./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version f8e1c903 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 449370313253a0d5d7b509b2cd15e912fe8e85dcb7140575e7078385cf7fc6cf --- Real Ultimate output --- This is Ultimate 0.2.1-dev-f8e1c90 [2021-11-09 08:41:16,407 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-11-09 08:41:16,410 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-11-09 08:41:16,459 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-11-09 08:41:16,460 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-11-09 08:41:16,464 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-11-09 08:41:16,466 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-11-09 08:41:16,471 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-11-09 08:41:16,474 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-11-09 08:41:16,480 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-11-09 08:41:16,481 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-11-09 08:41:16,483 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-11-09 08:41:16,484 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-11-09 08:41:16,487 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-11-09 08:41:16,490 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-11-09 08:41:16,495 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-11-09 08:41:16,497 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-11-09 08:41:16,499 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-11-09 08:41:16,502 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-11-09 08:41:16,510 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-11-09 08:41:16,513 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-11-09 08:41:16,515 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-11-09 08:41:16,518 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-11-09 08:41:16,520 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-11-09 08:41:16,530 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-11-09 08:41:16,531 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-11-09 08:41:16,531 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-11-09 08:41:16,533 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-11-09 08:41:16,533 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-11-09 08:41:16,535 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-11-09 08:41:16,535 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-11-09 08:41:16,537 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-11-09 08:41:16,538 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-11-09 08:41:16,539 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-11-09 08:41:16,540 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-11-09 08:41:16,541 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-11-09 08:41:16,542 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-11-09 08:41:16,542 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-11-09 08:41:16,543 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-11-09 08:41:16,544 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-11-09 08:41:16,545 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-11-09 08:41:16,546 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-11-09 08:41:16,576 INFO L113 SettingsManager]: Loading preferences was successful [2021-11-09 08:41:16,576 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-11-09 08:41:16,576 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-11-09 08:41:16,577 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-11-09 08:41:16,578 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-11-09 08:41:16,578 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-11-09 08:41:16,579 INFO L138 SettingsManager]: * Use SBE=true [2021-11-09 08:41:16,579 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-11-09 08:41:16,579 INFO L138 SettingsManager]: * sizeof long=4 [2021-11-09 08:41:16,580 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-11-09 08:41:16,580 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-11-09 08:41:16,580 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-11-09 08:41:16,580 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-11-09 08:41:16,581 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-11-09 08:41:16,581 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-11-09 08:41:16,581 INFO L138 SettingsManager]: * sizeof long double=12 [2021-11-09 08:41:16,582 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-11-09 08:41:16,582 INFO L138 SettingsManager]: * Use constant arrays=true [2021-11-09 08:41:16,582 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-11-09 08:41:16,582 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-11-09 08:41:16,583 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-11-09 08:41:16,583 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-11-09 08:41:16,583 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-11-09 08:41:16,584 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-11-09 08:41:16,584 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-11-09 08:41:16,584 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-11-09 08:41:16,584 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-11-09 08:41:16,585 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-11-09 08:41:16,585 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-11-09 08:41:16,585 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-11-09 08:41:16,585 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-11-09 08:41:16,586 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-11-09 08:41:16,586 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 449370313253a0d5d7b509b2cd15e912fe8e85dcb7140575e7078385cf7fc6cf [2021-11-09 08:41:16,937 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-11-09 08:41:16,965 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-11-09 08:41:16,968 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-11-09 08:41:16,970 INFO L271 PluginConnector]: Initializing CDTParser... [2021-11-09 08:41:16,971 INFO L275 PluginConnector]: CDTParser initialized [2021-11-09 08:41:16,972 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/../../sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c [2021-11-09 08:41:17,059 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/data/861980a48/572750b77fa645dab0baea25b6cc648a/FLAGac54d3fe9 [2021-11-09 08:41:17,670 INFO L306 CDTParser]: Found 1 translation units. [2021-11-09 08:41:17,671 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c [2021-11-09 08:41:17,690 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/data/861980a48/572750b77fa645dab0baea25b6cc648a/FLAGac54d3fe9 [2021-11-09 08:41:17,921 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/data/861980a48/572750b77fa645dab0baea25b6cc648a [2021-11-09 08:41:17,923 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-11-09 08:41:17,925 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-11-09 08:41:17,927 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-11-09 08:41:17,927 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-11-09 08:41:17,938 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-11-09 08:41:17,939 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 09.11 08:41:17" (1/1) ... [2021-11-09 08:41:17,940 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@37a9097 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:17, skipping insertion in model container [2021-11-09 08:41:17,940 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 09.11 08:41:17" (1/1) ... [2021-11-09 08:41:17,948 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-11-09 08:41:17,999 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-11-09 08:41:18,254 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c[7477,7490] [2021-11-09 08:41:18,385 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-11-09 08:41:18,406 INFO L203 MainTranslator]: Completed pre-run [2021-11-09 08:41:18,491 WARN L228 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/sv-benchmarks/c/product-lines/minepump_spec3_product42.cil.c[7477,7490] [2021-11-09 08:41:18,559 INFO L206 PostProcessor]: Analyzing one entry point: main [2021-11-09 08:41:18,586 INFO L208 MainTranslator]: Completed translation [2021-11-09 08:41:18,588 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18 WrapperNode [2021-11-09 08:41:18,589 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-11-09 08:41:18,590 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-11-09 08:41:18,591 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-11-09 08:41:18,591 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-11-09 08:41:18,601 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,640 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,710 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-11-09 08:41:18,711 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-11-09 08:41:18,711 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-11-09 08:41:18,711 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-11-09 08:41:18,726 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,726 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,741 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,742 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,760 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,792 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,795 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,803 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-11-09 08:41:18,804 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-11-09 08:41:18,804 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-11-09 08:41:18,805 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-11-09 08:41:18,810 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (1/1) ... [2021-11-09 08:41:18,821 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-11-09 08:41:18,835 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/z3 [2021-11-09 08:41:18,854 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-11-09 08:41:18,858 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-11-09 08:41:18,894 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocOnStack [2021-11-09 08:41:18,895 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-11-09 08:41:18,895 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-11-09 08:41:18,895 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-11-09 08:41:19,964 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-11-09 08:41:19,965 INFO L299 CfgBuilder]: Removed 122 assume(true) statements. [2021-11-09 08:41:19,967 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 08:41:19 BoogieIcfgContainer [2021-11-09 08:41:19,967 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-11-09 08:41:19,969 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-11-09 08:41:19,969 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-11-09 08:41:19,972 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-11-09 08:41:19,972 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 09.11 08:41:17" (1/3) ... [2021-11-09 08:41:19,973 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4c3c6500 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 09.11 08:41:19, skipping insertion in model container [2021-11-09 08:41:19,974 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 09.11 08:41:18" (2/3) ... [2021-11-09 08:41:19,974 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4c3c6500 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 09.11 08:41:19, skipping insertion in model container [2021-11-09 08:41:19,974 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 08:41:19" (3/3) ... [2021-11-09 08:41:19,976 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product42.cil.c [2021-11-09 08:41:19,981 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-11-09 08:41:19,982 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-11-09 08:41:20,031 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-11-09 08:41:20,038 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-11-09 08:41:20,038 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-11-09 08:41:20,056 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:20,062 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2021-11-09 08:41:20,062 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:20,063 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:20,064 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:20,069 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:20,070 INFO L85 PathProgramCache]: Analyzing trace with hash -1623272414, now seen corresponding path program 1 times [2021-11-09 08:41:20,079 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:20,080 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2003584672] [2021-11-09 08:41:20,080 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:20,081 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:20,270 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:20,420 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:20,421 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:20,421 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2003584672] [2021-11-09 08:41:20,422 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2003584672] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:20,422 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:20,422 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-11-09 08:41:20,424 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [141841658] [2021-11-09 08:41:20,429 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-11-09 08:41:20,430 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:20,444 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-11-09 08:41:20,445 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-11-09 08:41:20,448 INFO L87 Difference]: Start difference. First operand has 93 states, 89 states have (on average 1.550561797752809) internal successors, (138), 92 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:20,492 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:20,492 INFO L93 Difference]: Finished difference Result 180 states and 269 transitions. [2021-11-09 08:41:20,493 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-11-09 08:41:20,494 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 18 [2021-11-09 08:41:20,495 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:20,505 INFO L225 Difference]: With dead ends: 180 [2021-11-09 08:41:20,506 INFO L226 Difference]: Without dead ends: 89 [2021-11-09 08:41:20,509 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-11-09 08:41:20,530 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2021-11-09 08:41:20,553 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2021-11-09 08:41:20,555 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 86 states have (on average 1.4651162790697674) internal successors, (126), 88 states have internal predecessors, (126), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:20,558 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 126 transitions. [2021-11-09 08:41:20,559 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 126 transitions. Word has length 18 [2021-11-09 08:41:20,560 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:20,560 INFO L470 AbstractCegarLoop]: Abstraction has 89 states and 126 transitions. [2021-11-09 08:41:20,560 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.0) internal successors, (18), 2 states have internal predecessors, (18), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:20,560 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 126 transitions. [2021-11-09 08:41:20,562 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-11-09 08:41:20,562 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:20,562 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:20,562 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-11-09 08:41:20,563 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:20,563 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:20,564 INFO L85 PathProgramCache]: Analyzing trace with hash 352621777, now seen corresponding path program 1 times [2021-11-09 08:41:20,564 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:20,564 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1011353017] [2021-11-09 08:41:20,564 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:20,565 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:20,613 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:20,678 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:20,678 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:20,679 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1011353017] [2021-11-09 08:41:20,679 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1011353017] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:20,679 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:20,679 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-11-09 08:41:20,680 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2117674228] [2021-11-09 08:41:20,681 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-11-09 08:41:20,681 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:20,682 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-11-09 08:41:20,683 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-09 08:41:20,683 INFO L87 Difference]: Start difference. First operand 89 states and 126 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:20,695 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:20,696 INFO L93 Difference]: Finished difference Result 89 states and 126 transitions. [2021-11-09 08:41:20,696 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-11-09 08:41:20,697 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-11-09 08:41:20,697 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:20,698 INFO L225 Difference]: With dead ends: 89 [2021-11-09 08:41:20,698 INFO L226 Difference]: Without dead ends: 39 [2021-11-09 08:41:20,699 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-09 08:41:20,699 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-11-09 08:41:20,703 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-11-09 08:41:20,704 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 38 states have internal predecessors, (55), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:20,705 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 55 transitions. [2021-11-09 08:41:20,705 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 55 transitions. Word has length 19 [2021-11-09 08:41:20,705 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:20,705 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 55 transitions. [2021-11-09 08:41:20,706 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:20,706 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 55 transitions. [2021-11-09 08:41:20,707 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-11-09 08:41:20,707 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:20,707 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:20,707 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-11-09 08:41:20,708 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:20,708 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:20,708 INFO L85 PathProgramCache]: Analyzing trace with hash 1246279967, now seen corresponding path program 1 times [2021-11-09 08:41:20,709 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:20,709 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1096215377] [2021-11-09 08:41:20,709 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:20,718 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:20,802 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:20,927 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:20,928 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:20,929 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1096215377] [2021-11-09 08:41:20,933 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1096215377] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:20,933 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:20,934 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-11-09 08:41:20,934 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1813371033] [2021-11-09 08:41:20,936 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-09 08:41:20,937 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:20,939 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-09 08:41:20,939 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-09 08:41:20,940 INFO L87 Difference]: Start difference. First operand 39 states and 55 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,017 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:21,017 INFO L93 Difference]: Finished difference Result 72 states and 104 transitions. [2021-11-09 08:41:21,018 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-11-09 08:41:21,018 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-11-09 08:41:21,018 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:21,021 INFO L225 Difference]: With dead ends: 72 [2021-11-09 08:41:21,021 INFO L226 Difference]: Without dead ends: 39 [2021-11-09 08:41:21,022 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-11-09 08:41:21,023 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 39 states. [2021-11-09 08:41:21,032 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 39 to 39. [2021-11-09 08:41:21,033 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 39 states, 38 states have (on average 1.4210526315789473) internal successors, (54), 38 states have internal predecessors, (54), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,036 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 39 states to 39 states and 54 transitions. [2021-11-09 08:41:21,036 INFO L78 Accepts]: Start accepts. Automaton has 39 states and 54 transitions. Word has length 24 [2021-11-09 08:41:21,036 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:21,037 INFO L470 AbstractCegarLoop]: Abstraction has 39 states and 54 transitions. [2021-11-09 08:41:21,037 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,037 INFO L276 IsEmpty]: Start isEmpty. Operand 39 states and 54 transitions. [2021-11-09 08:41:21,038 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-11-09 08:41:21,038 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:21,039 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:21,039 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-11-09 08:41:21,039 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:21,040 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:21,040 INFO L85 PathProgramCache]: Analyzing trace with hash 607128155, now seen corresponding path program 1 times [2021-11-09 08:41:21,040 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:21,040 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1105962986] [2021-11-09 08:41:21,041 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:21,041 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:21,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:21,174 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:21,175 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:21,175 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1105962986] [2021-11-09 08:41:21,180 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1105962986] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:21,181 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:21,181 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-11-09 08:41:21,181 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [774418374] [2021-11-09 08:41:21,182 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-11-09 08:41:21,182 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:21,183 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-11-09 08:41:21,183 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-09 08:41:21,183 INFO L87 Difference]: Start difference. First operand 39 states and 54 transitions. Second operand has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,224 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:21,224 INFO L93 Difference]: Finished difference Result 95 states and 135 transitions. [2021-11-09 08:41:21,232 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-11-09 08:41:21,232 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-11-09 08:41:21,232 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:21,233 INFO L225 Difference]: With dead ends: 95 [2021-11-09 08:41:21,233 INFO L226 Difference]: Without dead ends: 62 [2021-11-09 08:41:21,234 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-09 08:41:21,234 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 62 states. [2021-11-09 08:41:21,242 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 62 to 60. [2021-11-09 08:41:21,242 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 60 states, 59 states have (on average 1.423728813559322) internal successors, (84), 59 states have internal predecessors, (84), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,243 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 60 states to 60 states and 84 transitions. [2021-11-09 08:41:21,243 INFO L78 Accepts]: Start accepts. Automaton has 60 states and 84 transitions. Word has length 25 [2021-11-09 08:41:21,244 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:21,244 INFO L470 AbstractCegarLoop]: Abstraction has 60 states and 84 transitions. [2021-11-09 08:41:21,244 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 2 states have internal predecessors, (25), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,244 INFO L276 IsEmpty]: Start isEmpty. Operand 60 states and 84 transitions. [2021-11-09 08:41:21,251 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-11-09 08:41:21,252 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:21,252 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:21,252 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-11-09 08:41:21,252 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:21,253 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:21,253 INFO L85 PathProgramCache]: Analyzing trace with hash 1327381871, now seen corresponding path program 1 times [2021-11-09 08:41:21,254 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:21,256 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1913497399] [2021-11-09 08:41:21,256 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:21,256 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:21,311 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:21,415 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:21,415 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:21,415 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1913497399] [2021-11-09 08:41:21,416 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1913497399] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:21,416 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:21,416 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-11-09 08:41:21,416 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [832307003] [2021-11-09 08:41:21,417 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-09 08:41:21,417 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:21,418 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-09 08:41:21,418 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-09 08:41:21,418 INFO L87 Difference]: Start difference. First operand 60 states and 84 transitions. Second operand has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,585 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:21,585 INFO L93 Difference]: Finished difference Result 320 states and 467 transitions. [2021-11-09 08:41:21,586 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-11-09 08:41:21,586 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 31 [2021-11-09 08:41:21,587 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:21,593 INFO L225 Difference]: With dead ends: 320 [2021-11-09 08:41:21,594 INFO L226 Difference]: Without dead ends: 266 [2021-11-09 08:41:21,598 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-11-09 08:41:21,599 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 266 states. [2021-11-09 08:41:21,637 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 266 to 108. [2021-11-09 08:41:21,639 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 107 states have (on average 1.4018691588785046) internal successors, (150), 107 states have internal predecessors, (150), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,640 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 150 transitions. [2021-11-09 08:41:21,641 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 150 transitions. Word has length 31 [2021-11-09 08:41:21,641 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:21,641 INFO L470 AbstractCegarLoop]: Abstraction has 108 states and 150 transitions. [2021-11-09 08:41:21,643 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 4 states have internal predecessors, (31), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,643 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 150 transitions. [2021-11-09 08:41:21,649 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-11-09 08:41:21,649 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:21,649 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:21,650 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-11-09 08:41:21,650 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:21,651 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:21,651 INFO L85 PathProgramCache]: Analyzing trace with hash -1796495249, now seen corresponding path program 1 times [2021-11-09 08:41:21,651 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:21,651 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1455804174] [2021-11-09 08:41:21,651 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:21,652 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:21,690 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:21,763 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:21,763 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:21,763 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1455804174] [2021-11-09 08:41:21,764 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1455804174] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:21,764 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:21,764 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-11-09 08:41:21,765 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1334631060] [2021-11-09 08:41:21,770 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-11-09 08:41:21,771 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:21,772 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-11-09 08:41:21,772 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-11-09 08:41:21,773 INFO L87 Difference]: Start difference. First operand 108 states and 150 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,832 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:21,832 INFO L93 Difference]: Finished difference Result 343 states and 483 transitions. [2021-11-09 08:41:21,833 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-11-09 08:41:21,833 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-11-09 08:41:21,834 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:21,838 INFO L225 Difference]: With dead ends: 343 [2021-11-09 08:41:21,839 INFO L226 Difference]: Without dead ends: 241 [2021-11-09 08:41:21,839 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-11-09 08:41:21,840 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 241 states. [2021-11-09 08:41:21,874 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 241 to 108. [2021-11-09 08:41:21,875 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 107 states have (on average 1.3925233644859814) internal successors, (149), 107 states have internal predecessors, (149), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,876 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 149 transitions. [2021-11-09 08:41:21,876 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 149 transitions. Word has length 32 [2021-11-09 08:41:21,876 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:21,876 INFO L470 AbstractCegarLoop]: Abstraction has 108 states and 149 transitions. [2021-11-09 08:41:21,877 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:21,877 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 149 transitions. [2021-11-09 08:41:21,882 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-11-09 08:41:21,883 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:21,883 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:21,883 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-11-09 08:41:21,884 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:21,884 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:21,885 INFO L85 PathProgramCache]: Analyzing trace with hash -1538329811, now seen corresponding path program 1 times [2021-11-09 08:41:21,885 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:21,891 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1054088609] [2021-11-09 08:41:21,891 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:21,892 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:21,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:22,012 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:22,013 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:22,013 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1054088609] [2021-11-09 08:41:22,013 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1054088609] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:22,014 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:22,015 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-11-09 08:41:22,015 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [186353886] [2021-11-09 08:41:22,016 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-11-09 08:41:22,016 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:22,016 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-11-09 08:41:22,017 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-11-09 08:41:22,017 INFO L87 Difference]: Start difference. First operand 108 states and 149 transitions. Second operand has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,141 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:22,141 INFO L93 Difference]: Finished difference Result 386 states and 542 transitions. [2021-11-09 08:41:22,142 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-11-09 08:41:22,142 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-11-09 08:41:22,144 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:22,147 INFO L225 Difference]: With dead ends: 386 [2021-11-09 08:41:22,147 INFO L226 Difference]: Without dead ends: 284 [2021-11-09 08:41:22,150 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-11-09 08:41:22,150 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 284 states. [2021-11-09 08:41:22,177 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 284 to 111. [2021-11-09 08:41:22,178 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 111 states, 110 states have (on average 1.3727272727272728) internal successors, (151), 110 states have internal predecessors, (151), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,178 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 111 states to 111 states and 151 transitions. [2021-11-09 08:41:22,179 INFO L78 Accepts]: Start accepts. Automaton has 111 states and 151 transitions. Word has length 32 [2021-11-09 08:41:22,179 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:22,179 INFO L470 AbstractCegarLoop]: Abstraction has 111 states and 151 transitions. [2021-11-09 08:41:22,180 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.571428571428571) internal successors, (32), 7 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,180 INFO L276 IsEmpty]: Start isEmpty. Operand 111 states and 151 transitions. [2021-11-09 08:41:22,180 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-11-09 08:41:22,180 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:22,181 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:22,181 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-11-09 08:41:22,181 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:22,182 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:22,182 INFO L85 PathProgramCache]: Analyzing trace with hash -1048057311, now seen corresponding path program 1 times [2021-11-09 08:41:22,182 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:22,183 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1006490020] [2021-11-09 08:41:22,184 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:22,184 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:22,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:22,282 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:22,282 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:22,283 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1006490020] [2021-11-09 08:41:22,283 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1006490020] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:22,283 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:22,283 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-11-09 08:41:22,284 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [14578911] [2021-11-09 08:41:22,285 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-11-09 08:41:22,285 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:22,285 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-11-09 08:41:22,286 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-11-09 08:41:22,286 INFO L87 Difference]: Start difference. First operand 111 states and 151 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,568 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:22,568 INFO L93 Difference]: Finished difference Result 814 states and 1107 transitions. [2021-11-09 08:41:22,569 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-11-09 08:41:22,569 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-11-09 08:41:22,570 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:22,575 INFO L225 Difference]: With dead ends: 814 [2021-11-09 08:41:22,575 INFO L226 Difference]: Without dead ends: 709 [2021-11-09 08:41:22,576 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 29 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=67, Invalid=143, Unknown=0, NotChecked=0, Total=210 [2021-11-09 08:41:22,577 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 709 states. [2021-11-09 08:41:22,614 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 709 to 202. [2021-11-09 08:41:22,615 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 202 states, 201 states have (on average 1.3532338308457712) internal successors, (272), 201 states have internal predecessors, (272), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,616 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 202 states to 202 states and 272 transitions. [2021-11-09 08:41:22,616 INFO L78 Accepts]: Start accepts. Automaton has 202 states and 272 transitions. Word has length 35 [2021-11-09 08:41:22,617 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:22,617 INFO L470 AbstractCegarLoop]: Abstraction has 202 states and 272 transitions. [2021-11-09 08:41:22,617 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,617 INFO L276 IsEmpty]: Start isEmpty. Operand 202 states and 272 transitions. [2021-11-09 08:41:22,618 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2021-11-09 08:41:22,618 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:22,618 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:22,619 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-11-09 08:41:22,619 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:22,619 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:22,619 INFO L85 PathProgramCache]: Analyzing trace with hash -367998941, now seen corresponding path program 1 times [2021-11-09 08:41:22,620 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:22,620 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [373253478] [2021-11-09 08:41:22,620 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:22,620 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:22,651 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:22,700 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:22,700 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:22,700 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [373253478] [2021-11-09 08:41:22,700 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [373253478] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:22,701 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:22,701 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-11-09 08:41:22,701 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1893839510] [2021-11-09 08:41:22,702 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-09 08:41:22,702 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:22,702 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-09 08:41:22,703 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-09 08:41:22,703 INFO L87 Difference]: Start difference. First operand 202 states and 272 transitions. Second operand has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,931 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:22,931 INFO L93 Difference]: Finished difference Result 516 states and 713 transitions. [2021-11-09 08:41:22,931 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-11-09 08:41:22,931 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 35 [2021-11-09 08:41:22,932 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:22,933 INFO L225 Difference]: With dead ends: 516 [2021-11-09 08:41:22,933 INFO L226 Difference]: Without dead ends: 104 [2021-11-09 08:41:22,934 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-11-09 08:41:22,934 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-11-09 08:41:22,949 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 97. [2021-11-09 08:41:22,950 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 97 states, 96 states have (on average 1.25) internal successors, (120), 96 states have internal predecessors, (120), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,950 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 97 states to 97 states and 120 transitions. [2021-11-09 08:41:22,950 INFO L78 Accepts]: Start accepts. Automaton has 97 states and 120 transitions. Word has length 35 [2021-11-09 08:41:22,951 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:22,951 INFO L470 AbstractCegarLoop]: Abstraction has 97 states and 120 transitions. [2021-11-09 08:41:22,951 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.0) internal successors, (35), 5 states have internal predecessors, (35), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:22,951 INFO L276 IsEmpty]: Start isEmpty. Operand 97 states and 120 transitions. [2021-11-09 08:41:22,952 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-11-09 08:41:22,952 INFO L505 BasicCegarLoop]: Found error trace [2021-11-09 08:41:22,952 INFO L513 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:22,952 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-11-09 08:41:22,953 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-09 08:41:22,953 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-09 08:41:22,953 INFO L85 PathProgramCache]: Analyzing trace with hash -1326928741, now seen corresponding path program 1 times [2021-11-09 08:41:22,953 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-09 08:41:22,955 INFO L332 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [239679187] [2021-11-09 08:41:22,955 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-09 08:41:22,956 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-09 08:41:22,996 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-09 08:41:23,071 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-09 08:41:23,071 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-09 08:41:23,071 INFO L332 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [239679187] [2021-11-09 08:41:23,072 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [239679187] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-09 08:41:23,072 INFO L186 FreeRefinementEngine]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2021-11-09 08:41:23,072 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-11-09 08:41:23,072 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [821948151] [2021-11-09 08:41:23,073 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-09 08:41:23,073 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-09 08:41:23,073 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-09 08:41:23,074 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-09 08:41:23,074 INFO L87 Difference]: Start difference. First operand 97 states and 120 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:23,238 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-09 08:41:23,238 INFO L93 Difference]: Finished difference Result 229 states and 283 transitions. [2021-11-09 08:41:23,239 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-11-09 08:41:23,239 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 36 [2021-11-09 08:41:23,239 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-09 08:41:23,240 INFO L225 Difference]: With dead ends: 229 [2021-11-09 08:41:23,240 INFO L226 Difference]: Without dead ends: 0 [2021-11-09 08:41:23,240 INFO L786 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-11-09 08:41:23,241 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-11-09 08:41:23,241 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-11-09 08:41:23,241 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:23,241 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-11-09 08:41:23,241 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 36 [2021-11-09 08:41:23,241 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-09 08:41:23,242 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-11-09 08:41:23,242 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-09 08:41:23,242 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-11-09 08:41:23,242 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-11-09 08:41:23,245 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION [2021-11-09 08:41:23,245 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION [2021-11-09 08:41:23,246 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION [2021-11-09 08:41:23,246 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-11-09 08:41:23,249 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-11-09 08:41:23,254 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,651 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,768 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,785 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,802 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,803 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,898 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,899 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,900 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,901 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,920 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:23,922 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,062 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,063 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,084 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,085 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,086 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,296 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,298 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,298 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,299 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,393 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,394 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,395 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,396 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,397 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,398 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,505 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,506 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,547 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,589 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,590 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,591 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,591 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,592 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,593 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,593 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,594 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,595 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:24,814 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout 10000 ms and remaining time -1 ms [2021-11-09 08:41:27,880 INFO L857 garLoopResultBuilder]: For program point L415(lines 415 419) no Hoare annotation was computed. [2021-11-09 08:41:27,881 INFO L857 garLoopResultBuilder]: For program point L415-3(lines 415 419) no Hoare annotation was computed. [2021-11-09 08:41:27,881 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-11-09 08:41:27,881 INFO L857 garLoopResultBuilder]: For program point L415-6(lines 415 419) no Hoare annotation was computed. [2021-11-09 08:41:27,881 INFO L857 garLoopResultBuilder]: For program point L928(lines 928 941) no Hoare annotation was computed. [2021-11-09 08:41:27,881 INFO L853 garLoopResultBuilder]: At program point L928-1(lines 1 945) the Hoare annotation is: (let ((.cse3 (<= ~waterLevel~0 1)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1)) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse7 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse6 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse6 .cse8) (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) .cse4 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse5 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse6 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse7 .cse8) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse6 .cse8 (= ~pumpRunning~0 1)))) [2021-11-09 08:41:27,882 INFO L857 garLoopResultBuilder]: For program point L928-2(lines 928 941) no Hoare annotation was computed. [2021-11-09 08:41:27,882 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-11-09 08:41:27,882 INFO L853 garLoopResultBuilder]: At program point L928-3(lines 1 945) the Hoare annotation is: false [2021-11-09 08:41:27,882 INFO L857 garLoopResultBuilder]: For program point L928-4(lines 928 941) no Hoare annotation was computed. [2021-11-09 08:41:27,882 INFO L853 garLoopResultBuilder]: At program point L928-5(lines 1 945) the Hoare annotation is: false [2021-11-09 08:41:27,882 INFO L857 garLoopResultBuilder]: For program point L185(lines 185 191) no Hoare annotation was computed. [2021-11-09 08:41:27,882 INFO L853 garLoopResultBuilder]: At program point L185-1(lines 185 191) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-11-09 08:41:27,882 INFO L857 garLoopResultBuilder]: For program point L269(lines 269 286) no Hoare annotation was computed. [2021-11-09 08:41:27,883 INFO L857 garLoopResultBuilder]: For program point L269-1(lines 269 286) no Hoare annotation was computed. [2021-11-09 08:41:27,883 INFO L857 garLoopResultBuilder]: For program point L203(lines 203 207) no Hoare annotation was computed. [2021-11-09 08:41:27,883 INFO L857 garLoopResultBuilder]: For program point L269-2(lines 269 286) no Hoare annotation was computed. [2021-11-09 08:41:27,883 INFO L853 garLoopResultBuilder]: At program point L203-2(lines 237 243) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-11-09 08:41:27,883 INFO L853 garLoopResultBuilder]: At program point L484(lines 479 487) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and (<= |ULTIMATE.start_getWaterLevel_#res| 1) .cse0 .cse1 (= ~pumpRunning~0 0) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) .cse2 .cse3) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse2 .cse3 (= ~pumpRunning~0 1)))) [2021-11-09 08:41:27,883 INFO L853 garLoopResultBuilder]: At program point L484-1(lines 479 487) the Hoare annotation is: false [2021-11-09 08:41:27,883 INFO L853 garLoopResultBuilder]: At program point L484-2(lines 479 487) the Hoare annotation is: false [2021-11-09 08:41:27,884 INFO L853 garLoopResultBuilder]: At program point L534(lines 1 945) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-11-09 08:41:27,884 INFO L853 garLoopResultBuilder]: At program point L237(lines 236 255) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 1) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-11-09 08:41:27,884 INFO L857 garLoopResultBuilder]: For program point L237-1(lines 237 243) no Hoare annotation was computed. [2021-11-09 08:41:27,884 INFO L853 garLoopResultBuilder]: At program point L237-2(lines 236 255) the Hoare annotation is: false [2021-11-09 08:41:27,884 INFO L853 garLoopResultBuilder]: At program point L237-3(lines 236 255) the Hoare annotation is: false [2021-11-09 08:41:27,885 INFO L853 garLoopResultBuilder]: At program point L452(lines 447 455) the Hoare annotation is: (let ((.cse5 (<= ~waterLevel~0 1)) (.cse10 (= ~methaneLevelCritical~0 1)) (.cse14 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse9 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse6 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0))) (.cse11 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse12 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse13 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse1 .cse2 .cse9 .cse6 .cse10 .cse11 .cse7 .cse12 .cse13 .cse14 .cse8) (and .cse0 .cse1 .cse2 .cse5 .cse6 .cse10 .cse7 .cse14 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse9 .cse6 .cse11 .cse7 .cse12 .cse13 .cse8))) [2021-11-09 08:41:27,885 INFO L853 garLoopResultBuilder]: At program point L452-1(lines 447 455) the Hoare annotation is: (let ((.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse7 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse3 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse4 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) .cse5 .cse6) (and .cse0 .cse1 .cse2 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0) (= ~methaneLevelCritical~0 0) .cse7 .cse4 .cse6) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse4 .cse6 (= ~pumpRunning~0 1)) (and .cse0 .cse1 .cse2 .cse7 .cse3 .cse4 .cse5 .cse6))) [2021-11-09 08:41:27,885 INFO L853 garLoopResultBuilder]: At program point L452-2(lines 447 455) the Hoare annotation is: false [2021-11-09 08:41:27,885 INFO L853 garLoopResultBuilder]: At program point L452-3(lines 447 455) the Hoare annotation is: false [2021-11-09 08:41:27,885 INFO L853 garLoopResultBuilder]: At program point L452-4(lines 447 455) the Hoare annotation is: false [2021-11-09 08:41:27,885 INFO L853 garLoopResultBuilder]: At program point L452-5(lines 447 455) the Hoare annotation is: false [2021-11-09 08:41:27,885 INFO L857 garLoopResultBuilder]: For program point L932(lines 932 938) no Hoare annotation was computed. [2021-11-09 08:41:27,885 INFO L857 garLoopResultBuilder]: For program point L932-2(lines 932 938) no Hoare annotation was computed. [2021-11-09 08:41:27,886 INFO L857 garLoopResultBuilder]: For program point L932-4(lines 932 938) no Hoare annotation was computed. [2021-11-09 08:41:27,886 INFO L857 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2021-11-09 08:41:27,886 INFO L860 garLoopResultBuilder]: At program point L140-1(lines 140 147) the Hoare annotation is: true [2021-11-09 08:41:27,886 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-11-09 08:41:27,886 INFO L857 garLoopResultBuilder]: For program point L306(lines 306 312) no Hoare annotation was computed. [2021-11-09 08:41:27,886 INFO L857 garLoopResultBuilder]: For program point L273(lines 273 281) no Hoare annotation was computed. [2021-11-09 08:41:27,886 INFO L857 garLoopResultBuilder]: For program point L273-1(lines 273 281) no Hoare annotation was computed. [2021-11-09 08:41:27,886 INFO L857 garLoopResultBuilder]: For program point L306-2(lines 306 312) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L273-2(lines 273 281) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L306-4(lines 306 312) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L389(lines 389 393) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L389-2(lines 389 393) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L389-3(lines 389 393) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L389-5(lines 389 393) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L389-6(lines 389 393) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L389-8(lines 389 393) no Hoare annotation was computed. [2021-11-09 08:41:27,887 INFO L857 garLoopResultBuilder]: For program point L439(lines 439 443) no Hoare annotation was computed. [2021-11-09 08:41:27,888 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-11-09 08:41:27,888 INFO L853 garLoopResultBuilder]: At program point L340(lines 335 343) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ULTIMATE.start_test_~splverifierCounter~0 0) (= ULTIMATE.start_activatePump_~tmp~3 0) (= |ULTIMATE.start_valid_product_#res| 1) (= |ULTIMATE.start_isPumpRunning_#res| 1) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 1)) [2021-11-09 08:41:27,888 INFO L853 garLoopResultBuilder]: At program point L340-1(lines 335 343) the Hoare annotation is: false [2021-11-09 08:41:27,888 INFO L853 garLoopResultBuilder]: At program point L340-2(lines 335 343) the Hoare annotation is: false [2021-11-09 08:41:27,888 INFO L857 garLoopResultBuilder]: For program point L175(lines 175 181) no Hoare annotation was computed. [2021-11-09 08:41:27,888 INFO L853 garLoopResultBuilder]: At program point L175-1(lines 175 181) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse3 .cse4) (and .cse0 .cse1 .cse2 (= ULTIMATE.start___utac_acc__Specification3_spec__1_~tmp~8 1) (= ~methaneLevelCritical~0 1) .cse3 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse4) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-11-09 08:41:27,889 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-11-09 08:41:27,889 INFO L857 garLoopResultBuilder]: For program point L507(line 507) no Hoare annotation was computed. [2021-11-09 08:41:27,889 INFO L857 garLoopResultBuilder]: For program point L507-1(line 507) no Hoare annotation was computed. [2021-11-09 08:41:27,889 INFO L857 garLoopResultBuilder]: For program point L507-2(line 507) no Hoare annotation was computed. [2021-11-09 08:41:27,889 INFO L853 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: false [2021-11-09 08:41:27,889 INFO L853 garLoopResultBuilder]: At program point L244(lines 244 250) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse6 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0)) (not (= ULTIMATE.start_processEnvironment_~tmp~2 0)) .cse3 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0)) .cse4 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0) (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0) (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1) .cse5) (and .cse0 .cse1 .cse2 (= ~methaneLevelCritical~0 0) .cse6 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse4 .cse5) (and .cse0 .cse1 (= ULTIMATE.start_activatePump_~tmp~3 0) .cse4 .cse5 (= ~pumpRunning~0 1)))) [2021-11-09 08:41:27,900 INFO L853 garLoopResultBuilder]: At program point L244-1(lines 244 250) the Hoare annotation is: false [2021-11-09 08:41:27,900 INFO L853 garLoopResultBuilder]: At program point L244-2(lines 244 250) the Hoare annotation is: false [2021-11-09 08:41:27,901 INFO L857 garLoopResultBuilder]: For program point L492(lines 492 498) no Hoare annotation was computed. [2021-11-09 08:41:27,901 INFO L857 garLoopResultBuilder]: For program point L492-1(lines 492 498) no Hoare annotation was computed. [2021-11-09 08:41:27,902 INFO L857 garLoopResultBuilder]: For program point L492-2(lines 492 498) no Hoare annotation was computed. [2021-11-09 08:41:27,904 INFO L857 garLoopResultBuilder]: For program point L195(lines 195 208) no Hoare annotation was computed. [2021-11-09 08:41:27,904 INFO L857 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2021-11-09 08:41:27,904 INFO L853 garLoopResultBuilder]: At program point L542(lines 537 545) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (not (= 0 ~systemActive~0))) [2021-11-09 08:41:27,905 INFO L857 garLoopResultBuilder]: For program point L922(lines 922 942) no Hoare annotation was computed. [2021-11-09 08:41:27,905 INFO L857 garLoopResultBuilder]: For program point L922-2(lines 922 942) no Hoare annotation was computed. [2021-11-09 08:41:27,905 INFO L857 garLoopResultBuilder]: For program point L922-4(lines 922 942) no Hoare annotation was computed. [2021-11-09 08:41:27,905 INFO L853 garLoopResultBuilder]: At program point L113(lines 109 115) the Hoare annotation is: (and (= ULTIMATE.start_main_~tmp~0 1) (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (<= ~waterLevel~0 1) (= |ULTIMATE.start_valid_product_#res| 1) (not (= 0 ~systemActive~0))) [2021-11-09 08:41:27,905 INFO L857 garLoopResultBuilder]: For program point L427(lines 427 431) no Hoare annotation was computed. [2021-11-09 08:41:27,906 INFO L853 garLoopResultBuilder]: At program point L213(lines 164 214) the Hoare annotation is: false [2021-11-09 08:41:27,906 INFO L853 garLoopResultBuilder]: At program point L395(lines 380 398) the Hoare annotation is: (let ((.cse4 (<= ~waterLevel~0 1)) (.cse7 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse8 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse9 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse5 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse11 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse4 .cse7 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse8 .cse7 .cse9 .cse5 .cse10 .cse11 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse8 .cse9 .cse5 .cse10 .cse11 .cse6))) [2021-11-09 08:41:27,906 INFO L853 garLoopResultBuilder]: At program point L395-1(lines 380 398) the Hoare annotation is: false [2021-11-09 08:41:27,906 INFO L853 garLoopResultBuilder]: At program point L395-2(lines 380 398) the Hoare annotation is: false [2021-11-09 08:41:27,906 INFO L857 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-11-09 08:41:27,907 INFO L857 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 507) no Hoare annotation was computed. [2021-11-09 08:41:27,907 INFO L857 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2021-11-09 08:41:27,907 INFO L857 garLoopResultBuilder]: For program point L66-1(lines 237 243) no Hoare annotation was computed. [2021-11-09 08:41:27,907 INFO L860 garLoopResultBuilder]: At program point L149(lines 130 152) the Hoare annotation is: true [2021-11-09 08:41:27,907 INFO L853 garLoopResultBuilder]: At program point L331(lines 324 334) the Hoare annotation is: (let ((.cse3 (not (= |ULTIMATE.start_isHighWaterLevel_#res| 0))) (.cse6 (not (= ULTIMATE.start_isHighWaterLevel_~tmp___0~1 0))) (.cse8 (= ULTIMATE.start_isHighWaterLevel_~tmp~4 0)) (.cse9 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse12 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 0)) (.cse13 (= ~methaneLevelCritical~0 0)) (.cse14 (= |ULTIMATE.start_isMethaneAlarm_#res| 0)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse15 (<= ~waterLevel~0 1)) (.cse4 (not (= ULTIMATE.start_processEnvironment_~tmp~2 0))) (.cse5 (= ~methaneLevelCritical~0 1)) (.cse7 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse10 (= |ULTIMATE.start_isMethaneLevelCritical_#res| 1)) (.cse11 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11) (and .cse0 .cse1 .cse2 .cse12 .cse13 .cse3 .cse4 .cse6 .cse7 .cse8 .cse9 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse12 .cse13 .cse15 .cse4 .cse7 .cse14 .cse11) (and .cse0 .cse1 .cse2 .cse15 .cse4 .cse5 .cse7 .cse10 .cse11))) [2021-11-09 08:41:27,908 INFO L853 garLoopResultBuilder]: At program point L331-1(lines 324 334) the Hoare annotation is: false [2021-11-09 08:41:27,909 INFO L853 garLoopResultBuilder]: At program point L331-2(lines 324 334) the Hoare annotation is: false [2021-11-09 08:41:27,909 INFO L857 garLoopResultBuilder]: For program point L166(lines 165 212) no Hoare annotation was computed. [2021-11-09 08:41:27,909 INFO L853 garLoopResultBuilder]: At program point L497(lines 488 501) the Hoare annotation is: (let ((.cse8 (<= ~waterLevel~0 1)) (.cse3 (= ~methaneLevelCritical~0 1)) (.cse0 (= ULTIMATE.start_main_~tmp~0 1)) (.cse1 (= ULTIMATE.start_test_~splverifierCounter~0 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse4 (= |ULTIMATE.start_valid_product_#res| 1)) (.cse5 (= |ULTIMATE.start_isHighWaterSensorDry_#res| 0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse2 .cse7 .cse8 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse8 .cse3 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse7 .cse4 .cse5 .cse6))) [2021-11-09 08:41:27,910 INFO L853 garLoopResultBuilder]: At program point L497-1(lines 488 501) the Hoare annotation is: false [2021-11-09 08:41:27,910 INFO L853 garLoopResultBuilder]: At program point L497-2(lines 488 501) the Hoare annotation is: false [2021-11-09 08:41:27,910 INFO L857 garLoopResultBuilder]: For program point L167(lines 167 171) no Hoare annotation was computed. [2021-11-09 08:41:27,913 INFO L731 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-09 08:41:27,915 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-11-09 08:41:27,973 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 09.11 08:41:27 BoogieIcfgContainer [2021-11-09 08:41:27,979 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-11-09 08:41:27,980 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-11-09 08:41:27,980 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-11-09 08:41:27,981 INFO L275 PluginConnector]: Witness Printer initialized [2021-11-09 08:41:27,981 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 09.11 08:41:19" (3/4) ... [2021-11-09 08:41:27,984 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-11-09 08:41:28,011 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 41 nodes and edges [2021-11-09 08:41:28,012 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2021-11-09 08:41:28,013 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2021-11-09 08:41:28,014 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-11-09 08:41:28,015 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-11-09 08:41:28,016 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-11-09 08:41:28,017 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-11-09 08:41:28,045 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) [2021-11-09 08:41:28,045 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) [2021-11-09 08:41:28,046 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-11-09 08:41:28,046 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-11-09 08:41:28,047 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-11-09 08:41:28,048 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-11-09 08:41:28,049 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-11-09 08:41:28,050 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-11-09 08:41:28,052 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) [2021-11-09 08:41:28,053 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && \result == 0) && !(0 == systemActive)) [2021-11-09 08:41:28,054 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) [2021-11-09 08:41:28,054 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) [2021-11-09 08:41:28,061 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1 [2021-11-09 08:41:28,062 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && !(0 == systemActive)) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) [2021-11-09 08:41:28,062 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && \result == 0) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) [2021-11-09 08:41:28,135 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/witness.graphml [2021-11-09 08:41:28,146 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-11-09 08:41:28,148 INFO L168 Benchmark]: Toolchain (without parser) took 10221.94 ms. Allocated memory was 81.8 MB in the beginning and 119.5 MB in the end (delta: 37.7 MB). Free memory was 43.4 MB in the beginning and 39.7 MB in the end (delta: 3.7 MB). Peak memory consumption was 40.4 MB. Max. memory is 16.1 GB. [2021-11-09 08:41:28,149 INFO L168 Benchmark]: CDTParser took 0.25 ms. Allocated memory is still 81.8 MB. Free memory is still 60.8 MB. There was no memory consumed. Max. memory is 16.1 GB. [2021-11-09 08:41:28,149 INFO L168 Benchmark]: CACSL2BoogieTranslator took 662.50 ms. Allocated memory is still 81.8 MB. Free memory was 43.2 MB in the beginning and 51.0 MB in the end (delta: -7.8 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-11-09 08:41:28,150 INFO L168 Benchmark]: Boogie Procedure Inliner took 119.70 ms. Allocated memory is still 81.8 MB. Free memory was 50.8 MB in the beginning and 47.6 MB in the end (delta: 3.2 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. [2021-11-09 08:41:28,150 INFO L168 Benchmark]: Boogie Preprocessor took 92.65 ms. Allocated memory is still 81.8 MB. Free memory was 47.6 MB in the beginning and 45.3 MB in the end (delta: 2.3 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. [2021-11-09 08:41:28,151 INFO L168 Benchmark]: RCFGBuilder took 1162.90 ms. Allocated memory was 81.8 MB in the beginning and 98.6 MB in the end (delta: 16.8 MB). Free memory was 45.1 MB in the beginning and 49.3 MB in the end (delta: -4.2 MB). Peak memory consumption was 18.0 MB. Max. memory is 16.1 GB. [2021-11-09 08:41:28,151 INFO L168 Benchmark]: TraceAbstraction took 8010.92 ms. Allocated memory was 98.6 MB in the beginning and 119.5 MB in the end (delta: 21.0 MB). Free memory was 48.8 MB in the beginning and 49.2 MB in the end (delta: -370.2 kB). Peak memory consumption was 50.1 MB. Max. memory is 16.1 GB. [2021-11-09 08:41:28,151 INFO L168 Benchmark]: Witness Printer took 166.03 ms. Allocated memory is still 119.5 MB. Free memory was 49.2 MB in the beginning and 39.7 MB in the end (delta: 9.5 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. [2021-11-09 08:41:28,154 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.25 ms. Allocated memory is still 81.8 MB. Free memory is still 60.8 MB. There was no memory consumed. Max. memory is 16.1 GB. * CACSL2BoogieTranslator took 662.50 ms. Allocated memory is still 81.8 MB. Free memory was 43.2 MB in the beginning and 51.0 MB in the end (delta: -7.8 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Boogie Procedure Inliner took 119.70 ms. Allocated memory is still 81.8 MB. Free memory was 50.8 MB in the beginning and 47.6 MB in the end (delta: 3.2 MB). Peak memory consumption was 2.1 MB. Max. memory is 16.1 GB. * Boogie Preprocessor took 92.65 ms. Allocated memory is still 81.8 MB. Free memory was 47.6 MB in the beginning and 45.3 MB in the end (delta: 2.3 MB). Peak memory consumption was 4.2 MB. Max. memory is 16.1 GB. * RCFGBuilder took 1162.90 ms. Allocated memory was 81.8 MB in the beginning and 98.6 MB in the end (delta: 16.8 MB). Free memory was 45.1 MB in the beginning and 49.3 MB in the end (delta: -4.2 MB). Peak memory consumption was 18.0 MB. Max. memory is 16.1 GB. * TraceAbstraction took 8010.92 ms. Allocated memory was 98.6 MB in the beginning and 119.5 MB in the end (delta: 21.0 MB). Free memory was 48.8 MB in the beginning and 49.2 MB in the end (delta: -370.2 kB). Peak memory consumption was 50.1 MB. Max. memory is 16.1 GB. * Witness Printer took 166.03 ms. Allocated memory is still 119.5 MB. Free memory was 49.2 MB in the beginning and 39.7 MB in the end (delta: 9.5 MB). Peak memory consumption was 10.5 MB. Max. memory is 16.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 507]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 93 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 7.8s, OverallIterations: 10, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.3s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 4.6s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 890 SDtfs, 1402 SDslu, 1485 SDs, 0 SdLazy, 206 SolverSat, 33 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 0.4s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 78 GetRequests, 28 SyntacticMatches, 0 SemanticMatches, 50 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 36 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=202occurred in iteration=8, InterpolantAutomatonStates: 58, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 10 MinimizatonAttempts, 980 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 40 LocationsWithAnnotation, 40 PreInvPairs, 189 NumberOfFragments, 1237 HoareAnnotationTreeSize, 40 FomulaSimplifications, 289691 FormulaSimplificationTreeSizeReduction, 1.5s HoareSimplificationTime, 40 FomulaSimplificationsInter, 20183 FormulaSimplificationTreeSizeReductionInter, 3.0s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 0.8s InterpolantComputationTime, 287 NumberOfCodeBlocks, 287 NumberOfCodeBlocksAsserted, 10 NumberOfCheckSat, 277 ConstructedInterpolants, 0 QuantifiedInterpolants, 494 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 10 InterpolantComputations, 10 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1 - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && tmp == 1) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 537]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && !(0 == systemActive)) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 236]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: (((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && !(tmp == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 1) && !(0 == systemActive)) || ((((((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && !(tmp == 0)) && \result == 1) && \result == 0) && !(0 == systemActive))) || ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && !(tmp == 0)) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive)) - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: ((((tmp == 1 && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive) - InvariantResult [Line: 185]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && !(\result == 0)) && methaneLevelCritical == 1) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive))) || (((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && !(\result == 0)) && !(tmp___0 == 0)) && \result == 1) && tmp == 0) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 447]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && waterLevel <= 1) && !(0 == systemActive) - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 175]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive)) || (((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && tmp == 1) && methaneLevelCritical == 1) && \result == 1) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: ((((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && \result == 0) && !(0 == systemActive)) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && waterLevel <= 1) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive))) || ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && \result == 0) && !(0 == systemActive)) - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 479]: Loop Invariant Derived loop invariant: ((((((((\result <= 1 && tmp == 1) && splverifierCounter == 0) && pumpRunning == 0) && \result == 0) && methaneLevelCritical == 0) && waterLevel <= 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 164]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 488]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 1]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 237]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 1) && \result == 1) && !(0 == systemActive)) || (((((tmp == 1 && splverifierCounter == 0) && pumpRunning == 0) && methaneLevelCritical == 0) && \result == 1) && !(0 == systemActive))) || (((((tmp == 1 && splverifierCounter == 0) && tmp == 0) && \result == 1) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2021-11-09 08:41:28,249 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_73f925a3-2f90-4eac-945d-4ac9b415d705/bin/uautomizer-IVEQpCNsaX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE