00:00:30,855 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-10-29 00:00:30,856 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-10-29 00:00:30,856 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 4c4adbf609ddd472cb6a462753c6f5cc9af64c97af02da4060f4102700285790 [2021-10-29 00:00:31,109 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-10-29 00:00:31,134 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-10-29 00:00:31,137 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-10-29 00:00:31,139 INFO L271 PluginConnector]: Initializing CDTParser... [2021-10-29 00:00:31,139 INFO L275 PluginConnector]: CDTParser initialized [2021-10-29 00:00:31,140 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/../../sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c [2021-10-29 00:00:31,218 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/data/3c2bb072c/e234c261701a486c94e3abe361a25861/FLAG88f477b85 [2021-10-29 00:00:31,724 INFO L306 CDTParser]: Found 1 translation units. [2021-10-29 00:00:31,732 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c [2021-10-29 00:00:31,745 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/data/3c2bb072c/e234c261701a486c94e3abe361a25861/FLAG88f477b85 [2021-10-29 00:00:32,072 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/data/3c2bb072c/e234c261701a486c94e3abe361a25861 [2021-10-29 00:00:32,074 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-10-29 00:00:32,076 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-10-29 00:00:32,078 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-10-29 00:00:32,078 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-10-29 00:00:32,082 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-10-29 00:00:32,082 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,083 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@11cb1c60 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32, skipping insertion in model container [2021-10-29 00:00:32,084 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,090 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-10-29 00:00:32,159 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-10-29 00:00:32,429 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c[8617,8630] [2021-10-29 00:00:32,503 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-29 00:00:32,520 INFO L203 MainTranslator]: Completed pre-run [2021-10-29 00:00:32,584 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/sv-benchmarks/c/product-lines/minepump_spec3_product45.cil.c[8617,8630] [2021-10-29 00:00:32,615 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-10-29 00:00:32,634 INFO L208 MainTranslator]: Completed translation [2021-10-29 00:00:32,634 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32 WrapperNode [2021-10-29 00:00:32,635 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-10-29 00:00:32,636 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-10-29 00:00:32,636 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-10-29 00:00:32,636 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-10-29 00:00:32,643 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,660 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,720 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-10-29 00:00:32,721 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-10-29 00:00:32,721 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-10-29 00:00:32,721 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-10-29 00:00:32,729 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,729 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,735 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,736 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,750 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,758 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,774 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,780 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-10-29 00:00:32,781 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-10-29 00:00:32,781 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-10-29 00:00:32,781 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-10-29 00:00:32,783 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (1/1) ... [2021-10-29 00:00:32,807 INFO L170 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-10-29 00:00:32,819 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/z3 [2021-10-29 00:00:32,829 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-10-29 00:00:32,831 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-10-29 00:00:32,867 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-10-29 00:00:32,867 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-10-29 00:00:32,867 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-10-29 00:00:32,867 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-10-29 00:00:33,833 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-10-29 00:00:33,834 INFO L299 CfgBuilder]: Removed 198 assume(true) statements. [2021-10-29 00:00:33,836 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.10 12:00:33 BoogieIcfgContainer [2021-10-29 00:00:33,836 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-10-29 00:00:33,838 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-10-29 00:00:33,838 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-10-29 00:00:33,841 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-10-29 00:00:33,841 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 29.10 12:00:32" (1/3) ... [2021-10-29 00:00:33,842 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22271372 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.10 12:00:33, skipping insertion in model container [2021-10-29 00:00:33,842 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.10 12:00:32" (2/3) ... [2021-10-29 00:00:33,843 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22271372 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.10 12:00:33, skipping insertion in model container [2021-10-29 00:00:33,843 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.10 12:00:33" (3/3) ... [2021-10-29 00:00:33,844 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product45.cil.c [2021-10-29 00:00:33,849 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-10-29 00:00:33,850 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-10-29 00:00:33,898 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-10-29 00:00:33,904 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-10-29 00:00:33,905 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-10-29 00:00:33,923 INFO L276 IsEmpty]: Start isEmpty. Operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:33,929 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-10-29 00:00:33,929 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:33,930 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:33,930 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:33,935 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:33,936 INFO L85 PathProgramCache]: Analyzing trace with hash 1981233963, now seen corresponding path program 1 times [2021-10-29 00:00:33,944 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:33,945 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1363468895] [2021-10-29 00:00:33,945 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:33,946 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:34,158 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:34,288 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:34,289 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:34,289 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1363468895] [2021-10-29 00:00:34,290 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1363468895] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:34,290 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:34,291 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-29 00:00:34,293 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [3295529] [2021-10-29 00:00:34,299 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-10-29 00:00:34,299 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:34,315 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-10-29 00:00:34,317 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-29 00:00:34,323 INFO L87 Difference]: Start difference. First operand has 135 states, 131 states have (on average 1.534351145038168) internal successors, (201), 134 states have internal predecessors, (201), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,383 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:34,385 INFO L93 Difference]: Finished difference Result 264 states and 395 transitions. [2021-10-29 00:00:34,385 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-10-29 00:00:34,387 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-10-29 00:00:34,387 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:34,400 INFO L225 Difference]: With dead ends: 264 [2021-10-29 00:00:34,401 INFO L226 Difference]: Without dead ends: 131 [2021-10-29 00:00:34,405 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-10-29 00:00:34,423 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2021-10-29 00:00:34,464 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 131. [2021-10-29 00:00:34,467 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 131 states, 128 states have (on average 1.4765625) internal successors, (189), 130 states have internal predecessors, (189), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,471 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 131 states to 131 states and 189 transitions. [2021-10-29 00:00:34,473 INFO L78 Accepts]: Start accepts. Automaton has 131 states and 189 transitions. Word has length 18 [2021-10-29 00:00:34,473 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:34,473 INFO L470 AbstractCegarLoop]: Abstraction has 131 states and 189 transitions. [2021-10-29 00:00:34,474 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,474 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states and 189 transitions. [2021-10-29 00:00:34,475 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-10-29 00:00:34,475 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:34,475 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:34,476 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-10-29 00:00:34,476 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:34,477 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:34,477 INFO L85 PathProgramCache]: Analyzing trace with hash 1070203210, now seen corresponding path program 1 times [2021-10-29 00:00:34,477 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:34,478 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [227883235] [2021-10-29 00:00:34,478 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:34,478 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:34,538 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:34,584 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:34,585 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:34,585 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [227883235] [2021-10-29 00:00:34,585 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [227883235] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:34,586 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:34,586 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-29 00:00:34,586 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1044476212] [2021-10-29 00:00:34,587 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-29 00:00:34,588 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:34,588 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-29 00:00:34,589 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-29 00:00:34,589 INFO L87 Difference]: Start difference. First operand 131 states and 189 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,599 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:34,599 INFO L93 Difference]: Finished difference Result 131 states and 189 transitions. [2021-10-29 00:00:34,600 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-29 00:00:34,600 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-10-29 00:00:34,600 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:34,601 INFO L225 Difference]: With dead ends: 131 [2021-10-29 00:00:34,601 INFO L226 Difference]: Without dead ends: 53 [2021-10-29 00:00:34,602 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-29 00:00:34,602 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-29 00:00:34,606 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-29 00:00:34,607 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4615384615384615) internal successors, (76), 52 states have internal predecessors, (76), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,607 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 76 transitions. [2021-10-29 00:00:34,608 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 76 transitions. Word has length 19 [2021-10-29 00:00:34,608 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:34,608 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 76 transitions. [2021-10-29 00:00:34,608 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,609 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 76 transitions. [2021-10-29 00:00:34,609 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-10-29 00:00:34,610 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:34,610 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:34,610 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-10-29 00:00:34,611 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:34,611 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:34,611 INFO L85 PathProgramCache]: Analyzing trace with hash 1049766460, now seen corresponding path program 1 times [2021-10-29 00:00:34,612 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:34,612 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1882135022] [2021-10-29 00:00:34,612 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:34,612 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:34,641 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:34,702 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:34,702 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:34,702 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1882135022] [2021-10-29 00:00:34,703 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1882135022] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:34,703 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:34,703 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-29 00:00:34,703 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2007598105] [2021-10-29 00:00:34,704 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-29 00:00:34,704 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:34,705 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-29 00:00:34,705 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-10-29 00:00:34,705 INFO L87 Difference]: Start difference. First operand 53 states and 76 transitions. Second operand has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,888 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:34,889 INFO L93 Difference]: Finished difference Result 100 states and 146 transitions. [2021-10-29 00:00:34,889 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-29 00:00:34,890 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-10-29 00:00:34,890 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:34,891 INFO L225 Difference]: With dead ends: 100 [2021-10-29 00:00:34,891 INFO L226 Difference]: Without dead ends: 53 [2021-10-29 00:00:34,892 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-29 00:00:34,892 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2021-10-29 00:00:34,897 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2021-10-29 00:00:34,897 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 52 states have (on average 1.4423076923076923) internal successors, (75), 52 states have internal predecessors, (75), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,898 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 75 transitions. [2021-10-29 00:00:34,898 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 75 transitions. Word has length 24 [2021-10-29 00:00:34,898 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:34,899 INFO L470 AbstractCegarLoop]: Abstraction has 53 states and 75 transitions. [2021-10-29 00:00:34,899 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.0) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,899 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 75 transitions. [2021-10-29 00:00:34,900 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-10-29 00:00:34,900 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:34,901 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:34,901 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-10-29 00:00:34,901 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:34,902 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:34,902 INFO L85 PathProgramCache]: Analyzing trace with hash -927374502, now seen corresponding path program 1 times [2021-10-29 00:00:34,902 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:34,903 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [334430272] [2021-10-29 00:00:34,903 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:34,903 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:34,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:34,960 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:34,960 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:34,960 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [334430272] [2021-10-29 00:00:34,961 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [334430272] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:34,961 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:34,961 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-10-29 00:00:34,961 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1438460629] [2021-10-29 00:00:34,962 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-10-29 00:00:34,962 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:34,963 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-10-29 00:00:34,963 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-29 00:00:34,963 INFO L87 Difference]: Start difference. First operand 53 states and 75 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:34,988 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:34,989 INFO L93 Difference]: Finished difference Result 123 states and 177 transitions. [2021-10-29 00:00:34,989 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-10-29 00:00:34,989 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 26 [2021-10-29 00:00:34,990 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:34,991 INFO L225 Difference]: With dead ends: 123 [2021-10-29 00:00:34,991 INFO L226 Difference]: Without dead ends: 76 [2021-10-29 00:00:34,991 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-10-29 00:00:34,992 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2021-10-29 00:00:35,025 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 74. [2021-10-29 00:00:35,026 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 73 states have (on average 1.4246575342465753) internal successors, (104), 73 states have internal predecessors, (104), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,027 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 104 transitions. [2021-10-29 00:00:35,027 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 104 transitions. Word has length 26 [2021-10-29 00:00:35,028 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:35,028 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 104 transitions. [2021-10-29 00:00:35,029 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 2 states have internal predecessors, (26), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,029 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 104 transitions. [2021-10-29 00:00:35,033 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-10-29 00:00:35,033 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:35,033 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:35,034 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-10-29 00:00:35,034 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:35,034 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:35,035 INFO L85 PathProgramCache]: Analyzing trace with hash -44236562, now seen corresponding path program 1 times [2021-10-29 00:00:35,035 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:35,035 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1662187285] [2021-10-29 00:00:35,035 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:35,040 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:35,087 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:35,160 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:35,161 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:35,161 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1662187285] [2021-10-29 00:00:35,161 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1662187285] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:35,162 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:35,162 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-29 00:00:35,162 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1695361745] [2021-10-29 00:00:35,163 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-29 00:00:35,163 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:35,164 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-29 00:00:35,164 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:35,164 INFO L87 Difference]: Start difference. First operand 74 states and 104 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,302 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:35,304 INFO L93 Difference]: Finished difference Result 373 states and 541 transitions. [2021-10-29 00:00:35,305 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-29 00:00:35,305 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-10-29 00:00:35,306 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:35,312 INFO L225 Difference]: With dead ends: 373 [2021-10-29 00:00:35,312 INFO L226 Difference]: Without dead ends: 305 [2021-10-29 00:00:35,314 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-29 00:00:35,314 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 305 states. [2021-10-29 00:00:35,333 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 305 to 121. [2021-10-29 00:00:35,334 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 121 states, 120 states have (on average 1.3916666666666666) internal successors, (167), 120 states have internal predecessors, (167), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,335 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 121 states to 121 states and 167 transitions. [2021-10-29 00:00:35,335 INFO L78 Accepts]: Start accepts. Automaton has 121 states and 167 transitions. Word has length 32 [2021-10-29 00:00:35,336 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:35,336 INFO L470 AbstractCegarLoop]: Abstraction has 121 states and 167 transitions. [2021-10-29 00:00:35,336 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,336 INFO L276 IsEmpty]: Start isEmpty. Operand 121 states and 167 transitions. [2021-10-29 00:00:35,337 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-29 00:00:35,338 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:35,338 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:35,338 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-10-29 00:00:35,338 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:35,339 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:35,339 INFO L85 PathProgramCache]: Analyzing trace with hash -1115283092, now seen corresponding path program 1 times [2021-10-29 00:00:35,339 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:35,340 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1547525312] [2021-10-29 00:00:35,340 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:35,340 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:35,363 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:35,418 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:35,418 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:35,419 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1547525312] [2021-10-29 00:00:35,419 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1547525312] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:35,419 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:35,419 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-10-29 00:00:35,419 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [155060663] [2021-10-29 00:00:35,420 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-29 00:00:35,420 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:35,421 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-29 00:00:35,421 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-29 00:00:35,421 INFO L87 Difference]: Start difference. First operand 121 states and 167 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,540 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:35,541 INFO L93 Difference]: Finished difference Result 250 states and 352 transitions. [2021-10-29 00:00:35,541 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-29 00:00:35,542 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-29 00:00:35,542 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:35,543 INFO L225 Difference]: With dead ends: 250 [2021-10-29 00:00:35,544 INFO L226 Difference]: Without dead ends: 182 [2021-10-29 00:00:35,544 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-29 00:00:35,545 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2021-10-29 00:00:35,562 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 179. [2021-10-29 00:00:35,563 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3932584269662922) internal successors, (248), 178 states have internal predecessors, (248), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,564 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 248 transitions. [2021-10-29 00:00:35,564 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 248 transitions. Word has length 33 [2021-10-29 00:00:35,572 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:35,572 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 248 transitions. [2021-10-29 00:00:35,572 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,572 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 248 transitions. [2021-10-29 00:00:35,573 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-29 00:00:35,574 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:35,574 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:35,574 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-10-29 00:00:35,574 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:35,575 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:35,575 INFO L85 PathProgramCache]: Analyzing trace with hash -2126400342, now seen corresponding path program 1 times [2021-10-29 00:00:35,575 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:35,575 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1303849022] [2021-10-29 00:00:35,576 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:35,576 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:35,594 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:35,625 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:35,625 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:35,625 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1303849022] [2021-10-29 00:00:35,626 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1303849022] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:35,626 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:35,626 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-29 00:00:35,626 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [220311392] [2021-10-29 00:00:35,627 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-29 00:00:35,627 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:35,627 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-29 00:00:35,628 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-29 00:00:35,628 INFO L87 Difference]: Start difference. First operand 179 states and 248 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,680 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:35,681 INFO L93 Difference]: Finished difference Result 497 states and 700 transitions. [2021-10-29 00:00:35,681 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-29 00:00:35,681 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-29 00:00:35,682 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:35,684 INFO L225 Difference]: With dead ends: 497 [2021-10-29 00:00:35,684 INFO L226 Difference]: Without dead ends: 370 [2021-10-29 00:00:35,685 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:35,686 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 370 states. [2021-10-29 00:00:35,703 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 370 to 179. [2021-10-29 00:00:35,704 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 178 states have (on average 1.3820224719101124) internal successors, (246), 178 states have internal predecessors, (246), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,705 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 246 transitions. [2021-10-29 00:00:35,705 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 246 transitions. Word has length 33 [2021-10-29 00:00:35,705 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:35,706 INFO L470 AbstractCegarLoop]: Abstraction has 179 states and 246 transitions. [2021-10-29 00:00:35,706 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 4 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,706 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 246 transitions. [2021-10-29 00:00:35,707 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2021-10-29 00:00:35,707 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:35,707 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:35,707 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-10-29 00:00:35,708 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:35,708 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:35,708 INFO L85 PathProgramCache]: Analyzing trace with hash -1868234904, now seen corresponding path program 1 times [2021-10-29 00:00:35,708 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:35,709 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1622308090] [2021-10-29 00:00:35,709 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:35,709 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:35,725 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:35,767 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:35,767 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:35,767 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1622308090] [2021-10-29 00:00:35,767 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1622308090] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:35,767 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:35,768 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-29 00:00:35,768 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1705281151] [2021-10-29 00:00:35,768 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-29 00:00:35,768 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:35,769 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-29 00:00:35,770 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:35,770 INFO L87 Difference]: Start difference. First operand 179 states and 246 transitions. Second operand has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,845 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:35,845 INFO L93 Difference]: Finished difference Result 540 states and 754 transitions. [2021-10-29 00:00:35,846 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-29 00:00:35,846 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 33 [2021-10-29 00:00:35,847 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:35,849 INFO L225 Difference]: With dead ends: 540 [2021-10-29 00:00:35,849 INFO L226 Difference]: Without dead ends: 367 [2021-10-29 00:00:35,850 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-29 00:00:35,850 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 367 states. [2021-10-29 00:00:35,870 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 367 to 188. [2021-10-29 00:00:35,870 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 188 states, 187 states have (on average 1.3529411764705883) internal successors, (253), 187 states have internal predecessors, (253), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,871 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 188 states to 188 states and 253 transitions. [2021-10-29 00:00:35,871 INFO L78 Accepts]: Start accepts. Automaton has 188 states and 253 transitions. Word has length 33 [2021-10-29 00:00:35,872 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:35,873 INFO L470 AbstractCegarLoop]: Abstraction has 188 states and 253 transitions. [2021-10-29 00:00:35,873 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.6) internal successors, (33), 5 states have internal predecessors, (33), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:35,873 INFO L276 IsEmpty]: Start isEmpty. Operand 188 states and 253 transitions. [2021-10-29 00:00:35,875 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-29 00:00:35,875 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:35,875 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:35,876 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-10-29 00:00:35,876 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:35,877 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:35,877 INFO L85 PathProgramCache]: Analyzing trace with hash 941421312, now seen corresponding path program 1 times [2021-10-29 00:00:35,877 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:35,877 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [428755184] [2021-10-29 00:00:35,878 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:35,878 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:35,911 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:35,997 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:35,997 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:35,998 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [428755184] [2021-10-29 00:00:35,998 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [428755184] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:35,998 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:35,998 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-29 00:00:35,998 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1421139481] [2021-10-29 00:00:35,999 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-29 00:00:35,999 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:35,999 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-29 00:00:36,000 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-29 00:00:36,000 INFO L87 Difference]: Start difference. First operand 188 states and 253 transitions. Second operand has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:36,258 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:36,260 INFO L93 Difference]: Finished difference Result 1177 states and 1553 transitions. [2021-10-29 00:00:36,261 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-10-29 00:00:36,261 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-29 00:00:36,262 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:36,268 INFO L225 Difference]: With dead ends: 1177 [2021-10-29 00:00:36,268 INFO L226 Difference]: Without dead ends: 995 [2021-10-29 00:00:36,272 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-10-29 00:00:36,273 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 995 states. [2021-10-29 00:00:36,316 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 995 to 356. [2021-10-29 00:00:36,320 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 356 states, 355 states have (on average 1.3295774647887324) internal successors, (472), 355 states have internal predecessors, (472), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:36,321 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 356 states to 356 states and 472 transitions. [2021-10-29 00:00:36,321 INFO L78 Accepts]: Start accepts. Automaton has 356 states and 472 transitions. Word has length 36 [2021-10-29 00:00:36,323 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:36,323 INFO L470 AbstractCegarLoop]: Abstraction has 356 states and 472 transitions. [2021-10-29 00:00:36,323 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:36,323 INFO L276 IsEmpty]: Start isEmpty. Operand 356 states and 472 transitions. [2021-10-29 00:00:36,325 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-10-29 00:00:36,325 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:36,325 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:36,325 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-10-29 00:00:36,326 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:36,326 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:36,326 INFO L85 PathProgramCache]: Analyzing trace with hash 1621479682, now seen corresponding path program 1 times [2021-10-29 00:00:36,326 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:36,328 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [368063693] [2021-10-29 00:00:36,329 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:36,329 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:36,366 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:36,440 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:36,440 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:36,440 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [368063693] [2021-10-29 00:00:36,441 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [368063693] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:36,441 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:36,441 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-29 00:00:36,441 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [634569986] [2021-10-29 00:00:36,442 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-29 00:00:36,443 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:36,443 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-29 00:00:36,444 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:36,444 INFO L87 Difference]: Start difference. First operand 356 states and 472 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:36,647 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:36,648 INFO L93 Difference]: Finished difference Result 930 states and 1259 transitions. [2021-10-29 00:00:36,648 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-29 00:00:36,648 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-10-29 00:00:36,648 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:36,652 INFO L225 Difference]: With dead ends: 930 [2021-10-29 00:00:36,652 INFO L226 Difference]: Without dead ends: 580 [2021-10-29 00:00:36,653 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-29 00:00:36,654 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 580 states. [2021-10-29 00:00:36,693 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 580 to 302. [2021-10-29 00:00:36,694 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 302 states, 301 states have (on average 1.2923588039867109) internal successors, (389), 301 states have internal predecessors, (389), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:36,695 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 302 states to 302 states and 389 transitions. [2021-10-29 00:00:36,695 INFO L78 Accepts]: Start accepts. Automaton has 302 states and 389 transitions. Word has length 36 [2021-10-29 00:00:36,696 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:36,696 INFO L470 AbstractCegarLoop]: Abstraction has 302 states and 389 transitions. [2021-10-29 00:00:36,696 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:36,696 INFO L276 IsEmpty]: Start isEmpty. Operand 302 states and 389 transitions. [2021-10-29 00:00:36,697 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2021-10-29 00:00:36,697 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:36,697 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:36,697 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-10-29 00:00:36,698 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:36,698 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:36,698 INFO L85 PathProgramCache]: Analyzing trace with hash 886341574, now seen corresponding path program 1 times [2021-10-29 00:00:36,698 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:36,701 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1098960890] [2021-10-29 00:00:36,701 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:36,701 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:36,721 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:36,784 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:36,784 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:36,785 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1098960890] [2021-10-29 00:00:36,785 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1098960890] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:36,785 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:36,785 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-10-29 00:00:36,785 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [105689743] [2021-10-29 00:00:36,786 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-10-29 00:00:36,786 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:36,792 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-10-29 00:00:36,792 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-10-29 00:00:36,792 INFO L87 Difference]: Start difference. First operand 302 states and 389 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,100 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:37,100 INFO L93 Difference]: Finished difference Result 889 states and 1138 transitions. [2021-10-29 00:00:37,101 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-10-29 00:00:37,101 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 37 [2021-10-29 00:00:37,102 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:37,105 INFO L225 Difference]: With dead ends: 889 [2021-10-29 00:00:37,106 INFO L226 Difference]: Without dead ends: 593 [2021-10-29 00:00:37,107 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=65, Invalid=117, Unknown=0, NotChecked=0, Total=182 [2021-10-29 00:00:37,108 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 593 states. [2021-10-29 00:00:37,156 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 593 to 282. [2021-10-29 00:00:37,157 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2526690391459074) internal successors, (352), 281 states have internal predecessors, (352), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,158 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 352 transitions. [2021-10-29 00:00:37,158 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 352 transitions. Word has length 37 [2021-10-29 00:00:37,158 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:37,159 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 352 transitions. [2021-10-29 00:00:37,159 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 7 states have internal predecessors, (37), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,159 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 352 transitions. [2021-10-29 00:00:37,160 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-29 00:00:37,160 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:37,161 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:37,161 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-10-29 00:00:37,161 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:37,161 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:37,161 INFO L85 PathProgramCache]: Analyzing trace with hash 2123545264, now seen corresponding path program 1 times [2021-10-29 00:00:37,162 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:37,162 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2030329208] [2021-10-29 00:00:37,162 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:37,162 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:37,179 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:37,242 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-29 00:00:37,243 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:37,243 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2030329208] [2021-10-29 00:00:37,248 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2030329208] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:37,248 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:37,248 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-29 00:00:37,248 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1968538757] [2021-10-29 00:00:37,249 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-29 00:00:37,249 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:37,249 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-29 00:00:37,250 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:37,250 INFO L87 Difference]: Start difference. First operand 282 states and 352 transitions. Second operand has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,328 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:37,328 INFO L93 Difference]: Finished difference Result 653 states and 819 transitions. [2021-10-29 00:00:37,329 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-10-29 00:00:37,329 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-29 00:00:37,330 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:37,335 INFO L225 Difference]: With dead ends: 653 [2021-10-29 00:00:37,335 INFO L226 Difference]: Without dead ends: 377 [2021-10-29 00:00:37,336 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-10-29 00:00:37,337 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 377 states. [2021-10-29 00:00:37,389 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 377 to 282. [2021-10-29 00:00:37,389 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 282 states, 281 states have (on average 1.2384341637010676) internal successors, (348), 281 states have internal predecessors, (348), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,391 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 282 states to 282 states and 348 transitions. [2021-10-29 00:00:37,391 INFO L78 Accepts]: Start accepts. Automaton has 282 states and 348 transitions. Word has length 53 [2021-10-29 00:00:37,392 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:37,393 INFO L470 AbstractCegarLoop]: Abstraction has 282 states and 348 transitions. [2021-10-29 00:00:37,393 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.2) internal successors, (51), 5 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,393 INFO L276 IsEmpty]: Start isEmpty. Operand 282 states and 348 transitions. [2021-10-29 00:00:37,394 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-10-29 00:00:37,394 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:37,394 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:37,394 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-10-29 00:00:37,394 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:37,395 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:37,395 INFO L85 PathProgramCache]: Analyzing trace with hash 2051158706, now seen corresponding path program 1 times [2021-10-29 00:00:37,395 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:37,395 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [333347530] [2021-10-29 00:00:37,395 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:37,396 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:37,421 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:37,461 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-10-29 00:00:37,462 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:37,462 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [333347530] [2021-10-29 00:00:37,462 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [333347530] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:37,462 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:37,462 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-29 00:00:37,463 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [234350637] [2021-10-29 00:00:37,463 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-10-29 00:00:37,464 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:37,464 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-10-29 00:00:37,465 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-10-29 00:00:37,465 INFO L87 Difference]: Start difference. First operand 282 states and 348 transitions. Second operand has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,523 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:37,523 INFO L93 Difference]: Finished difference Result 600 states and 751 transitions. [2021-10-29 00:00:37,523 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-10-29 00:00:37,524 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 53 [2021-10-29 00:00:37,524 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:37,526 INFO L225 Difference]: With dead ends: 600 [2021-10-29 00:00:37,526 INFO L226 Difference]: Without dead ends: 324 [2021-10-29 00:00:37,527 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:37,527 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 324 states. [2021-10-29 00:00:37,556 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 324 to 240. [2021-10-29 00:00:37,557 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2426778242677825) internal successors, (297), 239 states have internal predecessors, (297), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,558 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 297 transitions. [2021-10-29 00:00:37,558 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 297 transitions. Word has length 53 [2021-10-29 00:00:37,559 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:37,559 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 297 transitions. [2021-10-29 00:00:37,559 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,559 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 297 transitions. [2021-10-29 00:00:37,560 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2021-10-29 00:00:37,560 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:37,560 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:37,561 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-10-29 00:00:37,561 INFO L402 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:37,561 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:37,561 INFO L85 PathProgramCache]: Analyzing trace with hash 1485859958, now seen corresponding path program 1 times [2021-10-29 00:00:37,562 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:37,562 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [526208903] [2021-10-29 00:00:37,562 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:37,562 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:37,582 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:37,618 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-10-29 00:00:37,618 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:37,619 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [526208903] [2021-10-29 00:00:37,619 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [526208903] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:37,619 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:37,619 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-10-29 00:00:37,619 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1257126335] [2021-10-29 00:00:37,620 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-29 00:00:37,620 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:37,620 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-29 00:00:37,620 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:37,620 INFO L87 Difference]: Start difference. First operand 240 states and 297 transitions. Second operand has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,728 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:37,728 INFO L93 Difference]: Finished difference Result 612 states and 756 transitions. [2021-10-29 00:00:37,729 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-29 00:00:37,729 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 54 [2021-10-29 00:00:37,729 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:37,731 INFO L225 Difference]: With dead ends: 612 [2021-10-29 00:00:37,731 INFO L226 Difference]: Without dead ends: 378 [2021-10-29 00:00:37,732 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-29 00:00:37,732 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 378 states. [2021-10-29 00:00:37,776 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 378 to 240. [2021-10-29 00:00:37,777 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2259414225941423) internal successors, (293), 239 states have internal predecessors, (293), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,778 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 293 transitions. [2021-10-29 00:00:37,779 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 293 transitions. Word has length 54 [2021-10-29 00:00:37,779 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:37,779 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 293 transitions. [2021-10-29 00:00:37,779 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.8) internal successors, (54), 4 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:37,780 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 293 transitions. [2021-10-29 00:00:37,780 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2021-10-29 00:00:37,780 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:37,781 INFO L513 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:37,781 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2021-10-29 00:00:37,781 INFO L402 AbstractCegarLoop]: === Iteration 15 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:37,781 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:37,782 INFO L85 PathProgramCache]: Analyzing trace with hash 675182755, now seen corresponding path program 1 times [2021-10-29 00:00:37,782 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:37,782 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1154110688] [2021-10-29 00:00:37,782 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:37,782 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:37,802 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:37,865 INFO L134 CoverageAnalysis]: Checked inductivity of 16 backedges. 5 proven. 0 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-10-29 00:00:37,865 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:37,866 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1154110688] [2021-10-29 00:00:37,866 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1154110688] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:37,866 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:37,866 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-29 00:00:37,866 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1583895023] [2021-10-29 00:00:37,867 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-10-29 00:00:37,867 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:37,867 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-10-29 00:00:37,868 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-10-29 00:00:37,868 INFO L87 Difference]: Start difference. First operand 240 states and 293 transitions. Second operand has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,015 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:38,015 INFO L93 Difference]: Finished difference Result 571 states and 706 transitions. [2021-10-29 00:00:38,016 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-10-29 00:00:38,016 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 56 [2021-10-29 00:00:38,016 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:38,018 INFO L225 Difference]: With dead ends: 571 [2021-10-29 00:00:38,019 INFO L226 Difference]: Without dead ends: 387 [2021-10-29 00:00:38,021 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-10-29 00:00:38,022 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 387 states. [2021-10-29 00:00:38,050 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 387 to 240. [2021-10-29 00:00:38,051 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 240 states, 239 states have (on average 1.2217573221757323) internal successors, (292), 239 states have internal predecessors, (292), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,052 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 292 transitions. [2021-10-29 00:00:38,052 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 292 transitions. Word has length 56 [2021-10-29 00:00:38,052 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:38,053 INFO L470 AbstractCegarLoop]: Abstraction has 240 states and 292 transitions. [2021-10-29 00:00:38,053 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,053 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 292 transitions. [2021-10-29 00:00:38,054 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 78 [2021-10-29 00:00:38,054 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:38,054 INFO L513 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:38,054 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable14 [2021-10-29 00:00:38,055 INFO L402 AbstractCegarLoop]: === Iteration 16 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:38,055 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:38,056 INFO L85 PathProgramCache]: Analyzing trace with hash 666594362, now seen corresponding path program 1 times [2021-10-29 00:00:38,056 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:38,058 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [208550932] [2021-10-29 00:00:38,058 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:38,059 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:38,075 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:38,145 INFO L134 CoverageAnalysis]: Checked inductivity of 50 backedges. 30 proven. 0 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2021-10-29 00:00:38,145 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:38,146 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [208550932] [2021-10-29 00:00:38,148 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [208550932] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:38,148 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:38,148 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-10-29 00:00:38,149 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1945391632] [2021-10-29 00:00:38,149 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-10-29 00:00:38,149 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:38,150 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-10-29 00:00:38,150 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-10-29 00:00:38,150 INFO L87 Difference]: Start difference. First operand 240 states and 292 transitions. Second operand has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,462 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:38,462 INFO L93 Difference]: Finished difference Result 609 states and 743 transitions. [2021-10-29 00:00:38,462 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-10-29 00:00:38,462 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 77 [2021-10-29 00:00:38,463 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:38,465 INFO L225 Difference]: With dead ends: 609 [2021-10-29 00:00:38,465 INFO L226 Difference]: Without dead ends: 425 [2021-10-29 00:00:38,466 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 31 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=104, Invalid=202, Unknown=0, NotChecked=0, Total=306 [2021-10-29 00:00:38,467 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 425 states. [2021-10-29 00:00:38,495 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 425 to 232. [2021-10-29 00:00:38,496 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 232 states, 231 states have (on average 1.2207792207792207) internal successors, (282), 231 states have internal predecessors, (282), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,497 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 232 states to 232 states and 282 transitions. [2021-10-29 00:00:38,497 INFO L78 Accepts]: Start accepts. Automaton has 232 states and 282 transitions. Word has length 77 [2021-10-29 00:00:38,497 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:38,497 INFO L470 AbstractCegarLoop]: Abstraction has 232 states and 282 transitions. [2021-10-29 00:00:38,498 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 8.0) internal successors, (64), 8 states have internal predecessors, (64), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,498 INFO L276 IsEmpty]: Start isEmpty. Operand 232 states and 282 transitions. [2021-10-29 00:00:38,504 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2021-10-29 00:00:38,505 INFO L505 BasicCegarLoop]: Found error trace [2021-10-29 00:00:38,505 INFO L513 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:38,505 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable15 [2021-10-29 00:00:38,505 INFO L402 AbstractCegarLoop]: === Iteration 17 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-10-29 00:00:38,506 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-10-29 00:00:38,506 INFO L85 PathProgramCache]: Analyzing trace with hash 1176968629, now seen corresponding path program 1 times [2021-10-29 00:00:38,506 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-10-29 00:00:38,506 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [417281309] [2021-10-29 00:00:38,507 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-10-29 00:00:38,507 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-10-29 00:00:38,540 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-10-29 00:00:38,594 INFO L134 CoverageAnalysis]: Checked inductivity of 52 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2021-10-29 00:00:38,594 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-10-29 00:00:38,595 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [417281309] [2021-10-29 00:00:38,595 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [417281309] provided 1 perfect and 0 imperfect interpolant sequences [2021-10-29 00:00:38,595 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-10-29 00:00:38,595 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-10-29 00:00:38,595 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [780164158] [2021-10-29 00:00:38,596 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-10-29 00:00:38,596 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-10-29 00:00:38,597 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-10-29 00:00:38,597 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-10-29 00:00:38,597 INFO L87 Difference]: Start difference. First operand 232 states and 282 transitions. Second operand has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,777 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-10-29 00:00:38,777 INFO L93 Difference]: Finished difference Result 887 states and 1096 transitions. [2021-10-29 00:00:38,777 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-10-29 00:00:38,778 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 79 [2021-10-29 00:00:38,778 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-10-29 00:00:38,778 INFO L225 Difference]: With dead ends: 887 [2021-10-29 00:00:38,778 INFO L226 Difference]: Without dead ends: 0 [2021-10-29 00:00:38,780 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-10-29 00:00:38,780 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-10-29 00:00:38,781 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-10-29 00:00:38,781 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,781 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-10-29 00:00:38,781 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 79 [2021-10-29 00:00:38,781 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-10-29 00:00:38,782 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-10-29 00:00:38,782 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 11.6) internal successors, (58), 5 states have internal predecessors, (58), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-10-29 00:00:38,782 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-10-29 00:00:38,782 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-10-29 00:00:38,785 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-10-29 00:00:38,785 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-10-29 00:00:38,786 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-10-29 00:00:38,786 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable16 [2021-10-29 00:00:38,788 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-10-29 00:00:38,793 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:38,795 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,645 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,737 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,788 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,789 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,789 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,791 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,791 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,792 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,793 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,793 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,794 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,794 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,796 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,891 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:39,892 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:40,066 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:40,066 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:40,067 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:40,067 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:40,068 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:40,068 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:40,069 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,078 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,079 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,103 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,103 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,104 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,105 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,106 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,107 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,153 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,153 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,154 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,155 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:41,524 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,571 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,572 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,572 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,579 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,579 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,580 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,582 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,583 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,583 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,584 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,585 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,586 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,586 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,587 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,718 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:42,719 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:43,032 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:43,032 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:43,034 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:43,268 INFO L128 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-10-29 00:00:52,757 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-29 00:00:52,757 INFO L857 garLoopResultBuilder]: For program point L498(lines 498 502) no Hoare annotation was computed. [2021-10-29 00:00:52,757 INFO L853 garLoopResultBuilder]: At program point L168(lines 163 171) the Hoare annotation is: (let ((.cse10 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse9 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9) (and .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse2 .cse3 .cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse5 (= |ULTIMATE.start_getWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse6 .cse7 (= ~waterLevel~0 1)) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 .cse10 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0) .cse2 .cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) .cse4 (<= ~waterLevel~0 1) (not .cse8) .cse5) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse8 .cse9))) [2021-10-29 00:00:52,758 INFO L853 garLoopResultBuilder]: At program point L168-1(lines 163 171) the Hoare annotation is: false [2021-10-29 00:00:52,758 INFO L853 garLoopResultBuilder]: At program point L168-2(lines 163 171) the Hoare annotation is: false [2021-10-29 00:00:52,758 INFO L857 garLoopResultBuilder]: For program point L69(lines 69 82) no Hoare annotation was computed. [2021-10-29 00:00:52,758 INFO L853 garLoopResultBuilder]: At program point L69-1(lines 1 959) the Hoare annotation is: (let ((.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse11 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse13 (= ~waterLevel~0 1)) (.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse17 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse9 (= ~pumpRunning~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse10 (= ~pumpRunning~0 0)) (.cse12 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse16 (not .cse8)) (.cse14 (not .cse2)) (.cse5 (= 1 ~systemActive~0)) (.cse18 (not .cse3)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse15 (not .cse4))) (or (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9) (and .cse1 .cse10 .cse11 .cse3 .cse12 .cse5 .cse13) (and .cse1 .cse10 .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse14 .cse5 .cse13 .cse15) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse1 .cse10 .cse2 .cse3 .cse12 .cse4 (<= ~waterLevel~0 1) .cse16 .cse5 .cse7 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse17 .cse8 .cse9) (and .cse0 .cse1 .cse16 .cse14 .cse5 .cse18 .cse6 .cse7 .cse17 .cse15 .cse9) (and .cse1 .cse10 .cse12 .cse16 .cse14 .cse5 .cse18 .cse7 .cse15)))) [2021-10-29 00:00:52,759 INFO L857 garLoopResultBuilder]: For program point L69-2(lines 69 82) no Hoare annotation was computed. [2021-10-29 00:00:52,759 INFO L853 garLoopResultBuilder]: At program point L69-3(lines 1 959) the Hoare annotation is: false [2021-10-29 00:00:52,759 INFO L857 garLoopResultBuilder]: For program point L69-4(lines 69 82) no Hoare annotation was computed. [2021-10-29 00:00:52,759 INFO L853 garLoopResultBuilder]: At program point L69-5(lines 1 959) the Hoare annotation is: false [2021-10-29 00:00:52,759 INFO L857 garLoopResultBuilder]: For program point L532(lines 532 536) no Hoare annotation was computed. [2021-10-29 00:00:52,759 INFO L857 garLoopResultBuilder]: For program point L532-2(lines 298 304) no Hoare annotation was computed. [2021-10-29 00:00:52,760 INFO L857 garLoopResultBuilder]: For program point L334(lines 334 342) no Hoare annotation was computed. [2021-10-29 00:00:52,760 INFO L857 garLoopResultBuilder]: For program point L334-1(lines 334 342) no Hoare annotation was computed. [2021-10-29 00:00:52,760 INFO L857 garLoopResultBuilder]: For program point L334-2(lines 334 342) no Hoare annotation was computed. [2021-10-29 00:00:52,760 INFO L857 garLoopResultBuilder]: For program point L334-3(lines 334 342) no Hoare annotation was computed. [2021-10-29 00:00:52,760 INFO L857 garLoopResultBuilder]: For program point L334-4(lines 334 342) no Hoare annotation was computed. [2021-10-29 00:00:52,760 INFO L857 garLoopResultBuilder]: For program point L334-5(lines 334 342) no Hoare annotation was computed. [2021-10-29 00:00:52,761 INFO L853 garLoopResultBuilder]: At program point L136(lines 131 139) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) (not .cse2) .cse3 (not .cse4) .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse4 .cse3 (= ULTIMATE.start_main_~tmp~1 1) .cse5 .cse6))) [2021-10-29 00:00:52,761 INFO L853 garLoopResultBuilder]: At program point L136-1(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,761 INFO L853 garLoopResultBuilder]: At program point L136-2(lines 131 139) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1)) (.cse6 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse7 (= 1 ~systemActive~0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (not .cse6) .cse7 (not .cse8) .cse9 .cse10 .cse11 .cse12) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse6 .cse8 .cse5 .cse7 .cse9 .cse10 .cse11 .cse12))) [2021-10-29 00:00:52,761 INFO L853 garLoopResultBuilder]: At program point L136-3(lines 131 139) the Hoare annotation is: (let ((.cse3 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse9 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse13 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse14 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse15 (= ~waterLevel~0 1)) (.cse4 (not .cse9)) (.cse11 (not .cse2)) (.cse12 (not .cse3)) (.cse8 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse16 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse10 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) .cse4 .cse5 .cse6 .cse7) (and .cse8 .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse9 .cse10) (and .cse0 .cse1 .cse4 .cse11 .cse5 .cse12 .cse6 .cse7) (and .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse1 .cse13 .cse2 .cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) .cse14 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse6 .cse7 .cse15) (and .cse0 .cse1 .cse13 .cse14 .cse11 .cse5 .cse12 .cse6 .cse7 .cse15) (and .cse8 .cse0 .cse4 .cse11 .cse5 .cse12 .cse6 .cse7 .cse16 .cse10) (and .cse8 .cse0 .cse2 .cse3 .cse5 .cse6 .cse7 .cse16 .cse9 .cse10)))) [2021-10-29 00:00:52,761 INFO L853 garLoopResultBuilder]: At program point L136-4(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,762 INFO L853 garLoopResultBuilder]: At program point L136-5(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,762 INFO L853 garLoopResultBuilder]: At program point L136-6(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,762 INFO L853 garLoopResultBuilder]: At program point L136-7(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,762 INFO L853 garLoopResultBuilder]: At program point L136-8(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,762 INFO L853 garLoopResultBuilder]: At program point L136-9(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,762 INFO L853 garLoopResultBuilder]: At program point L136-10(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,763 INFO L853 garLoopResultBuilder]: At program point L136-11(lines 131 139) the Hoare annotation is: false [2021-10-29 00:00:52,763 INFO L857 garLoopResultBuilder]: For program point L203(lines 203 207) no Hoare annotation was computed. [2021-10-29 00:00:52,763 INFO L857 garLoopResultBuilder]: For program point L203-1(lines 298 304) no Hoare annotation was computed. [2021-10-29 00:00:52,763 INFO L857 garLoopResultBuilder]: For program point L73(lines 73 79) no Hoare annotation was computed. [2021-10-29 00:00:52,763 INFO L857 garLoopResultBuilder]: For program point L73-2(lines 73 79) no Hoare annotation was computed. [2021-10-29 00:00:52,763 INFO L857 garLoopResultBuilder]: For program point L73-4(lines 73 79) no Hoare annotation was computed. [2021-10-29 00:00:52,764 INFO L853 garLoopResultBuilder]: At program point L305(lines 305 311) the Hoare annotation is: (let ((.cse9 (= ~methaneLevelCritical~0 0)) (.cse12 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse14 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse15 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse16 (= ~waterLevel~0 1)) (.cse4 (not .cse12)) (.cse6 (not .cse9)) (.cse7 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse8 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= 1 ~systemActive~0)) (.cse10 (= ULTIMATE.start_main_~tmp~1 1)) (.cse11 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse17 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse13 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse7 .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse8 .cse9 (<= 2 ~waterLevel~0) .cse5 .cse10 .cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) .cse4 .cse5) (and .cse0 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0) .cse1 .cse14 (= |ULTIMATE.start_isHighWaterLevel_#res| 0) .cse15 .cse5 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 0) .cse10 .cse11 .cse16) (and .cse0 .cse1 .cse14 .cse15 .cse5 .cse6 .cse10 .cse11 .cse16) (and .cse7 .cse0 .cse4 (not .cse8) .cse5 .cse6 .cse10 .cse11 .cse17 .cse13) (and .cse7 .cse0 .cse8 .cse9 .cse5 .cse10 .cse11 .cse17 .cse12 .cse13)))) [2021-10-29 00:00:52,764 INFO L853 garLoopResultBuilder]: At program point L305-1(lines 305 311) the Hoare annotation is: false [2021-10-29 00:00:52,764 INFO L853 garLoopResultBuilder]: At program point L305-2(lines 305 311) the Hoare annotation is: false [2021-10-29 00:00:52,764 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-29 00:00:52,764 INFO L857 garLoopResultBuilder]: For program point L506(lines 506 512) no Hoare annotation was computed. [2021-10-29 00:00:52,765 INFO L853 garLoopResultBuilder]: At program point L506-1(lines 506 512) the Hoare annotation is: (let ((.cse8 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse7 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse19 (= |ULTIMATE.start_isMethaneAlarm_#res| 0))) (let ((.cse12 (= ~waterLevel~0 1)) (.cse13 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse9 (not .cse19)) (.cse16 (not .cse3)) (.cse10 (= ULTIMATE.start_main_~tmp~1 1)) (.cse11 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse18 (= ULTIMATE.start_processEnvironment_~tmp~3 0)) (.cse14 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse4 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse5 (<= 2 ~waterLevel~0)) (.cse15 (not .cse7)) (.cse6 (= 1 ~systemActive~0)) (.cse17 (not .cse8))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse0 .cse1 .cse7 .cse3 .cse8 .cse9 .cse6 .cse10 .cse11 (<= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp___0~0 1)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse6 .cse12) (and (or (and .cse13 .cse0 .cse6 .cse12 .cse14) (and .cse13 .cse0 .cse5 .cse6 .cse14)) .cse9 .cse15 .cse16 .cse10 .cse11 .cse17) (and .cse0 .cse1 .cse9 .cse15 .cse6 .cse16 .cse10 .cse11 .cse17) (and .cse0 .cse1 .cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1) .cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1) .cse15 .cse6 .cse12 .cse17) (and .cse13 .cse0 .cse7 .cse3 .cse8 .cse6 .cse10 .cse11 .cse18 .cse19 .cse14) (and .cse8 (or (and .cse13 .cse0 .cse7 .cse3 .cse6 .cse12 .cse14) (and .cse13 .cse0 .cse7 .cse3 .cse5 .cse6 .cse14)) .cse10 .cse11 .cse19) (and .cse13 .cse0 .cse9 .cse15 .cse6 .cse16 .cse10 .cse11 .cse18 .cse17 .cse14) (and .cse0 .cse1 .cse2 .cse4 .cse5 .cse15 .cse6 .cse17)))) [2021-10-29 00:00:52,765 INFO L857 garLoopResultBuilder]: For program point L275(lines 275 282) no Hoare annotation was computed. [2021-10-29 00:00:52,765 INFO L860 garLoopResultBuilder]: At program point L275-1(lines 275 282) the Hoare annotation is: true [2021-10-29 00:00:52,765 INFO L857 garLoopResultBuilder]: For program point L176(lines 176 182) no Hoare annotation was computed. [2021-10-29 00:00:52,765 INFO L857 garLoopResultBuilder]: For program point L176-1(lines 176 182) no Hoare annotation was computed. [2021-10-29 00:00:52,765 INFO L857 garLoopResultBuilder]: For program point L176-2(lines 176 182) no Hoare annotation was computed. [2021-10-29 00:00:52,766 INFO L857 garLoopResultBuilder]: For program point L176-3(lines 176 182) no Hoare annotation was computed. [2021-10-29 00:00:52,766 INFO L857 garLoopResultBuilder]: For program point L176-4(lines 176 182) no Hoare annotation was computed. [2021-10-29 00:00:52,766 INFO L857 garLoopResultBuilder]: For program point L176-5(lines 176 182) no Hoare annotation was computed. [2021-10-29 00:00:52,766 INFO L853 garLoopResultBuilder]: At program point L573(lines 1 959) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-10-29 00:00:52,766 INFO L857 garLoopResultBuilder]: For program point L111(lines 111 115) no Hoare annotation was computed. [2021-10-29 00:00:52,766 INFO L857 garLoopResultBuilder]: For program point L475(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,766 INFO L857 garLoopResultBuilder]: For program point L475-2(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,767 INFO L857 garLoopResultBuilder]: For program point L475-3(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,767 INFO L857 garLoopResultBuilder]: For program point L475-5(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,767 INFO L857 garLoopResultBuilder]: For program point L475-6(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,767 INFO L857 garLoopResultBuilder]: For program point L475-8(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,767 INFO L857 garLoopResultBuilder]: For program point L475-9(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,767 INFO L857 garLoopResultBuilder]: For program point L475-11(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,768 INFO L857 garLoopResultBuilder]: For program point L475-12(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,768 INFO L857 garLoopResultBuilder]: For program point L475-14(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,768 INFO L857 garLoopResultBuilder]: For program point L475-15(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,768 INFO L857 garLoopResultBuilder]: For program point L475-17(lines 475 479) no Hoare annotation was computed. [2021-10-29 00:00:52,768 INFO L853 garLoopResultBuilder]: At program point L542(lines 495 543) the Hoare annotation is: false [2021-10-29 00:00:52,768 INFO L853 garLoopResultBuilder]: At program point L181(lines 172 185) the Hoare annotation is: false [2021-10-29 00:00:52,769 INFO L853 garLoopResultBuilder]: At program point L181-1(lines 172 185) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse5 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4 .cse5) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse5 (= ULTIMATE.start_main_~tmp~1 1) (= |ULTIMATE.start_valid_product_#res| 1) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 (= ~waterLevel~0 1)))) [2021-10-29 00:00:52,769 INFO L853 garLoopResultBuilder]: At program point L181-2(lines 172 185) the Hoare annotation is: false [2021-10-29 00:00:52,769 INFO L853 garLoopResultBuilder]: At program point L181-3(lines 172 185) the Hoare annotation is: false [2021-10-29 00:00:52,769 INFO L853 garLoopResultBuilder]: At program point L181-4(lines 172 185) the Hoare annotation is: false [2021-10-29 00:00:52,769 INFO L853 garLoopResultBuilder]: At program point L181-5(lines 172 185) the Hoare annotation is: false [2021-10-29 00:00:52,769 INFO L853 garLoopResultBuilder]: At program point L248(lines 244 250) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ULTIMATE.start_main_~tmp~1 1) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1)) [2021-10-29 00:00:52,770 INFO L853 garLoopResultBuilder]: At program point L481(lines 466 484) the Hoare annotation is: false [2021-10-29 00:00:52,770 INFO L853 garLoopResultBuilder]: At program point L481-1(lines 466 484) the Hoare annotation is: (let ((.cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) (.cse3 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 1)) (.cse4 (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= 1 ~systemActive~0)) (.cse8 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) .cse4 .cse5 .cse6 .cse7 (= ~waterLevel~0 1)) (and .cse0 .cse1 .cse2 .cse3 (<= ~waterLevel~0 1) (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4 .cse5 .cse6 .cse8 .cse7) (and .cse0 .cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (<= 2 ~waterLevel~0) .cse6 .cse8 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)))) [2021-10-29 00:00:52,770 INFO L853 garLoopResultBuilder]: At program point L481-2(lines 466 484) the Hoare annotation is: false [2021-10-29 00:00:52,770 INFO L853 garLoopResultBuilder]: At program point L481-3(lines 466 484) the Hoare annotation is: false [2021-10-29 00:00:52,770 INFO L853 garLoopResultBuilder]: At program point L481-4(lines 466 484) the Hoare annotation is: false [2021-10-29 00:00:52,770 INFO L853 garLoopResultBuilder]: At program point L481-5(lines 466 484) the Hoare annotation is: false [2021-10-29 00:00:52,771 INFO L853 garLoopResultBuilder]: At program point L581(lines 576 584) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res| 1) (= ~waterLevel~0 1)) [2021-10-29 00:00:52,771 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-10-29 00:00:52,771 INFO L860 garLoopResultBuilder]: At program point L284(lines 265 287) the Hoare annotation is: true [2021-10-29 00:00:52,771 INFO L857 garLoopResultBuilder]: For program point L516(lines 516 522) no Hoare annotation was computed. [2021-10-29 00:00:52,771 INFO L853 garLoopResultBuilder]: At program point L516-1(lines 516 522) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse5 (= ~waterLevel~0 1)) (.cse6 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse7 (= ~pumpRunning~0 1)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse4 (= 1 ~systemActive~0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse6 .cse0 .cse2 .cse3 .cse4 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse7) (and .cse0 .cse1 .cse2 .cse3 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4) (and (or (and .cse6 .cse0 .cse4 .cse5 .cse7) (and .cse6 .cse0 .cse8 .cse4 .cse7)) .cse9 .cse10) (and .cse0 .cse1 .cse8 .cse4 .cse9 .cse10))) [2021-10-29 00:00:52,771 INFO L853 garLoopResultBuilder]: At program point L417(lines 410 420) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse2 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse7 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0) (not .cse2) (not .cse3) .cse4 (not .cse5) .cse6 .cse7) (and .cse0 .cse1 .cse3 .cse5 .cse4 (= ULTIMATE.start_main_~tmp~1 1) .cse6 .cse2 .cse7))) [2021-10-29 00:00:52,772 INFO L853 garLoopResultBuilder]: At program point L417-1(lines 410 420) the Hoare annotation is: false [2021-10-29 00:00:52,772 INFO L853 garLoopResultBuilder]: At program point L417-2(lines 410 420) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1)) (.cse3 (= |ULTIMATE.start_isHighWaterLevel_#res| 1)) (.cse4 (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1)) (.cse13 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse7 (<= 2 ~waterLevel~0)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse8 (= 1 ~systemActive~0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse9 (= ULTIMATE.start_main_~tmp~1 1)) (.cse10 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse11 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0)) (.cse12 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse3 .cse4 (not .cse13) .cse7 (not .cse5) .cse8 (not .cse6) .cse9 .cse10 .cse11 .cse12))) [2021-10-29 00:00:52,772 INFO L853 garLoopResultBuilder]: At program point L417-3(lines 410 420) the Hoare annotation is: false [2021-10-29 00:00:52,772 INFO L853 garLoopResultBuilder]: At program point L417-4(lines 410 420) the Hoare annotation is: false [2021-10-29 00:00:52,772 INFO L853 garLoopResultBuilder]: At program point L417-5(lines 410 420) the Hoare annotation is: false [2021-10-29 00:00:52,773 INFO L853 garLoopResultBuilder]: At program point L417-6(lines 410 420) the Hoare annotation is: false [2021-10-29 00:00:52,773 INFO L853 garLoopResultBuilder]: At program point L417-7(lines 410 420) the Hoare annotation is: false [2021-10-29 00:00:52,773 INFO L853 garLoopResultBuilder]: At program point L417-8(lines 410 420) the Hoare annotation is: false [2021-10-29 00:00:52,773 INFO L857 garLoopResultBuilder]: For program point L123(lines 123 127) no Hoare annotation was computed. [2021-10-29 00:00:52,773 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-10-29 00:00:52,773 INFO L857 garLoopResultBuilder]: For program point L356(lines 356 373) no Hoare annotation was computed. [2021-10-29 00:00:52,773 INFO L857 garLoopResultBuilder]: For program point L356-1(lines 356 373) no Hoare annotation was computed. [2021-10-29 00:00:52,774 INFO L857 garLoopResultBuilder]: For program point L356-2(lines 356 373) no Hoare annotation was computed. [2021-10-29 00:00:52,774 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-10-29 00:00:52,774 INFO L857 garLoopResultBuilder]: For program point L590(line 590) no Hoare annotation was computed. [2021-10-29 00:00:52,774 INFO L857 garLoopResultBuilder]: For program point L590-1(line 590) no Hoare annotation was computed. [2021-10-29 00:00:52,774 INFO L857 garLoopResultBuilder]: For program point L590-2(line 590) no Hoare annotation was computed. [2021-10-29 00:00:52,774 INFO L857 garLoopResultBuilder]: For program point L392(lines 392 398) no Hoare annotation was computed. [2021-10-29 00:00:52,774 INFO L857 garLoopResultBuilder]: For program point L392-2(lines 392 398) no Hoare annotation was computed. [2021-10-29 00:00:52,775 INFO L857 garLoopResultBuilder]: For program point L392-4(lines 392 398) no Hoare annotation was computed. [2021-10-29 00:00:52,775 INFO L857 garLoopResultBuilder]: For program point L392-6(lines 392 398) no Hoare annotation was computed. [2021-10-29 00:00:52,775 INFO L857 garLoopResultBuilder]: For program point L392-8(lines 392 398) no Hoare annotation was computed. [2021-10-29 00:00:52,775 INFO L857 garLoopResultBuilder]: For program point L392-10(lines 392 398) no Hoare annotation was computed. [2021-10-29 00:00:52,775 INFO L853 garLoopResultBuilder]: At program point L426(lines 421 429) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_activatePump_~tmp~4 0)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ULTIMATE.start_main_~tmp~1 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse9 (= |ULTIMATE.start_isPumpRunning_#res| 1)) (.cse10 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 (= ULTIMATE.start_processEnvironment_~tmp~3 0) .cse8 .cse9 .cse10) (and .cse0 .cse1 (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 1) (= |ULTIMATE.start_isHighWaterLevel_#res| 1) (= ULTIMATE.start_processEnvironment__wrappee__methaneQuery_~tmp~2 1) .cse2 .cse3 .cse4 (<= 2 ~waterLevel~0) .cse5 .cse6 .cse7 (= ULTIMATE.start_isHighWaterLevel_~tmp~5 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse8 .cse9 .cse10))) [2021-10-29 00:00:52,776 INFO L853 garLoopResultBuilder]: At program point L426-1(lines 421 429) the Hoare annotation is: false [2021-10-29 00:00:52,776 INFO L857 garLoopResultBuilder]: For program point L360(lines 360 368) no Hoare annotation was computed. [2021-10-29 00:00:52,776 INFO L853 garLoopResultBuilder]: At program point L426-2(lines 421 429) the Hoare annotation is: false [2021-10-29 00:00:52,776 INFO L857 garLoopResultBuilder]: For program point L360-1(lines 360 368) no Hoare annotation was computed. [2021-10-29 00:00:52,776 INFO L857 garLoopResultBuilder]: For program point L360-2(lines 360 368) no Hoare annotation was computed. [2021-10-29 00:00:52,776 INFO L857 garLoopResultBuilder]: For program point L63(lines 63 83) no Hoare annotation was computed. [2021-10-29 00:00:52,776 INFO L857 garLoopResultBuilder]: For program point L63-2(lines 63 83) no Hoare annotation was computed. [2021-10-29 00:00:52,777 INFO L857 garLoopResultBuilder]: For program point L63-4(lines 63 83) no Hoare annotation was computed. [2021-10-29 00:00:52,777 INFO L857 garLoopResultBuilder]: For program point L526(lines 526 537) no Hoare annotation was computed. [2021-10-29 00:00:52,777 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-10-29 00:00:52,777 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 590) no Hoare annotation was computed. [2021-10-29 00:00:52,777 INFO L857 garLoopResultBuilder]: For program point L330(lines 330 347) no Hoare annotation was computed. [2021-10-29 00:00:52,777 INFO L857 garLoopResultBuilder]: For program point L330-1(lines 330 347) no Hoare annotation was computed. [2021-10-29 00:00:52,777 INFO L857 garLoopResultBuilder]: For program point L330-2(lines 330 347) no Hoare annotation was computed. [2021-10-29 00:00:52,778 INFO L857 garLoopResultBuilder]: For program point L330-3(lines 330 347) no Hoare annotation was computed. [2021-10-29 00:00:52,778 INFO L857 garLoopResultBuilder]: For program point L330-4(lines 330 347) no Hoare annotation was computed. [2021-10-29 00:00:52,778 INFO L857 garLoopResultBuilder]: For program point L330-5(lines 330 347) no Hoare annotation was computed. [2021-10-29 00:00:52,778 INFO L857 garLoopResultBuilder]: For program point L99(lines 99 103) no Hoare annotation was computed. [2021-10-29 00:00:52,778 INFO L857 garLoopResultBuilder]: For program point L99-3(lines 99 103) no Hoare annotation was computed. [2021-10-29 00:00:52,778 INFO L857 garLoopResultBuilder]: For program point L99-6(lines 99 103) no Hoare annotation was computed. [2021-10-29 00:00:52,779 INFO L853 garLoopResultBuilder]: At program point L298(lines 297 316) the Hoare annotation is: (let ((.cse2 (= |ULTIMATE.start_valid_product_#res| ~systemActive~0)) (.cse3 (= ULTIMATE.start_main_~tmp~1 ~systemActive~0)) (.cse0 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= ULTIMATE.start_main_~tmp~1 1)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse1 .cse2 .cse3 (not (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) .cse4) (and (= ULTIMATE.start_activatePump_~tmp~4 0) .cse0 .cse4 .cse5 .cse6 (= ~pumpRunning~0 1)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse4 .cse5 .cse6))) [2021-10-29 00:00:52,779 INFO L857 garLoopResultBuilder]: For program point L298-1(lines 298 304) no Hoare annotation was computed. [2021-10-29 00:00:52,779 INFO L853 garLoopResultBuilder]: At program point L298-2(lines 297 316) the Hoare annotation is: false [2021-10-29 00:00:52,779 INFO L853 garLoopResultBuilder]: At program point L298-3(lines 297 316) the Hoare annotation is: false [2021-10-29 00:00:52,779 INFO L853 garLoopResultBuilder]: At program point L199-2(lines 199 213) the Hoare annotation is: false [2021-10-29 00:00:52,779 INFO L857 garLoopResultBuilder]: For program point L497(lines 496 541) no Hoare annotation was computed. [2021-10-29 00:00:52,780 INFO L857 garLoopResultBuilder]: For program point L200(line 200) no Hoare annotation was computed. [2021-10-29 00:00:52,783 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-10-29 00:00:52,784 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-10-29 00:00:52,830 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 29.10 12:00:52 BoogieIcfgContainer [2021-10-29 00:00:52,830 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-10-29 00:00:52,830 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-10-29 00:00:52,830 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-10-29 00:00:52,831 INFO L275 PluginConnector]: Witness Printer initialized [2021-10-29 00:00:52,831 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.10 12:00:33" (3/4) ... [2021-10-29 00:00:52,834 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-10-29 00:00:52,857 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-10-29 00:00:52,859 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-10-29 00:00:52,860 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-10-29 00:00:52,862 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-10-29 00:00:52,863 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-10-29 00:00:52,865 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-29 00:00:52,866 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-10-29 00:00:52,890 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1 [2021-10-29 00:00:52,890 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && waterLevel == 1 [2021-10-29 00:00:52,891 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && \result == 1) && tmp___0 <= 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && !(tmp == 0)) [2021-10-29 00:00:52,891 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 2 <= waterLevel) && 1 == systemActive) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp___0 <= 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((tmp == 0 && (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && \result == 1) && \result == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) [2021-10-29 00:00:52,892 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) [2021-10-29 00:00:52,892 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) [2021-10-29 00:00:52,893 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-29 00:00:52,894 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-29 00:00:52,894 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1) [2021-10-29 00:00:52,895 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0) && pumpRunning == 1) [2021-10-29 00:00:52,895 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && \result == 1) && 1 == systemActive) && waterLevel == 1) [2021-10-29 00:00:52,896 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == systemActive) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) [2021-10-29 00:00:52,897 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && tmp == systemActive) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && waterLevel == 1) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 1) && \result == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-29 00:00:52,897 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && \result == 1) && pumpRunning == 1) [2021-10-29 00:00:52,899 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-29 00:00:52,900 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) [2021-10-29 00:00:52,954 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/witness.graphml [2021-10-29 00:00:52,954 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-10-29 00:00:52,956 INFO L168 Benchmark]: Toolchain (without parser) took 20879.57 ms. Allocated memory was 77.6 MB in the beginning and 268.4 MB in the end (delta: 190.8 MB). Free memory was 40.7 MB in the beginning and 153.4 MB in the end (delta: -112.8 MB). Peak memory consumption was 78.0 MB. Max. memory is 16.1 GB. [2021-10-29 00:00:52,956 INFO L168 Benchmark]: CDTParser took 0.25 ms. Allocated memory is still 77.6 MB. Free memory was 58.1 MB in the beginning and 58.1 MB in the end (delta: 37.3 kB). There was no memory consumed. Max. memory is 16.1 GB. [2021-10-29 00:00:52,957 INFO L168 Benchmark]: CACSL2BoogieTranslator took 557.05 ms. Allocated memory was 77.6 MB in the beginning and 94.4 MB in the end (delta: 16.8 MB). Free memory was 40.5 MB in the beginning and 61.1 MB in the end (delta: -20.6 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-29 00:00:52,957 INFO L168 Benchmark]: Boogie Procedure Inliner took 84.07 ms. Allocated memory is still 94.4 MB. Free memory was 61.1 MB in the beginning and 57.0 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-10-29 00:00:52,958 INFO L168 Benchmark]: Boogie Preprocessor took 59.55 ms. Allocated memory is still 94.4 MB. Free memory was 57.0 MB in the beginning and 54.0 MB in the end (delta: 3.0 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-10-29 00:00:52,958 INFO L168 Benchmark]: RCFGBuilder took 1055.38 ms. Allocated memory is still 94.4 MB. Free memory was 54.0 MB in the beginning and 65.9 MB in the end (delta: -11.9 MB). Peak memory consumption was 20.0 MB. Max. memory is 16.1 GB. [2021-10-29 00:00:52,958 INFO L168 Benchmark]: TraceAbstraction took 18992.12 ms. Allocated memory was 94.4 MB in the beginning and 268.4 MB in the end (delta: 174.1 MB). Free memory was 65.4 MB in the beginning and 166.0 MB in the end (delta: -100.6 MB). Peak memory consumption was 161.9 MB. Max. memory is 16.1 GB. [2021-10-29 00:00:52,959 INFO L168 Benchmark]: Witness Printer took 124.15 ms. Allocated memory is still 268.4 MB. Free memory was 166.0 MB in the beginning and 153.4 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. [2021-10-29 00:00:52,961 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.25 ms. Allocated memory is still 77.6 MB. Free memory was 58.1 MB in the beginning and 58.1 MB in the end (delta: 37.3 kB). There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 557.05 ms. Allocated memory was 77.6 MB in the beginning and 94.4 MB in the end (delta: 16.8 MB). Free memory was 40.5 MB in the beginning and 61.1 MB in the end (delta: -20.6 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 84.07 ms. Allocated memory is still 94.4 MB. Free memory was 61.1 MB in the beginning and 57.0 MB in the end (delta: 4.1 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 59.55 ms. Allocated memory is still 94.4 MB. Free memory was 57.0 MB in the beginning and 54.0 MB in the end (delta: 3.0 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1055.38 ms. Allocated memory is still 94.4 MB. Free memory was 54.0 MB in the beginning and 65.9 MB in the end (delta: -11.9 MB). Peak memory consumption was 20.0 MB. Max. memory is 16.1 GB. * TraceAbstraction took 18992.12 ms. Allocated memory was 94.4 MB in the beginning and 268.4 MB in the end (delta: 174.1 MB). Free memory was 65.4 MB in the beginning and 166.0 MB in the end (delta: -100.6 MB). Peak memory consumption was 161.9 MB. Max. memory is 16.1 GB. * Witness Printer took 124.15 ms. Allocated memory is still 268.4 MB. Free memory was 166.0 MB in the beginning and 153.4 MB in the end (delta: 12.6 MB). Peak memory consumption was 12.6 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 590]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 135 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 18.8s, OverallIterations: 17, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 13.9s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 2002 SDtfs, 3011 SDslu, 3594 SDs, 0 SdLazy, 603 SolverSat, 103 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.8s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 149 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 87 ImplicationChecksByTransitivity, 0.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=356occurred in iteration=9, InterpolantAutomatonStates: 112, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 17 MinimizatonAttempts, 2444 StatesRemovedByMinimization, 13 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 57 LocationsWithAnnotation, 57 PreInvPairs, 311 NumberOfFragments, 2066 HoareAnnotationTreeSize, 57 FomulaSimplifications, 49120324 FormulaSimplificationTreeSizeReduction, 4.4s HoareSimplificationTime, 57 FomulaSimplificationsInter, 13289997 FormulaSimplificationTreeSizeReductionInter, 9.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 0.9s InterpolantComputationTime, 699 NumberOfCodeBlocks, 699 NumberOfCodeBlocksAsserted, 17 NumberOfCheckSat, 682 ConstructedInterpolants, 0 QuantifiedInterpolants, 1224 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 17 InterpolantComputations, 17 PerfectInterpolantSequences, 160/160 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 506]: Loop Invariant Derived loop invariant: ((((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 2 <= waterLevel) && 1 == systemActive) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp___0 <= 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && !(\result == 0)) && !(\result == 0)) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && !(tmp == 0))) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((tmp == 0 && (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1))) && tmp == 1) && \result == 1) && \result == 0)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(tmp == 0)) - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: (((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == systemActive) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) || (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && !(\result == 0)) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 495]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: (((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || (((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: (((((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && tmp == 1) && \result == 1) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || (((((((splverifierCounter == 0 && pumpRunning == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1)) || ((((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && 2 <= waterLevel) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) || ((((((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: ((((((((tmp == 0 && splverifierCounter == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && pumpRunning == 1) || ((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 199]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && tmp == systemActive) && \result == 0) && \result == 1) && 1 == systemActive) && \result == 1) && waterLevel == 1) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && waterLevel <= 1) && !(\result == 0)) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 1) && \result == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp___0 == 1) && \result == 1) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) - InvariantResult [Line: 516]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1) || ((((((tmp == 0 && splverifierCounter == 0) && \result == systemActive) && tmp == systemActive) && 1 == systemActive) && tmp == 0) && pumpRunning == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive)) || (((((((tmp == 0 && splverifierCounter == 0) && 1 == systemActive) && waterLevel == 1) && pumpRunning == 1) || ((((tmp == 0 && splverifierCounter == 0) && 2 <= waterLevel) && 1 == systemActive) && pumpRunning == 1)) && tmp == 1) && \result == 1)) || (((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: (((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && pumpRunning == 1) || ((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && \result == 1) && pumpRunning == 1) - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 275]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 131]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && methaneLevelCritical == 0) && tmp == systemActive) && 1 == systemActive) && waterLevel == 1)) || (((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == 1) && tmp == systemActive) && \result == 1) && !(\result == 0)) && 1 == systemActive) && waterLevel == 1) && !(tmp == 0))) || (((((((((((\result <= 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == systemActive) && tmp == 0) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive) && \result == 1) && tmp___0 <= 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && tmp == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1)) || ((((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && !(tmp == 0)) && pumpRunning == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == systemActive) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && \result == 1) && !(tmp == 0)) - InvariantResult [Line: 265]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: (((((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) || ((((((((((((((tmp == 0 && splverifierCounter == 0) && tmp___0 == 1) && \result == 1) && tmp == 1) && \result == 0) && methaneLevelCritical == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && pumpRunning == 1)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && 1 == systemActive)) || ((((((((((splverifierCounter == 0 && tmp___0 == 0) && pumpRunning == 0) && tmp == 1) && \result == 0) && \result == 1) && 1 == systemActive) && tmp == 0) && tmp == 1) && \result == 1) && waterLevel == 1)) || ((((((((splverifierCounter == 0 && pumpRunning == 0) && tmp == 1) && \result == 1) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && waterLevel == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && !(\result == 0)) && !(\result == 0)) && 1 == systemActive) && !(methaneLevelCritical == 0)) && tmp == 1) && \result == 1) && tmp == 0) && pumpRunning == 1)) || (((((((((tmp == 0 && splverifierCounter == 0) && \result == 0) && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && tmp == 0) && \result == 0) && pumpRunning == 1) - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && tmp == 1) && \result == 1) && waterLevel == 1 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: ((((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && waterLevel <= 1) && !(\result == 0)) && \result == 1) && 1 == systemActive) || ((((((splverifierCounter == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 == systemActive) && tmp == 1) && \result == 1) && \result == 0)) || ((((((splverifierCounter == 0 && pumpRunning == 0) && \result == systemActive) && tmp == systemActive) && \result == 1) && 1 == systemActive) && waterLevel == 1) - InvariantResult [Line: 576]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == 1) && waterLevel == 1 RESULT: Ultimate proved your program to be correct! [2021-10-29 00:00:53,035 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e1e3321a-5173-4bfd-88c8-15b9dc60ab00/bin/uautomizer-GMMbpWq8iD/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request...