./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product36.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 7e70badd Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product36.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 06101f936f6436bac89af152aefce31c84cfc20ba80a5adfcf1af02faa2d4f3b --- Real Ultimate output --- This is Ultimate 0.2.1-dev-7e70bad [2021-11-23 13:53:44,549 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-11-23 13:53:44,552 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-11-23 13:53:44,593 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-11-23 13:53:44,594 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-11-23 13:53:44,596 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-11-23 13:53:44,597 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-11-23 13:53:44,600 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-11-23 13:53:44,602 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-11-23 13:53:44,604 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-11-23 13:53:44,605 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-11-23 13:53:44,607 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-11-23 13:53:44,607 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-11-23 13:53:44,609 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-11-23 13:53:44,611 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-11-23 13:53:44,612 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-11-23 13:53:44,613 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-11-23 13:53:44,615 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-11-23 13:53:44,617 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-11-23 13:53:44,620 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-11-23 13:53:44,623 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-11-23 13:53:44,625 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-11-23 13:53:44,627 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-11-23 13:53:44,628 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-11-23 13:53:44,632 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-11-23 13:53:44,633 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-11-23 13:53:44,633 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-11-23 13:53:44,635 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-11-23 13:53:44,636 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-11-23 13:53:44,637 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-11-23 13:53:44,637 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-11-23 13:53:44,639 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-11-23 13:53:44,640 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-11-23 13:53:44,646 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-11-23 13:53:44,648 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-11-23 13:53:44,649 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-11-23 13:53:44,651 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-11-23 13:53:44,652 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-11-23 13:53:44,652 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-11-23 13:53:44,654 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-11-23 13:53:44,655 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-11-23 13:53:44,656 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-11-23 13:53:44,706 INFO L113 SettingsManager]: Loading preferences was successful [2021-11-23 13:53:44,706 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-11-23 13:53:44,707 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-11-23 13:53:44,707 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-11-23 13:53:44,715 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-11-23 13:53:44,715 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-11-23 13:53:44,716 INFO L138 SettingsManager]: * Use SBE=true [2021-11-23 13:53:44,716 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-11-23 13:53:44,716 INFO L138 SettingsManager]: * sizeof long=4 [2021-11-23 13:53:44,717 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-11-23 13:53:44,718 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-11-23 13:53:44,718 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-11-23 13:53:44,719 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-11-23 13:53:44,719 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-11-23 13:53:44,719 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-11-23 13:53:44,720 INFO L138 SettingsManager]: * sizeof long double=12 [2021-11-23 13:53:44,720 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-11-23 13:53:44,720 INFO L138 SettingsManager]: * Use constant arrays=true [2021-11-23 13:53:44,720 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-11-23 13:53:44,721 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-11-23 13:53:44,721 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-11-23 13:53:44,721 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-11-23 13:53:44,721 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-11-23 13:53:44,722 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-11-23 13:53:44,722 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-11-23 13:53:44,722 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-11-23 13:53:44,723 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-11-23 13:53:44,723 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-11-23 13:53:44,723 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-11-23 13:53:44,723 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-11-23 13:53:44,724 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-11-23 13:53:44,724 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-11-23 13:53:44,724 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 06101f936f6436bac89af152aefce31c84cfc20ba80a5adfcf1af02faa2d4f3b [2021-11-23 13:53:45,004 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-11-23 13:53:45,028 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-11-23 13:53:45,031 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-11-23 13:53:45,032 INFO L271 PluginConnector]: Initializing CDTParser... [2021-11-23 13:53:45,033 INFO L275 PluginConnector]: CDTParser initialized [2021-11-23 13:53:45,035 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/../../sv-benchmarks/c/product-lines/minepump_spec5_product36.cil.c [2021-11-23 13:53:45,127 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/data/5e4e1f537/8e08b8fa24ae4422a56a75d2582304b7/FLAGf6684b660 [2021-11-23 13:53:45,793 INFO L306 CDTParser]: Found 1 translation units. [2021-11-23 13:53:45,801 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/sv-benchmarks/c/product-lines/minepump_spec5_product36.cil.c [2021-11-23 13:53:45,825 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/data/5e4e1f537/8e08b8fa24ae4422a56a75d2582304b7/FLAGf6684b660 [2021-11-23 13:53:46,051 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/data/5e4e1f537/8e08b8fa24ae4422a56a75d2582304b7 [2021-11-23 13:53:46,054 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-11-23 13:53:46,056 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-11-23 13:53:46,057 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-11-23 13:53:46,058 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-11-23 13:53:46,063 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-11-23 13:53:46,064 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,066 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@75a34e19 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46, skipping insertion in model container [2021-11-23 13:53:46,069 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,077 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-11-23 13:53:46,130 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-11-23 13:53:46,360 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/sv-benchmarks/c/product-lines/minepump_spec5_product36.cil.c[2141,2154] [2021-11-23 13:53:46,472 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-11-23 13:53:46,482 INFO L203 MainTranslator]: Completed pre-run [2021-11-23 13:53:46,499 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/sv-benchmarks/c/product-lines/minepump_spec5_product36.cil.c[2141,2154] [2021-11-23 13:53:46,576 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-11-23 13:53:46,610 INFO L208 MainTranslator]: Completed translation [2021-11-23 13:53:46,611 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46 WrapperNode [2021-11-23 13:53:46,611 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-11-23 13:53:46,613 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-11-23 13:53:46,613 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-11-23 13:53:46,613 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-11-23 13:53:46,622 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,652 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,710 INFO L137 Inliner]: procedures = 56, calls = 155, calls flagged for inlining = 52, calls inlined = 57, statements flattened = 459 [2021-11-23 13:53:46,711 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-11-23 13:53:46,712 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-11-23 13:53:46,712 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-11-23 13:53:46,712 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-11-23 13:53:46,722 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,722 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,736 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,745 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,755 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,768 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,770 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,774 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-11-23 13:53:46,775 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-11-23 13:53:46,775 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-11-23 13:53:46,775 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-11-23 13:53:46,776 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (1/1) ... [2021-11-23 13:53:46,785 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-11-23 13:53:46,798 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 [2021-11-23 13:53:46,817 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-11-23 13:53:46,834 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-11-23 13:53:46,871 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-11-23 13:53:46,871 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-11-23 13:53:46,872 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-11-23 13:53:46,872 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-11-23 13:53:46,978 INFO L236 CfgBuilder]: Building ICFG [2021-11-23 13:53:46,980 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-11-23 13:53:47,506 INFO L277 CfgBuilder]: Performing block encoding [2021-11-23 13:53:47,515 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-11-23 13:53:47,519 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-11-23 13:53:47,521 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 01:53:47 BoogieIcfgContainer [2021-11-23 13:53:47,523 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-11-23 13:53:47,526 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-11-23 13:53:47,527 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-11-23 13:53:47,531 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-11-23 13:53:47,531 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 23.11 01:53:46" (1/3) ... [2021-11-23 13:53:47,532 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@33b3404b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 01:53:47, skipping insertion in model container [2021-11-23 13:53:47,532 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 23.11 01:53:46" (2/3) ... [2021-11-23 13:53:47,533 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@33b3404b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 23.11 01:53:47, skipping insertion in model container [2021-11-23 13:53:47,533 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 01:53:47" (3/3) ... [2021-11-23 13:53:47,535 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product36.cil.c [2021-11-23 13:53:47,539 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-11-23 13:53:47,539 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 3 error locations. [2021-11-23 13:53:47,594 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-11-23 13:53:47,601 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-11-23 13:53:47,602 INFO L340 AbstractCegarLoop]: Starting to check reachability of 3 error locations. [2021-11-23 13:53:47,620 INFO L276 IsEmpty]: Start isEmpty. Operand has 123 states, 119 states have (on average 1.3949579831932772) internal successors, (166), 122 states have internal predecessors, (166), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:47,627 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2021-11-23 13:53:47,627 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:47,628 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:47,628 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:47,634 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:47,634 INFO L85 PathProgramCache]: Analyzing trace with hash 2111249956, now seen corresponding path program 1 times [2021-11-23 13:53:47,644 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:47,644 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [252577363] [2021-11-23 13:53:47,644 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:47,645 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:47,800 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:47,929 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:47,930 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:47,930 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [252577363] [2021-11-23 13:53:47,931 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [252577363] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:47,931 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:47,931 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-11-23 13:53:47,933 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [367425615] [2021-11-23 13:53:47,934 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:47,939 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-11-23 13:53:47,939 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:47,977 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-11-23 13:53:47,978 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-11-23 13:53:47,983 INFO L87 Difference]: Start difference. First operand has 123 states, 119 states have (on average 1.3949579831932772) internal successors, (166), 122 states have internal predecessors, (166), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,060 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:48,061 INFO L93 Difference]: Finished difference Result 235 states and 320 transitions. [2021-11-23 13:53:48,063 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-11-23 13:53:48,065 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 21 [2021-11-23 13:53:48,066 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:48,079 INFO L225 Difference]: With dead ends: 235 [2021-11-23 13:53:48,080 INFO L226 Difference]: Without dead ends: 113 [2021-11-23 13:53:48,085 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-11-23 13:53:48,090 INFO L933 BasicCegarLoop]: 156 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 156 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:48,092 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 156 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:48,112 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 113 states. [2021-11-23 13:53:48,151 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 113 to 113. [2021-11-23 13:53:48,155 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 113 states, 110 states have (on average 1.3454545454545455) internal successors, (148), 112 states have internal predecessors, (148), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,163 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 113 states to 113 states and 148 transitions. [2021-11-23 13:53:48,167 INFO L78 Accepts]: Start accepts. Automaton has 113 states and 148 transitions. Word has length 21 [2021-11-23 13:53:48,168 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:48,168 INFO L470 AbstractCegarLoop]: Abstraction has 113 states and 148 transitions. [2021-11-23 13:53:48,169 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,169 INFO L276 IsEmpty]: Start isEmpty. Operand 113 states and 148 transitions. [2021-11-23 13:53:48,170 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2021-11-23 13:53:48,171 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:48,172 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:48,172 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-11-23 13:53:48,173 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:48,175 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:48,177 INFO L85 PathProgramCache]: Analyzing trace with hash -120813815, now seen corresponding path program 1 times [2021-11-23 13:53:48,178 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:48,178 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1804968289] [2021-11-23 13:53:48,179 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:48,179 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:48,220 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:48,265 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:48,265 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:48,265 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1804968289] [2021-11-23 13:53:48,266 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1804968289] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:48,266 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:48,266 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-11-23 13:53:48,266 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2049172973] [2021-11-23 13:53:48,267 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:48,268 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-11-23 13:53:48,268 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:48,269 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-11-23 13:53:48,269 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-23 13:53:48,270 INFO L87 Difference]: Start difference. First operand 113 states and 148 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,284 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:48,284 INFO L93 Difference]: Finished difference Result 113 states and 148 transitions. [2021-11-23 13:53:48,285 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-11-23 13:53:48,285 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 22 [2021-11-23 13:53:48,285 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:48,286 INFO L225 Difference]: With dead ends: 113 [2021-11-23 13:53:48,286 INFO L226 Difference]: Without dead ends: 54 [2021-11-23 13:53:48,287 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-23 13:53:48,289 INFO L933 BasicCegarLoop]: 69 mSDtfsCounter, 61 mSDsluCounter, 7 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 76 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:48,294 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [61 Valid, 76 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:48,297 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 54 states. [2021-11-23 13:53:48,310 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 54 to 54. [2021-11-23 13:53:48,314 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 54 states, 53 states have (on average 1.320754716981132) internal successors, (70), 53 states have internal predecessors, (70), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,315 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 54 states to 54 states and 70 transitions. [2021-11-23 13:53:48,315 INFO L78 Accepts]: Start accepts. Automaton has 54 states and 70 transitions. Word has length 22 [2021-11-23 13:53:48,315 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:48,315 INFO L470 AbstractCegarLoop]: Abstraction has 54 states and 70 transitions. [2021-11-23 13:53:48,315 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,316 INFO L276 IsEmpty]: Start isEmpty. Operand 54 states and 70 transitions. [2021-11-23 13:53:48,317 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2021-11-23 13:53:48,317 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:48,317 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:48,317 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-11-23 13:53:48,318 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:48,318 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:48,318 INFO L85 PathProgramCache]: Analyzing trace with hash -1162979247, now seen corresponding path program 1 times [2021-11-23 13:53:48,319 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:48,319 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1820401323] [2021-11-23 13:53:48,319 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:48,319 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:48,361 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:48,443 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:48,444 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:48,444 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1820401323] [2021-11-23 13:53:48,444 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1820401323] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:48,444 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:48,445 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-11-23 13:53:48,445 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2070473052] [2021-11-23 13:53:48,445 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:48,446 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-23 13:53:48,446 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:48,446 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-23 13:53:48,447 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-23 13:53:48,447 INFO L87 Difference]: Start difference. First operand 54 states and 70 transitions. Second operand has 5 states, 5 states have (on average 5.8) internal successors, (29), 5 states have internal predecessors, (29), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,519 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:48,524 INFO L93 Difference]: Finished difference Result 133 states and 177 transitions. [2021-11-23 13:53:48,525 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-11-23 13:53:48,525 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.8) internal successors, (29), 5 states have internal predecessors, (29), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 29 [2021-11-23 13:53:48,526 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:48,529 INFO L225 Difference]: With dead ends: 133 [2021-11-23 13:53:48,530 INFO L226 Difference]: Without dead ends: 87 [2021-11-23 13:53:48,531 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-11-23 13:53:48,534 INFO L933 BasicCegarLoop]: 67 mSDtfsCounter, 279 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 6 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 279 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 8 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 6 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:48,535 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [279 Valid, 115 Invalid, 8 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 6 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:48,538 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2021-11-23 13:53:48,551 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 82. [2021-11-23 13:53:48,560 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 82 states, 81 states have (on average 1.345679012345679) internal successors, (109), 81 states have internal predecessors, (109), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,563 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 82 states to 82 states and 109 transitions. [2021-11-23 13:53:48,564 INFO L78 Accepts]: Start accepts. Automaton has 82 states and 109 transitions. Word has length 29 [2021-11-23 13:53:48,565 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:48,565 INFO L470 AbstractCegarLoop]: Abstraction has 82 states and 109 transitions. [2021-11-23 13:53:48,565 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.8) internal successors, (29), 5 states have internal predecessors, (29), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,566 INFO L276 IsEmpty]: Start isEmpty. Operand 82 states and 109 transitions. [2021-11-23 13:53:48,569 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-11-23 13:53:48,569 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:48,570 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:48,570 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-11-23 13:53:48,571 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:48,571 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:48,572 INFO L85 PathProgramCache]: Analyzing trace with hash 947461875, now seen corresponding path program 1 times [2021-11-23 13:53:48,572 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:48,573 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1851361227] [2021-11-23 13:53:48,573 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:48,573 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:48,617 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:48,647 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:48,647 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:48,648 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1851361227] [2021-11-23 13:53:48,648 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1851361227] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:48,648 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:48,648 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-11-23 13:53:48,649 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1313949497] [2021-11-23 13:53:48,649 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:48,649 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-11-23 13:53:48,650 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:48,650 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-11-23 13:53:48,651 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-23 13:53:48,651 INFO L87 Difference]: Start difference. First operand 82 states and 109 transitions. Second operand has 3 states, 3 states have (on average 10.666666666666666) internal successors, (32), 2 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,703 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:48,703 INFO L93 Difference]: Finished difference Result 186 states and 250 transitions. [2021-11-23 13:53:48,703 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-11-23 13:53:48,704 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.666666666666666) internal successors, (32), 2 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-11-23 13:53:48,704 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:48,705 INFO L225 Difference]: With dead ends: 186 [2021-11-23 13:53:48,706 INFO L226 Difference]: Without dead ends: 112 [2021-11-23 13:53:48,707 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-23 13:53:48,708 INFO L933 BasicCegarLoop]: 66 mSDtfsCounter, 39 mSDsluCounter, 40 mSDsCounter, 0 mSdLazyCounter, 10 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 39 SdHoareTripleChecker+Valid, 106 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 10 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:48,712 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [39 Valid, 106 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 10 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:48,713 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 112 states. [2021-11-23 13:53:48,726 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 112 to 110. [2021-11-23 13:53:48,734 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 110 states, 109 states have (on average 1.3211009174311927) internal successors, (144), 109 states have internal predecessors, (144), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,736 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 110 states to 110 states and 144 transitions. [2021-11-23 13:53:48,736 INFO L78 Accepts]: Start accepts. Automaton has 110 states and 144 transitions. Word has length 32 [2021-11-23 13:53:48,737 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:48,737 INFO L470 AbstractCegarLoop]: Abstraction has 110 states and 144 transitions. [2021-11-23 13:53:48,737 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.666666666666666) internal successors, (32), 2 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:48,738 INFO L276 IsEmpty]: Start isEmpty. Operand 110 states and 144 transitions. [2021-11-23 13:53:48,743 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-11-23 13:53:48,743 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:48,744 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:48,744 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-11-23 13:53:48,744 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:48,747 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:48,747 INFO L85 PathProgramCache]: Analyzing trace with hash -1788087695, now seen corresponding path program 1 times [2021-11-23 13:53:48,747 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:48,748 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1596871448] [2021-11-23 13:53:48,748 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:48,749 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:48,781 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:48,857 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:48,858 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:48,858 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1596871448] [2021-11-23 13:53:48,858 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1596871448] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:48,859 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:48,859 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-11-23 13:53:48,860 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [927256860] [2021-11-23 13:53:48,861 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:48,863 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-23 13:53:48,863 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:48,864 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-23 13:53:48,865 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-23 13:53:48,865 INFO L87 Difference]: Start difference. First operand 110 states and 144 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,034 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:49,034 INFO L93 Difference]: Finished difference Result 370 states and 483 transitions. [2021-11-23 13:53:49,034 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-11-23 13:53:49,034 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2021-11-23 13:53:49,035 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:49,039 INFO L225 Difference]: With dead ends: 370 [2021-11-23 13:53:49,039 INFO L226 Difference]: Without dead ends: 268 [2021-11-23 13:53:49,042 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-11-23 13:53:49,048 INFO L933 BasicCegarLoop]: 134 mSDtfsCounter, 220 mSDsluCounter, 271 mSDsCounter, 0 mSdLazyCounter, 45 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 220 SdHoareTripleChecker+Valid, 405 SdHoareTripleChecker+Invalid, 57 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 45 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:49,049 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [220 Valid, 405 Invalid, 57 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 45 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-11-23 13:53:49,051 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 268 states. [2021-11-23 13:53:49,092 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 268 to 108. [2021-11-23 13:53:49,092 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 107 states have (on average 1.2897196261682242) internal successors, (138), 107 states have internal predecessors, (138), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,093 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 138 transitions. [2021-11-23 13:53:49,093 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 138 transitions. Word has length 32 [2021-11-23 13:53:49,094 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:49,094 INFO L470 AbstractCegarLoop]: Abstraction has 108 states and 138 transitions. [2021-11-23 13:53:49,094 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,094 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 138 transitions. [2021-11-23 13:53:49,095 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2021-11-23 13:53:49,095 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:49,096 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:49,096 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-11-23 13:53:49,096 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:49,097 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:49,097 INFO L85 PathProgramCache]: Analyzing trace with hash 1816918555, now seen corresponding path program 1 times [2021-11-23 13:53:49,097 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:49,097 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1544296859] [2021-11-23 13:53:49,097 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:49,098 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:49,112 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:49,149 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:49,149 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:49,149 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1544296859] [2021-11-23 13:53:49,149 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1544296859] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:49,150 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:49,150 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-11-23 13:53:49,150 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2111315202] [2021-11-23 13:53:49,150 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:49,151 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-23 13:53:49,151 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:49,151 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-23 13:53:49,151 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-23 13:53:49,152 INFO L87 Difference]: Start difference. First operand 108 states and 138 transitions. Second operand has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,200 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:49,200 INFO L93 Difference]: Finished difference Result 315 states and 405 transitions. [2021-11-23 13:53:49,200 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-11-23 13:53:49,201 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 38 [2021-11-23 13:53:49,201 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:49,204 INFO L225 Difference]: With dead ends: 315 [2021-11-23 13:53:49,204 INFO L226 Difference]: Without dead ends: 215 [2021-11-23 13:53:49,205 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-11-23 13:53:49,206 INFO L933 BasicCegarLoop]: 105 mSDtfsCounter, 160 mSDsluCounter, 274 mSDsCounter, 0 mSdLazyCounter, 16 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 160 SdHoareTripleChecker+Valid, 379 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 16 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:49,206 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [160 Valid, 379 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 16 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:49,207 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 215 states. [2021-11-23 13:53:49,223 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 215 to 111. [2021-11-23 13:53:49,224 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 111 states, 110 states have (on average 1.2818181818181817) internal successors, (141), 110 states have internal predecessors, (141), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,224 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 111 states to 111 states and 141 transitions. [2021-11-23 13:53:49,225 INFO L78 Accepts]: Start accepts. Automaton has 111 states and 141 transitions. Word has length 38 [2021-11-23 13:53:49,225 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:49,225 INFO L470 AbstractCegarLoop]: Abstraction has 111 states and 141 transitions. [2021-11-23 13:53:49,226 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,226 INFO L276 IsEmpty]: Start isEmpty. Operand 111 states and 141 transitions. [2021-11-23 13:53:49,229 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2021-11-23 13:53:49,229 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:49,229 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:49,229 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-11-23 13:53:49,230 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:49,230 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:49,231 INFO L85 PathProgramCache]: Analyzing trace with hash 1230112541, now seen corresponding path program 1 times [2021-11-23 13:53:49,231 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:49,231 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1316123970] [2021-11-23 13:53:49,231 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:49,231 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:49,260 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:49,351 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:49,351 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:49,351 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1316123970] [2021-11-23 13:53:49,352 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1316123970] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:49,352 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:49,352 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-11-23 13:53:49,352 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [152972495] [2021-11-23 13:53:49,352 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:49,353 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-11-23 13:53:49,353 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:49,354 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-11-23 13:53:49,354 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-11-23 13:53:49,354 INFO L87 Difference]: Start difference. First operand 111 states and 141 transitions. Second operand has 5 states, 5 states have (on average 7.6) internal successors, (38), 4 states have internal predecessors, (38), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,415 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:49,415 INFO L93 Difference]: Finished difference Result 321 states and 412 transitions. [2021-11-23 13:53:49,416 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-11-23 13:53:49,416 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 4 states have internal predecessors, (38), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 38 [2021-11-23 13:53:49,418 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:49,421 INFO L225 Difference]: With dead ends: 321 [2021-11-23 13:53:49,421 INFO L226 Difference]: Without dead ends: 218 [2021-11-23 13:53:49,422 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=14, Invalid=16, Unknown=0, NotChecked=0, Total=30 [2021-11-23 13:53:49,426 INFO L933 BasicCegarLoop]: 99 mSDtfsCounter, 109 mSDsluCounter, 135 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 109 SdHoareTripleChecker+Valid, 234 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:49,427 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [109 Valid, 234 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:49,429 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 218 states. [2021-11-23 13:53:49,455 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 218 to 172. [2021-11-23 13:53:49,456 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 172 states, 171 states have (on average 1.2573099415204678) internal successors, (215), 171 states have internal predecessors, (215), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,457 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 172 states to 172 states and 215 transitions. [2021-11-23 13:53:49,457 INFO L78 Accepts]: Start accepts. Automaton has 172 states and 215 transitions. Word has length 38 [2021-11-23 13:53:49,458 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:49,458 INFO L470 AbstractCegarLoop]: Abstraction has 172 states and 215 transitions. [2021-11-23 13:53:49,458 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 4 states have internal predecessors, (38), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,458 INFO L276 IsEmpty]: Start isEmpty. Operand 172 states and 215 transitions. [2021-11-23 13:53:49,459 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-11-23 13:53:49,459 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:49,459 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:49,460 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-11-23 13:53:49,460 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:49,461 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:49,461 INFO L85 PathProgramCache]: Analyzing trace with hash -1311711272, now seen corresponding path program 1 times [2021-11-23 13:53:49,461 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:49,462 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1384283518] [2021-11-23 13:53:49,462 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:49,462 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:49,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:49,526 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:49,526 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:49,526 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1384283518] [2021-11-23 13:53:49,527 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1384283518] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:49,527 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:49,527 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-11-23 13:53:49,527 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1388217054] [2021-11-23 13:53:49,527 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:49,528 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-11-23 13:53:49,528 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:49,528 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-11-23 13:53:49,529 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-11-23 13:53:49,529 INFO L87 Difference]: Start difference. First operand 172 states and 215 transitions. Second operand has 4 states, 4 states have (on average 10.0) internal successors, (40), 3 states have internal predecessors, (40), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,589 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:49,590 INFO L93 Difference]: Finished difference Result 374 states and 476 transitions. [2021-11-23 13:53:49,590 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-11-23 13:53:49,590 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 10.0) internal successors, (40), 3 states have internal predecessors, (40), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 40 [2021-11-23 13:53:49,591 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:49,593 INFO L225 Difference]: With dead ends: 374 [2021-11-23 13:53:49,593 INFO L226 Difference]: Without dead ends: 271 [2021-11-23 13:53:49,594 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-11-23 13:53:49,595 INFO L933 BasicCegarLoop]: 105 mSDtfsCounter, 82 mSDsluCounter, 117 mSDsCounter, 0 mSdLazyCounter, 20 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 222 SdHoareTripleChecker+Invalid, 24 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 20 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:49,596 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [82 Valid, 222 Invalid, 24 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 20 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:49,597 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 271 states. [2021-11-23 13:53:49,646 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 271 to 269. [2021-11-23 13:53:49,647 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 269 states, 268 states have (on average 1.257462686567164) internal successors, (337), 268 states have internal predecessors, (337), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,649 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 269 states to 269 states and 337 transitions. [2021-11-23 13:53:49,649 INFO L78 Accepts]: Start accepts. Automaton has 269 states and 337 transitions. Word has length 40 [2021-11-23 13:53:49,649 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:49,649 INFO L470 AbstractCegarLoop]: Abstraction has 269 states and 337 transitions. [2021-11-23 13:53:49,650 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 10.0) internal successors, (40), 3 states have internal predecessors, (40), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:49,650 INFO L276 IsEmpty]: Start isEmpty. Operand 269 states and 337 transitions. [2021-11-23 13:53:49,650 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-11-23 13:53:49,651 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:49,651 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:49,651 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-11-23 13:53:49,651 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:49,652 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:49,652 INFO L85 PathProgramCache]: Analyzing trace with hash 1703392346, now seen corresponding path program 1 times [2021-11-23 13:53:49,652 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:49,652 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1994635352] [2021-11-23 13:53:49,652 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:49,653 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:49,668 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:49,754 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:49,754 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:49,755 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1994635352] [2021-11-23 13:53:49,755 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1994635352] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:49,755 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:49,755 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-11-23 13:53:49,755 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [161968173] [2021-11-23 13:53:49,755 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:49,756 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-11-23 13:53:49,756 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:49,756 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-11-23 13:53:49,757 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2021-11-23 13:53:49,757 INFO L87 Difference]: Start difference. First operand 269 states and 337 transitions. Second operand has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 6 states have internal predecessors, (40), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:50,004 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:50,005 INFO L93 Difference]: Finished difference Result 1064 states and 1359 transitions. [2021-11-23 13:53:50,005 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-11-23 13:53:50,005 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 6 states have internal predecessors, (40), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 40 [2021-11-23 13:53:50,006 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:50,011 INFO L225 Difference]: With dead ends: 1064 [2021-11-23 13:53:50,011 INFO L226 Difference]: Without dead ends: 864 [2021-11-23 13:53:50,012 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 19 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=51, Invalid=105, Unknown=0, NotChecked=0, Total=156 [2021-11-23 13:53:50,013 INFO L933 BasicCegarLoop]: 182 mSDtfsCounter, 462 mSDsluCounter, 457 mSDsCounter, 0 mSdLazyCounter, 69 mSolverCounterSat, 35 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 462 SdHoareTripleChecker+Valid, 639 SdHoareTripleChecker+Invalid, 104 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 35 IncrementalHoareTripleChecker+Valid, 69 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:50,013 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [462 Valid, 639 Invalid, 104 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [35 Valid, 69 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-11-23 13:53:50,015 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 864 states. [2021-11-23 13:53:50,068 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 864 to 358. [2021-11-23 13:53:50,069 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 358 states, 357 states have (on average 1.2521008403361344) internal successors, (447), 357 states have internal predecessors, (447), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:50,071 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 358 states to 358 states and 447 transitions. [2021-11-23 13:53:50,071 INFO L78 Accepts]: Start accepts. Automaton has 358 states and 447 transitions. Word has length 40 [2021-11-23 13:53:50,072 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:50,072 INFO L470 AbstractCegarLoop]: Abstraction has 358 states and 447 transitions. [2021-11-23 13:53:50,072 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 6 states have internal predecessors, (40), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:50,072 INFO L276 IsEmpty]: Start isEmpty. Operand 358 states and 447 transitions. [2021-11-23 13:53:50,074 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2021-11-23 13:53:50,074 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:50,075 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:50,075 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-11-23 13:53:50,075 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:50,076 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:50,076 INFO L85 PathProgramCache]: Analyzing trace with hash -876085862, now seen corresponding path program 1 times [2021-11-23 13:53:50,076 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:50,076 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1396235766] [2021-11-23 13:53:50,077 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:50,077 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:50,103 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:50,183 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 15 proven. 4 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:50,183 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:50,183 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1396235766] [2021-11-23 13:53:50,184 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1396235766] provided 0 perfect and 1 imperfect interpolant sequences [2021-11-23 13:53:50,184 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1671481446] [2021-11-23 13:53:50,184 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:50,184 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-23 13:53:50,185 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 [2021-11-23 13:53:50,190 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-11-23 13:53:50,197 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-11-23 13:53:50,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:50,327 INFO L263 TraceCheckSpWp]: Trace formula consists of 380 conjuncts, 5 conjunts are in the unsatisfiable core [2021-11-23 13:53:50,336 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-11-23 13:53:50,592 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 15 proven. 4 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:50,592 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-11-23 13:53:50,746 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 15 proven. 4 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-11-23 13:53:50,746 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1671481446] provided 0 perfect and 2 imperfect interpolant sequences [2021-11-23 13:53:50,747 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-11-23 13:53:50,747 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 5, 5] total 10 [2021-11-23 13:53:50,747 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [454964640] [2021-11-23 13:53:50,747 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-11-23 13:53:50,749 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2021-11-23 13:53:50,749 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:50,750 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2021-11-23 13:53:50,750 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=70, Unknown=0, NotChecked=0, Total=90 [2021-11-23 13:53:50,750 INFO L87 Difference]: Start difference. First operand 358 states and 447 transitions. Second operand has 10 states, 10 states have (on average 10.0) internal successors, (100), 10 states have internal predecessors, (100), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:51,017 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:51,017 INFO L93 Difference]: Finished difference Result 849 states and 1074 transitions. [2021-11-23 13:53:51,017 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-11-23 13:53:51,017 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 10 states have (on average 10.0) internal successors, (100), 10 states have internal predecessors, (100), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 64 [2021-11-23 13:53:51,019 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:51,022 INFO L225 Difference]: With dead ends: 849 [2021-11-23 13:53:51,022 INFO L226 Difference]: Without dead ends: 558 [2021-11-23 13:53:51,023 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 149 GetRequests, 130 SyntacticMatches, 1 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 51 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=120, Invalid=260, Unknown=0, NotChecked=0, Total=380 [2021-11-23 13:53:51,024 INFO L933 BasicCegarLoop]: 121 mSDtfsCounter, 398 mSDsluCounter, 324 mSDsCounter, 0 mSdLazyCounter, 61 mSolverCounterSat, 21 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 398 SdHoareTripleChecker+Valid, 445 SdHoareTripleChecker+Invalid, 82 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 21 IncrementalHoareTripleChecker+Valid, 61 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:51,025 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [398 Valid, 445 Invalid, 82 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [21 Valid, 61 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-11-23 13:53:51,026 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 558 states. [2021-11-23 13:53:51,068 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 558 to 372. [2021-11-23 13:53:51,069 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 372 states, 371 states have (on average 1.2318059299191375) internal successors, (457), 371 states have internal predecessors, (457), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:51,071 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 372 states to 372 states and 457 transitions. [2021-11-23 13:53:51,071 INFO L78 Accepts]: Start accepts. Automaton has 372 states and 457 transitions. Word has length 64 [2021-11-23 13:53:51,072 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:51,072 INFO L470 AbstractCegarLoop]: Abstraction has 372 states and 457 transitions. [2021-11-23 13:53:51,073 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 10 states have (on average 10.0) internal successors, (100), 10 states have internal predecessors, (100), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:51,073 INFO L276 IsEmpty]: Start isEmpty. Operand 372 states and 457 transitions. [2021-11-23 13:53:51,075 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 97 [2021-11-23 13:53:51,075 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:51,075 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:51,116 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-11-23 13:53:51,301 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-23 13:53:51,302 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:51,302 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:51,302 INFO L85 PathProgramCache]: Analyzing trace with hash -1169319206, now seen corresponding path program 1 times [2021-11-23 13:53:51,302 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:51,303 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2094329361] [2021-11-23 13:53:51,303 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:51,303 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:51,320 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:51,354 INFO L134 CoverageAnalysis]: Checked inductivity of 64 backedges. 27 proven. 0 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2021-11-23 13:53:51,355 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:51,355 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2094329361] [2021-11-23 13:53:51,355 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2094329361] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:51,355 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:51,355 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-11-23 13:53:51,356 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [646054874] [2021-11-23 13:53:51,356 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:51,356 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-11-23 13:53:51,356 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:51,357 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-11-23 13:53:51,357 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-23 13:53:51,357 INFO L87 Difference]: Start difference. First operand 372 states and 457 transitions. Second operand has 3 states, 3 states have (on average 23.666666666666668) internal successors, (71), 3 states have internal predecessors, (71), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:51,422 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:51,423 INFO L93 Difference]: Finished difference Result 744 states and 914 transitions. [2021-11-23 13:53:51,423 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-11-23 13:53:51,424 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 23.666666666666668) internal successors, (71), 3 states have internal predecessors, (71), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 96 [2021-11-23 13:53:51,424 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:51,427 INFO L225 Difference]: With dead ends: 744 [2021-11-23 13:53:51,427 INFO L226 Difference]: Without dead ends: 380 [2021-11-23 13:53:51,430 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-11-23 13:53:51,431 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 28 mSDsluCounter, 64 mSDsCounter, 0 mSdLazyCounter, 5 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 28 SdHoareTripleChecker+Valid, 157 SdHoareTripleChecker+Invalid, 5 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 5 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:51,432 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [28 Valid, 157 Invalid, 5 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 5 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:51,433 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 380 states. [2021-11-23 13:53:51,473 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 380 to 372. [2021-11-23 13:53:51,474 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 372 states, 371 states have (on average 1.221024258760108) internal successors, (453), 371 states have internal predecessors, (453), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:51,476 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 372 states to 372 states and 453 transitions. [2021-11-23 13:53:51,476 INFO L78 Accepts]: Start accepts. Automaton has 372 states and 453 transitions. Word has length 96 [2021-11-23 13:53:51,476 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:51,477 INFO L470 AbstractCegarLoop]: Abstraction has 372 states and 453 transitions. [2021-11-23 13:53:51,477 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 23.666666666666668) internal successors, (71), 3 states have internal predecessors, (71), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:51,477 INFO L276 IsEmpty]: Start isEmpty. Operand 372 states and 453 transitions. [2021-11-23 13:53:51,484 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 116 [2021-11-23 13:53:51,484 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:51,484 INFO L514 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:51,484 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-11-23 13:53:51,485 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:51,485 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:51,485 INFO L85 PathProgramCache]: Analyzing trace with hash -280348391, now seen corresponding path program 1 times [2021-11-23 13:53:51,485 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:51,486 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [755466382] [2021-11-23 13:53:51,486 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:51,486 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:51,507 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:51,579 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 84 proven. 2 refuted. 0 times theorem prover too weak. 32 trivial. 0 not checked. [2021-11-23 13:53:51,579 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:51,579 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [755466382] [2021-11-23 13:53:51,579 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [755466382] provided 0 perfect and 1 imperfect interpolant sequences [2021-11-23 13:53:51,580 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2122992908] [2021-11-23 13:53:51,580 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:51,580 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-23 13:53:51,580 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 [2021-11-23 13:53:51,581 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-11-23 13:53:51,612 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-11-23 13:53:51,716 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:51,719 INFO L263 TraceCheckSpWp]: Trace formula consists of 511 conjuncts, 7 conjunts are in the unsatisfiable core [2021-11-23 13:53:51,733 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-11-23 13:53:51,988 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 85 proven. 6 refuted. 0 times theorem prover too weak. 27 trivial. 0 not checked. [2021-11-23 13:53:51,988 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-11-23 13:53:52,220 INFO L134 CoverageAnalysis]: Checked inductivity of 118 backedges. 85 proven. 6 refuted. 0 times theorem prover too weak. 27 trivial. 0 not checked. [2021-11-23 13:53:52,220 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2122992908] provided 0 perfect and 2 imperfect interpolant sequences [2021-11-23 13:53:52,221 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-11-23 13:53:52,221 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 9 [2021-11-23 13:53:52,221 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1262803443] [2021-11-23 13:53:52,221 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-11-23 13:53:52,222 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2021-11-23 13:53:52,222 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:52,222 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2021-11-23 13:53:52,223 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=56, Unknown=0, NotChecked=0, Total=72 [2021-11-23 13:53:52,223 INFO L87 Difference]: Start difference. First operand 372 states and 453 transitions. Second operand has 9 states, 9 states have (on average 18.555555555555557) internal successors, (167), 9 states have internal predecessors, (167), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:52,478 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:52,478 INFO L93 Difference]: Finished difference Result 984 states and 1196 transitions. [2021-11-23 13:53:52,478 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2021-11-23 13:53:52,478 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 18.555555555555557) internal successors, (167), 9 states have internal predecessors, (167), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 115 [2021-11-23 13:53:52,479 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:52,482 INFO L225 Difference]: With dead ends: 984 [2021-11-23 13:53:52,482 INFO L226 Difference]: Without dead ends: 620 [2021-11-23 13:53:52,483 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 249 GetRequests, 231 SyntacticMatches, 1 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 39 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=87, Invalid=255, Unknown=0, NotChecked=0, Total=342 [2021-11-23 13:53:52,485 INFO L933 BasicCegarLoop]: 164 mSDtfsCounter, 540 mSDsluCounter, 620 mSDsCounter, 0 mSdLazyCounter, 103 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 540 SdHoareTripleChecker+Valid, 784 SdHoareTripleChecker+Invalid, 123 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 103 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:52,485 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [540 Valid, 784 Invalid, 123 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 103 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-11-23 13:53:52,486 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 620 states. [2021-11-23 13:53:52,534 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 620 to 414. [2021-11-23 13:53:52,535 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 414 states, 413 states have (on average 1.1985472154963681) internal successors, (495), 413 states have internal predecessors, (495), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:52,537 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 414 states to 414 states and 495 transitions. [2021-11-23 13:53:52,537 INFO L78 Accepts]: Start accepts. Automaton has 414 states and 495 transitions. Word has length 115 [2021-11-23 13:53:52,537 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:52,538 INFO L470 AbstractCegarLoop]: Abstraction has 414 states and 495 transitions. [2021-11-23 13:53:52,538 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 18.555555555555557) internal successors, (167), 9 states have internal predecessors, (167), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:52,538 INFO L276 IsEmpty]: Start isEmpty. Operand 414 states and 495 transitions. [2021-11-23 13:53:52,539 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 120 [2021-11-23 13:53:52,540 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:52,540 INFO L514 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:52,579 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2021-11-23 13:53:52,753 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2021-11-23 13:53:52,753 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:52,754 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:52,754 INFO L85 PathProgramCache]: Analyzing trace with hash 315707129, now seen corresponding path program 1 times [2021-11-23 13:53:52,754 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:52,754 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1468989490] [2021-11-23 13:53:52,754 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:52,755 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:52,773 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:52,849 INFO L134 CoverageAnalysis]: Checked inductivity of 124 backedges. 100 proven. 0 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2021-11-23 13:53:52,849 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:52,850 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1468989490] [2021-11-23 13:53:52,850 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1468989490] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:52,850 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-11-23 13:53:52,850 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-11-23 13:53:52,850 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [14592921] [2021-11-23 13:53:52,851 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:52,851 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-11-23 13:53:52,851 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:52,852 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-11-23 13:53:52,852 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-11-23 13:53:52,852 INFO L87 Difference]: Start difference. First operand 414 states and 495 transitions. Second operand has 7 states, 7 states have (on average 14.142857142857142) internal successors, (99), 7 states have internal predecessors, (99), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:53,003 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:53,003 INFO L93 Difference]: Finished difference Result 815 states and 971 transitions. [2021-11-23 13:53:53,004 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-11-23 13:53:53,004 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 14.142857142857142) internal successors, (99), 7 states have internal predecessors, (99), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 119 [2021-11-23 13:53:53,004 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:53,007 INFO L225 Difference]: With dead ends: 815 [2021-11-23 13:53:53,007 INFO L226 Difference]: Without dead ends: 468 [2021-11-23 13:53:53,008 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=55, Invalid=101, Unknown=0, NotChecked=0, Total=156 [2021-11-23 13:53:53,009 INFO L933 BasicCegarLoop]: 128 mSDtfsCounter, 231 mSDsluCounter, 229 mSDsCounter, 0 mSdLazyCounter, 52 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 231 SdHoareTripleChecker+Valid, 357 SdHoareTripleChecker+Invalid, 59 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 52 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:53,009 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [231 Valid, 357 Invalid, 59 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 52 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:53,011 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 468 states. [2021-11-23 13:53:53,056 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 468 to 414. [2021-11-23 13:53:53,058 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 414 states, 413 states have (on average 1.188861985472155) internal successors, (491), 413 states have internal predecessors, (491), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:53,060 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 414 states to 414 states and 491 transitions. [2021-11-23 13:53:53,060 INFO L78 Accepts]: Start accepts. Automaton has 414 states and 491 transitions. Word has length 119 [2021-11-23 13:53:53,060 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:53,060 INFO L470 AbstractCegarLoop]: Abstraction has 414 states and 491 transitions. [2021-11-23 13:53:53,060 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 14.142857142857142) internal successors, (99), 7 states have internal predecessors, (99), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:53,061 INFO L276 IsEmpty]: Start isEmpty. Operand 414 states and 491 transitions. [2021-11-23 13:53:53,062 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 121 [2021-11-23 13:53:53,062 INFO L506 BasicCegarLoop]: Found error trace [2021-11-23 13:53:53,062 INFO L514 BasicCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:53:53,063 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-11-23 13:53:53,063 INFO L402 AbstractCegarLoop]: === Iteration 14 === Targeting ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION === [ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION, ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION] === [2021-11-23 13:53:53,063 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-11-23 13:53:53,063 INFO L85 PathProgramCache]: Analyzing trace with hash 1199481006, now seen corresponding path program 1 times [2021-11-23 13:53:53,063 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-11-23 13:53:53,064 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1081917466] [2021-11-23 13:53:53,064 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:53,064 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-11-23 13:53:53,087 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:53,147 INFO L134 CoverageAnalysis]: Checked inductivity of 125 backedges. 22 proven. 12 refuted. 0 times theorem prover too weak. 91 trivial. 0 not checked. [2021-11-23 13:53:53,149 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-11-23 13:53:53,149 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1081917466] [2021-11-23 13:53:53,149 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1081917466] provided 0 perfect and 1 imperfect interpolant sequences [2021-11-23 13:53:53,149 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1324977620] [2021-11-23 13:53:53,149 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-11-23 13:53:53,149 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-11-23 13:53:53,150 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 [2021-11-23 13:53:53,154 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-11-23 13:53:53,174 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2021-11-23 13:53:53,269 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-11-23 13:53:53,271 INFO L263 TraceCheckSpWp]: Trace formula consists of 529 conjuncts, 4 conjunts are in the unsatisfiable core [2021-11-23 13:53:53,278 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-11-23 13:53:53,438 INFO L134 CoverageAnalysis]: Checked inductivity of 125 backedges. 22 proven. 0 refuted. 0 times theorem prover too weak. 103 trivial. 0 not checked. [2021-11-23 13:53:53,438 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-11-23 13:53:53,438 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1324977620] provided 1 perfect and 0 imperfect interpolant sequences [2021-11-23 13:53:53,439 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-11-23 13:53:53,439 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [5] total 5 [2021-11-23 13:53:53,441 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1336629379] [2021-11-23 13:53:53,441 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-11-23 13:53:53,442 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-11-23 13:53:53,442 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-11-23 13:53:53,442 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-11-23 13:53:53,442 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-11-23 13:53:53,443 INFO L87 Difference]: Start difference. First operand 414 states and 491 transitions. Second operand has 4 states, 4 states have (on average 17.75) internal successors, (71), 4 states have internal predecessors, (71), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:53,541 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-11-23 13:53:53,542 INFO L93 Difference]: Finished difference Result 917 states and 1092 transitions. [2021-11-23 13:53:53,542 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-11-23 13:53:53,542 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 17.75) internal successors, (71), 4 states have internal predecessors, (71), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 120 [2021-11-23 13:53:53,542 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-11-23 13:53:53,543 INFO L225 Difference]: With dead ends: 917 [2021-11-23 13:53:53,543 INFO L226 Difference]: Without dead ends: 0 [2021-11-23 13:53:53,544 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 126 GetRequests, 122 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2021-11-23 13:53:53,544 INFO L933 BasicCegarLoop]: 104 mSDtfsCounter, 87 mSDsluCounter, 128 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 87 SdHoareTripleChecker+Valid, 232 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-11-23 13:53:53,545 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [87 Valid, 232 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-11-23 13:53:53,545 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-11-23 13:53:53,545 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-11-23 13:53:53,546 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:53,546 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-11-23 13:53:53,546 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 120 [2021-11-23 13:53:53,546 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-11-23 13:53:53,546 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-11-23 13:53:53,546 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 17.75) internal successors, (71), 4 states have internal predecessors, (71), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-11-23 13:53:53,546 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-11-23 13:53:53,547 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-11-23 13:53:53,551 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION (2 of 3 remaining) [2021-11-23 13:53:53,552 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION (1 of 3 remaining) [2021-11-23 13:53:53,552 INFO L764 garLoopResultBuilder]: Registering result SAFE for location ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION (0 of 3 remaining) [2021-11-23 13:53:53,587 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2021-11-23 13:53:53,767 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2021-11-23 13:53:53,769 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-11-23 13:54:02,971 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startErr1ASSERT_VIOLATIONERROR_FUNCTION(line 92) no Hoare annotation was computed. [2021-11-23 13:54:02,971 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-11-23 13:54:02,972 INFO L854 garLoopResultBuilder]: At program point L284(lines 279 286) the Hoare annotation is: (let ((.cse9 (= ~pumpRunning~0 0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse7 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= ~waterLevel~0 2)) (.cse8 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0) .cse1 .cse2 .cse3 .cse4 .cse5 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0) .cse6) (and .cse0 .cse7 .cse1 .cse2 (not (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) .cse4 .cse5 .cse8 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse6) (and .cse1 .cse9 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse7 .cse1 .cse9 .cse2 .cse4 .cse5 .cse8 .cse6) (and .cse1 .cse9 .cse2 .cse4 (= ~waterLevel~0 1) .cse6) (and .cse0 .cse7 .cse1 .cse2 .cse3 .cse4 .cse5 .cse8 .cse6))) [2021-11-23 13:54:02,972 INFO L858 garLoopResultBuilder]: For program point L697(lines 697 712) no Hoare annotation was computed. [2021-11-23 13:54:02,972 INFO L858 garLoopResultBuilder]: For program point L152(lines 152 169) no Hoare annotation was computed. [2021-11-23 13:54:02,972 INFO L854 garLoopResultBuilder]: At program point L152-1(lines 148 172) the Hoare annotation is: (let ((.cse5 (= ~waterLevel~0 1)) (.cse7 (<= 1 ~pumpRunning~0)) (.cse8 (<= 1 |ULTIMATE.start_isPumpRunning_#res#1|)) (.cse9 (<= 1 ~switchedOnBeforeTS~0)) (.cse12 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1)) (.cse13 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse0 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse10 (<= 2 ~waterLevel~0)) (.cse3 (= |ULTIMATE.start_processEnvironment_~tmp~0#1| 0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse11 (<= ~waterLevel~0 2)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= |ULTIMATE.start_isHighWaterSensorDry_#res#1| ~waterLevel~0) .cse3 (= |ULTIMATE.start_isHighWaterLevel_~tmp~1#1| ~waterLevel~0) .cse4 .cse5 .cse6) (and .cse7 .cse0 .cse2 .cse8 .cse4 .cse5 .cse9 .cse6) (and .cse7 .cse0 .cse2 .cse10 .cse4 .cse11 .cse6) (and .cse7 .cse12 .cse0 .cse2 .cse8 .cse4 .cse11 .cse13 .cse9 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse6) (and .cse12 .cse0 .cse1 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse2 .cse3 .cse4 .cse11 .cse13 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse6) (and .cse0 .cse1 .cse2 .cse10 .cse3 .cse4 .cse11 .cse6))) [2021-11-23 13:54:02,973 INFO L858 garLoopResultBuilder]: For program point L152-2(lines 152 169) no Hoare annotation was computed. [2021-11-23 13:54:02,973 INFO L854 garLoopResultBuilder]: At program point L152-3(lines 148 172) the Hoare annotation is: false [2021-11-23 13:54:02,973 INFO L858 garLoopResultBuilder]: For program point L152-4(lines 152 169) no Hoare annotation was computed. [2021-11-23 13:54:02,973 INFO L854 garLoopResultBuilder]: At program point L152-5(lines 148 172) the Hoare annotation is: false [2021-11-23 13:54:02,973 INFO L858 garLoopResultBuilder]: For program point L268(lines 268 274) no Hoare annotation was computed. [2021-11-23 13:54:02,973 INFO L858 garLoopResultBuilder]: For program point L268-2(lines 268 274) no Hoare annotation was computed. [2021-11-23 13:54:02,974 INFO L854 garLoopResultBuilder]: At program point L962(lines 953 966) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= ~waterLevel~0 2)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= |ULTIMATE.start_isHighWaterSensorDry_#res#1| ~waterLevel~0) .cse3 (= ~waterLevel~0 1) .cse4) (and (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1) .cse0 .cse1 .cse2 .cse3 .cse5 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1) (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse4) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) .cse3 .cse5 .cse4))) [2021-11-23 13:54:02,974 INFO L854 garLoopResultBuilder]: At program point L962-1(lines 953 966) the Hoare annotation is: false [2021-11-23 13:54:02,974 INFO L854 garLoopResultBuilder]: At program point L962-2(lines 953 966) the Hoare annotation is: false [2021-11-23 13:54:02,974 INFO L861 garLoopResultBuilder]: At program point L797(lines 789 799) the Hoare annotation is: true [2021-11-23 13:54:02,974 INFO L854 garLoopResultBuilder]: At program point L186(lines 181 188) the Hoare annotation is: (let ((.cse0 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse7 (<= 2 ~waterLevel~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= ~waterLevel~0 2)) (.cse6 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1))) (or (and .cse0 .cse1 .cse2 .cse3 (not (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) .cse4 .cse5 .cse6 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0))) (and (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0) .cse1 .cse2 .cse3 .cse7 .cse4 .cse5 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0)) (and .cse0 .cse1 .cse2 .cse3 .cse7 .cse4 .cse5 .cse6))) [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L120(lines 120 126) no Hoare annotation was computed. [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L120-2(lines 116 138) no Hoare annotation was computed. [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L120-3(lines 120 126) no Hoare annotation was computed. [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L120-5(lines 116 138) no Hoare annotation was computed. [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L120-6(lines 120 126) no Hoare annotation was computed. [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L880(lines 880 884) no Hoare annotation was computed. [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L120-8(lines 116 138) no Hoare annotation was computed. [2021-11-23 13:54:02,975 INFO L854 garLoopResultBuilder]: At program point L880-2(lines 876 887) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 1 |ULTIMATE.start_isPumpRunning_#res#1|)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= 1 ~switchedOnBeforeTS~0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1) .cse5 .cse6) (and .cse0 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1) .cse1 .cse2 (<= ~waterLevel~0 1) .cse3 .cse4 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1) .cse5 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse6))) [2021-11-23 13:54:02,975 INFO L858 garLoopResultBuilder]: For program point L880-3(lines 880 884) no Hoare annotation was computed. [2021-11-23 13:54:02,976 INFO L854 garLoopResultBuilder]: At program point L880-5(lines 876 887) the Hoare annotation is: false [2021-11-23 13:54:02,976 INFO L858 garLoopResultBuilder]: For program point L880-6(lines 880 884) no Hoare annotation was computed. [2021-11-23 13:54:02,976 INFO L854 garLoopResultBuilder]: At program point L137(lines 113 139) the Hoare annotation is: (let ((.cse10 (= 0 ~systemActive~0))) (let ((.cse4 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse1 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0)) (.cse9 (= ~pumpRunning~0 0)) (.cse11 (= |ULTIMATE.start_processEnvironment_~tmp~0#1| 0)) (.cse6 (<= ~waterLevel~0 2)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse12 (<= 2 |ULTIMATE.start_getWaterLevel_#res#1|)) (.cse13 (<= |ULTIMATE.start_getWaterLevel_#res#1| 2)) (.cse14 (< 1 |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1|)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0)) (.cse8 (not .cse10)) (.cse15 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 2))) (or (and .cse0 .cse1 .cse2 .cse3 (not .cse4) .cse5 .cse6 .cse7 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse8) (and .cse1 .cse2 .cse9 .cse3 .cse4 .cse5 .cse6 .cse7 .cse10) (and .cse2 .cse9 .cse3 .cse11 .cse12 .cse13 .cse14 .cse5 .cse7 .cse8 .cse15) (and .cse1 .cse2 .cse9 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse3 .cse11 .cse5 .cse6 .cse7 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse8) (and .cse0 .cse2 .cse3 .cse12 .cse13 .cse14 .cse5 .cse7 .cse8 .cse15)))) [2021-11-23 13:54:02,976 INFO L854 garLoopResultBuilder]: At program point L137-1(lines 113 139) the Hoare annotation is: false [2021-11-23 13:54:02,976 INFO L854 garLoopResultBuilder]: At program point L880-8(lines 876 887) the Hoare annotation is: false [2021-11-23 13:54:02,976 INFO L854 garLoopResultBuilder]: At program point L137-2(lines 113 139) the Hoare annotation is: false [2021-11-23 13:54:02,976 INFO L854 garLoopResultBuilder]: At program point L831(lines 826 833) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~6#1| 1) (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-11-23 13:54:02,976 INFO L858 garLoopResultBuilder]: For program point L254(lines 254 258) no Hoare annotation was computed. [2021-11-23 13:54:02,976 INFO L858 garLoopResultBuilder]: For program point L254-2(lines 254 258) no Hoare annotation was computed. [2021-11-23 13:54:02,977 INFO L858 garLoopResultBuilder]: For program point L254-3(lines 254 258) no Hoare annotation was computed. [2021-11-23 13:54:02,977 INFO L854 garLoopResultBuilder]: At program point L667-2(lines 667 716) the Hoare annotation is: (let ((.cse10 (= 0 ~systemActive~0))) (let ((.cse4 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse1 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0)) (.cse6 (<= ~waterLevel~0 2)) (.cse9 (= ~pumpRunning~0 0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse11 (<= 2 |ULTIMATE.start_getWaterLevel_#res#1|)) (.cse12 (<= |ULTIMATE.start_getWaterLevel_#res#1| 2)) (.cse13 (< 1 |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1|)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0)) (.cse8 (not .cse10)) (.cse14 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 2))) (or (and .cse0 .cse1 .cse2 .cse3 (not .cse4) .cse5 .cse6 .cse7 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse8) (and .cse1 .cse2 .cse9 .cse3 .cse4 .cse5 .cse6 .cse7 .cse10) (and .cse1 .cse2 .cse9 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse3 .cse5 .cse6 .cse7 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse8) (and .cse2 .cse9 .cse3 .cse11 .cse12 .cse13 .cse5 .cse7 .cse8 .cse14) (and .cse2 .cse9 .cse3 .cse5 (= ~waterLevel~0 1) .cse8) (and .cse0 .cse2 .cse3 .cse11 .cse12 .cse13 .cse5 .cse7 .cse8 .cse14)))) [2021-11-23 13:54:02,977 INFO L858 garLoopResultBuilder]: For program point L254-5(lines 254 258) no Hoare annotation was computed. [2021-11-23 13:54:02,977 INFO L858 garLoopResultBuilder]: For program point L254-6(lines 254 258) no Hoare annotation was computed. [2021-11-23 13:54:02,977 INFO L858 garLoopResultBuilder]: For program point L254-8(lines 254 258) no Hoare annotation was computed. [2021-11-23 13:54:02,977 INFO L854 garLoopResultBuilder]: At program point L205(lines 200 208) the Hoare annotation is: (let ((.cse9 (= ~pumpRunning~0 0)) (.cse10 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse8 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (<= 1 |ULTIMATE.start_isPumpRunning_#res#1|)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse6 (<= ~waterLevel~0 2)) (.cse11 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse7 (not (= 0 ~systemActive~0)))) (or (and .cse0 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0) .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0) .cse7) (and .cse8 .cse1 .cse9 .cse2 .cse10 .cse5 .cse6 .cse11) (and .cse0 .cse8 .cse1 .cse2 .cse4 .cse5 .cse6 .cse11 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse7) (and .cse1 .cse9 .cse2 .cse3 .cse10 .cse5 .cse6) (and .cse1 .cse9 .cse2 .cse10 .cse5 (= ~waterLevel~0 1)) (and .cse0 .cse8 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse11 .cse7))) [2021-11-23 13:54:02,978 INFO L854 garLoopResultBuilder]: At program point L717(lines 666 718) the Hoare annotation is: false [2021-11-23 13:54:02,978 INFO L854 garLoopResultBuilder]: At program point L205-1(lines 200 208) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse4 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse0 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse6 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse7 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0)) (.cse8 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse3 (= |ULTIMATE.start_processEnvironment_~tmp~0#1| 0) .cse4 .cse5 .cse6 .cse7 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|)) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and (<= 1 ~pumpRunning~0) .cse0 .cse1 .cse3 (<= 1 |ULTIMATE.start_isPumpRunning_#res#1|) .cse5 .cse6 .cse7 (<= 1 ~switchedOnBeforeTS~0) (not .cse8)))) [2021-11-23 13:54:02,978 INFO L854 garLoopResultBuilder]: At program point L205-2(lines 200 208) the Hoare annotation is: false [2021-11-23 13:54:02,978 INFO L854 garLoopResultBuilder]: At program point L205-3(lines 200 208) the Hoare annotation is: false [2021-11-23 13:54:02,978 INFO L854 garLoopResultBuilder]: At program point L205-4(lines 200 208) the Hoare annotation is: false [2021-11-23 13:54:02,979 INFO L854 garLoopResultBuilder]: At program point L205-5(lines 200 208) the Hoare annotation is: false [2021-11-23 13:54:02,979 INFO L858 garLoopResultBuilder]: For program point L668(lines 667 716) no Hoare annotation was computed. [2021-11-23 13:54:02,979 INFO L858 garLoopResultBuilder]: For program point L156(lines 156 164) no Hoare annotation was computed. [2021-11-23 13:54:02,979 INFO L858 garLoopResultBuilder]: For program point L156-3(lines 156 164) no Hoare annotation was computed. [2021-11-23 13:54:02,979 INFO L858 garLoopResultBuilder]: For program point L156-6(lines 156 164) no Hoare annotation was computed. [2021-11-23 13:54:02,979 INFO L854 garLoopResultBuilder]: At program point L949(lines 944 952) the Hoare annotation is: (let ((.cse13 (= 0 ~systemActive~0))) (let ((.cse11 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (= |ULTIMATE.start_processEnvironment_~tmp~0#1| 0)) (.cse8 (<= 2 ~waterLevel~0)) (.cse9 (<= 2 |ULTIMATE.start_getWaterLevel_#res#1|)) (.cse10 (<= |ULTIMATE.start_getWaterLevel_#res#1| 2)) (.cse12 (<= ~waterLevel~0 2)) (.cse14 (<= 1 ~pumpRunning~0)) (.cse0 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse6 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse7 (not .cse13))) (or (and .cse0 .cse1 .cse2 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse3 .cse4 .cse5 .cse6 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse7) (and .cse1 .cse2 .cse3 .cse8 .cse9 .cse10 .cse11 .cse5 .cse12 .cse13) (and .cse0 .cse1 .cse2 .cse3 .cse11 .cse5 .cse6 .cse13) (and .cse1 .cse2 .cse3 .cse8 .cse4 .cse9 .cse10 .cse5 .cse12 .cse7) (and .cse14 .cse1 .cse3 .cse8 .cse9 .cse10 .cse5 .cse12 .cse7) (and .cse14 .cse0 .cse1 .cse3 (<= 1 |ULTIMATE.start_isPumpRunning_#res#1|) .cse5 .cse6 (<= 1 ~switchedOnBeforeTS~0) .cse7)))) [2021-11-23 13:54:02,980 INFO L854 garLoopResultBuilder]: At program point L949-1(lines 944 952) the Hoare annotation is: false [2021-11-23 13:54:02,980 INFO L854 garLoopResultBuilder]: At program point L949-2(lines 944 952) the Hoare annotation is: false [2021-11-23 13:54:02,980 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-11-23 13:54:02,980 INFO L858 garLoopResultBuilder]: For program point L669(lines 669 673) no Hoare annotation was computed. [2021-11-23 13:54:02,980 INFO L854 garLoopResultBuilder]: At program point L785(lines 781 787) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~6#1| 1) (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-11-23 13:54:02,980 INFO L861 garLoopResultBuilder]: At program point L752(lines 727 756) the Hoare annotation is: true [2021-11-23 13:54:02,981 INFO L854 garLoopResultBuilder]: At program point L75(lines 71 77) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-11-23 13:54:02,981 INFO L858 garLoopResultBuilder]: For program point L92(line 92) no Hoare annotation was computed. [2021-11-23 13:54:02,981 INFO L858 garLoopResultBuilder]: For program point L92-1(line 92) no Hoare annotation was computed. [2021-11-23 13:54:02,981 INFO L858 garLoopResultBuilder]: For program point L92-2(line 92) no Hoare annotation was computed. [2021-11-23 13:54:02,981 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startErr2ASSERT_VIOLATIONERROR_FUNCTION(line 92) no Hoare annotation was computed. [2021-11-23 13:54:02,981 INFO L858 garLoopResultBuilder]: For program point L852(lines 852 869) no Hoare annotation was computed. [2021-11-23 13:54:02,982 INFO L854 garLoopResultBuilder]: At program point L852-1(lines 844 872) the Hoare annotation is: (let ((.cse10 (= 0 ~systemActive~0))) (let ((.cse4 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse1 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0)) (.cse9 (= ~pumpRunning~0 0)) (.cse11 (= |ULTIMATE.start_processEnvironment_~tmp~0#1| 0)) (.cse6 (<= ~waterLevel~0 2)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse12 (<= 2 |ULTIMATE.start_getWaterLevel_#res#1|)) (.cse13 (<= |ULTIMATE.start_getWaterLevel_#res#1| 2)) (.cse14 (< 1 |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1|)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0)) (.cse8 (not .cse10)) (.cse15 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 2))) (or (and .cse0 .cse1 .cse2 .cse3 (not .cse4) .cse5 .cse6 .cse7 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse8) (and .cse1 .cse2 .cse9 .cse3 .cse4 .cse5 .cse6 .cse7 .cse10) (and .cse2 .cse9 .cse3 .cse11 .cse12 .cse13 .cse14 .cse5 .cse7 .cse8 .cse15) (and .cse1 .cse2 .cse9 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse3 .cse11 .cse5 .cse6 .cse7 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse8) (and .cse0 .cse2 .cse3 .cse12 .cse13 .cse14 .cse5 .cse7 .cse8 .cse15)))) [2021-11-23 13:54:02,982 INFO L861 garLoopResultBuilder]: At program point L819(lines 800 822) the Hoare annotation is: true [2021-11-23 13:54:02,982 INFO L858 garLoopResultBuilder]: For program point L852-2(lines 852 869) no Hoare annotation was computed. [2021-11-23 13:54:02,982 INFO L854 garLoopResultBuilder]: At program point L852-3(lines 844 872) the Hoare annotation is: false [2021-11-23 13:54:02,982 INFO L858 garLoopResultBuilder]: For program point L852-4(lines 852 869) no Hoare annotation was computed. [2021-11-23 13:54:02,983 INFO L858 garLoopResultBuilder]: For program point L687(lines 687 693) no Hoare annotation was computed. [2021-11-23 13:54:02,983 INFO L854 garLoopResultBuilder]: At program point L852-5(lines 844 872) the Hoare annotation is: false [2021-11-23 13:54:02,983 INFO L858 garLoopResultBuilder]: For program point L687-2(lines 687 693) no Hoare annotation was computed. [2021-11-23 13:54:02,983 INFO L854 garLoopResultBuilder]: At program point L737-2(lines 737 751) the Hoare annotation is: false [2021-11-23 13:54:02,983 INFO L854 garLoopResultBuilder]: At program point L93(lines 88 95) the Hoare annotation is: false [2021-11-23 13:54:02,983 INFO L854 garLoopResultBuilder]: At program point L93-1(lines 88 95) the Hoare annotation is: false [2021-11-23 13:54:02,984 INFO L854 garLoopResultBuilder]: At program point L93-2(lines 88 95) the Hoare annotation is: false [2021-11-23 13:54:02,984 INFO L858 garLoopResultBuilder]: For program point L738(line 738) no Hoare annotation was computed. [2021-11-23 13:54:02,984 INFO L858 garLoopResultBuilder]: For program point L705(lines 705 711) no Hoare annotation was computed. [2021-11-23 13:54:02,984 INFO L858 garLoopResultBuilder]: For program point L705-2(lines 697 712) no Hoare annotation was computed. [2021-11-23 13:54:02,984 INFO L858 garLoopResultBuilder]: For program point L127-1(lines 127 133) no Hoare annotation was computed. [2021-11-23 13:54:02,984 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-11-23 13:54:02,984 INFO L858 garLoopResultBuilder]: For program point L127-3(lines 127 133) no Hoare annotation was computed. [2021-11-23 13:54:02,985 INFO L858 garLoopResultBuilder]: For program point L127-5(lines 127 133) no Hoare annotation was computed. [2021-11-23 13:54:02,985 INFO L854 garLoopResultBuilder]: At program point L276(lines 264 278) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= ~waterLevel~0 2)) (.cse4 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1)) (and (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1) .cse0 .cse1 .cse2 .cse3 .cse5 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1) .cse4) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) .cse3 .cse5 .cse4))) [2021-11-23 13:54:02,985 INFO L861 garLoopResultBuilder]: At program point L722(lines 657 724) the Hoare annotation is: true [2021-11-23 13:54:02,985 INFO L854 garLoopResultBuilder]: At program point L144(lines 140 146) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_processEnvironment_~tmp~0#1| 0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse6 (<= ~waterLevel~0 2)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= |ULTIMATE.start_isHighWaterSensorDry_#res#1| ~waterLevel~0) .cse3 (= |ULTIMATE.start_isHighWaterLevel_~tmp~1#1| ~waterLevel~0) .cse4 (= ~waterLevel~0 1) .cse5) (and (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1) .cse0 .cse1 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse2 .cse3 .cse4 .cse6 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1) (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse5) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) .cse3 .cse4 .cse6 .cse5))) [2021-11-23 13:54:02,985 INFO L854 garLoopResultBuilder]: At program point L144-1(lines 140 146) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 1 |ULTIMATE.start_isPumpRunning_#res#1|)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= 1 ~switchedOnBeforeTS~0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1) .cse5 .cse6) (and .cse0 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1) .cse1 .cse2 (<= ~waterLevel~0 1) .cse3 .cse4 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1) .cse5 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse6))) [2021-11-23 13:54:02,986 INFO L854 garLoopResultBuilder]: At program point L144-2(lines 140 146) the Hoare annotation is: false [2021-11-23 13:54:02,986 INFO L854 garLoopResultBuilder]: At program point L144-3(lines 140 146) the Hoare annotation is: false [2021-11-23 13:54:02,986 INFO L854 garLoopResultBuilder]: At program point L144-4(lines 140 146) the Hoare annotation is: false [2021-11-23 13:54:02,986 INFO L854 garLoopResultBuilder]: At program point L144-5(lines 140 146) the Hoare annotation is: false [2021-11-23 13:54:02,986 INFO L858 garLoopResultBuilder]: For program point L904(lines 904 908) no Hoare annotation was computed. [2021-11-23 13:54:02,987 INFO L854 garLoopResultBuilder]: At program point L904-2(lines 900 911) the Hoare annotation is: (let ((.cse13 (= 0 ~systemActive~0))) (let ((.cse1 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0)) (.cse7 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0)) (.cse12 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse10 (= ~pumpRunning~0 0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse9 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1)) (.cse2 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse4 (<= 2 ~waterLevel~0)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse6 (<= ~waterLevel~0 2)) (.cse11 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse8 (not .cse13))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse9 .cse2 .cse10 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse3 .cse5 .cse6 .cse11 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse8) (and .cse1 .cse2 .cse10 .cse3 .cse4 .cse12 .cse5 .cse6 .cse7) (and .cse0 .cse9 .cse2 .cse3 (not .cse12) .cse5 .cse6 .cse11 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse8) (and .cse9 .cse2 .cse10 .cse3 .cse12 .cse5 .cse6 .cse11 .cse13) (and .cse2 .cse10 .cse3 .cse4 .cse5 .cse6 .cse8) (and .cse2 .cse10 .cse3 .cse5 (= ~waterLevel~0 1) .cse8) (and .cse0 .cse9 .cse2 .cse3 .cse4 .cse5 .cse6 .cse11 .cse8)))) [2021-11-23 13:54:02,987 INFO L854 garLoopResultBuilder]: At program point L260(lines 245 263) the Hoare annotation is: (let ((.cse3 (= |ULTIMATE.start_isHighWaterLevel_~tmp___0~0#1| 0)) (.cse5 (= |ULTIMATE.start_isHighWaterLevel_#res#1| 0)) (.cse0 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (<= ~waterLevel~0 2)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= |ULTIMATE.start_isHighWaterSensorDry_#res#1| ~waterLevel~0) (= |ULTIMATE.start_isHighWaterLevel_~tmp~1#1| ~waterLevel~0) .cse3 .cse4 (= ~waterLevel~0 1) .cse5 .cse6) (and (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1) .cse0 .cse1 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse2 .cse3 .cse4 .cse7 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1) (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse5 .cse6) (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) .cse4 .cse7 .cse6))) [2021-11-23 13:54:02,987 INFO L854 garLoopResultBuilder]: At program point L260-1(lines 245 263) the Hoare annotation is: false [2021-11-23 13:54:02,987 INFO L854 garLoopResultBuilder]: At program point L260-2(lines 245 263) the Hoare annotation is: false [2021-11-23 13:54:02,987 INFO L854 garLoopResultBuilder]: At program point L178(lines 173 180) the Hoare annotation is: (and (<= 1 ~pumpRunning~0) (= |ULTIMATE.start_main_~tmp~6#1| 1) (= |ULTIMATE.start_valid_product_#res#1| 1) (<= 2 ~waterLevel~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (<= ~waterLevel~0 2) (not (= 0 ~systemActive~0))) [2021-11-23 13:54:02,987 INFO L854 garLoopResultBuilder]: At program point L178-1(lines 173 180) the Hoare annotation is: false [2021-11-23 13:54:02,988 INFO L854 garLoopResultBuilder]: At program point L178-2(lines 173 180) the Hoare annotation is: false [2021-11-23 13:54:02,988 INFO L858 garLoopResultBuilder]: For program point L856(lines 856 866) no Hoare annotation was computed. [2021-11-23 13:54:02,988 INFO L858 garLoopResultBuilder]: For program point L856-2(lines 856 866) no Hoare annotation was computed. [2021-11-23 13:54:02,988 INFO L858 garLoopResultBuilder]: For program point L856-4(lines 856 866) no Hoare annotation was computed. [2021-11-23 13:54:02,988 INFO L858 garLoopResultBuilder]: For program point L741(lines 741 745) no Hoare annotation was computed. [2021-11-23 13:54:02,988 INFO L858 garLoopResultBuilder]: For program point L741-1(lines 741 745) no Hoare annotation was computed. [2021-11-23 13:54:02,989 INFO L858 garLoopResultBuilder]: For program point L857(lines 857 863) no Hoare annotation was computed. [2021-11-23 13:54:02,989 INFO L858 garLoopResultBuilder]: For program point L857-3(lines 857 863) no Hoare annotation was computed. [2021-11-23 13:54:02,989 INFO L858 garLoopResultBuilder]: For program point L857-6(lines 857 863) no Hoare annotation was computed. [2021-11-23 13:54:02,989 INFO L854 garLoopResultBuilder]: At program point L841(lines 834 843) the Hoare annotation is: (let ((.cse0 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1)) (.cse7 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse8 (<= 1 ~pumpRunning~0)) (.cse9 (<= 1 |ULTIMATE.start_isPumpRunning_#res#1|)) (.cse10 (<= 1 ~switchedOnBeforeTS~0)) (.cse11 (not (= 0 ~systemActive~0))) (.cse12 (<= 2 ~waterLevel~0)) (.cse6 (<= ~waterLevel~0 2)) (.cse1 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse4 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7) (and .cse8 .cse0 .cse1 .cse3 .cse9 .cse5 .cse6 .cse7 .cse10 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse11) (and .cse8 .cse0 .cse1 .cse3 .cse12 .cse9 .cse5 .cse6 .cse7 .cse10 .cse11) (and .cse8 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0) .cse1 .cse3 .cse12 .cse9 .cse5 .cse6 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0) .cse10 .cse11) (and .cse1 .cse2 .cse3 .cse12 .cse4 .cse5 .cse6) (and .cse1 .cse2 .cse3 .cse4 .cse5 (= ~waterLevel~0 1)))) [2021-11-23 13:54:02,989 INFO L854 garLoopResultBuilder]: At program point L841-1(lines 834 843) the Hoare annotation is: false [2021-11-23 13:54:02,990 INFO L854 garLoopResultBuilder]: At program point L841-2(lines 834 843) the Hoare annotation is: false [2021-11-23 13:54:02,990 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-11-23 13:54:02,990 INFO L858 garLoopResultBuilder]: For program point L957(lines 957 963) no Hoare annotation was computed. [2021-11-23 13:54:02,990 INFO L858 garLoopResultBuilder]: For program point L957-1(lines 957 963) no Hoare annotation was computed. [2021-11-23 13:54:02,990 INFO L858 garLoopResultBuilder]: For program point L957-2(lines 957 963) no Hoare annotation was computed. [2021-11-23 13:54:02,990 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startErr0ASSERT_VIOLATIONERROR_FUNCTION(line 92) no Hoare annotation was computed. [2021-11-23 13:54:02,991 INFO L858 garLoopResultBuilder]: For program point L677(lines 677 683) no Hoare annotation was computed. [2021-11-23 13:54:02,991 INFO L858 garLoopResultBuilder]: For program point L677-2(lines 677 683) no Hoare annotation was computed. [2021-11-23 13:54:02,991 INFO L858 garLoopResultBuilder]: For program point L892(lines 892 896) no Hoare annotation was computed. [2021-11-23 13:54:02,991 INFO L854 garLoopResultBuilder]: At program point L892-2(lines 888 899) the Hoare annotation is: (let ((.cse11 (= 0 ~systemActive~0))) (let ((.cse1 (= |ULTIMATE.start_getWaterLevel_#res#1| ~waterLevel~0)) (.cse7 (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| ~waterLevel~0)) (.cse10 (= |ULTIMATE.start_isPumpRunning_#res#1| 0)) (.cse9 (= ~pumpRunning~0 0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse12 (<= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp~7#1| 1)) (.cse2 (= |ULTIMATE.start_main_~tmp~6#1| 1)) (.cse3 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse4 (<= 2 ~waterLevel~0)) (.cse5 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse6 (<= ~waterLevel~0 2)) (.cse13 (<= |ULTIMATE.start_getWaterLevel_#res#1| 1)) (.cse8 (not .cse11))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse1 .cse2 .cse9 .cse3 .cse10 .cse5 .cse6 .cse7 .cse11) (and .cse12 .cse2 .cse9 (<= 1 |ULTIMATE.start_isHighWaterLevel_~tmp~1#1|) .cse3 .cse5 .cse6 .cse13 (<= 1 |ULTIMATE.start_isHighWaterSensorDry_#res#1|) .cse8) (and .cse0 .cse12 .cse2 .cse3 (not .cse10) .cse5 .cse6 .cse13 (not (= |ULTIMATE.start___utac_acc__Specification5_spec__3_~tmp___0~2#1| 0)) .cse8) (and .cse12 .cse2 .cse9 .cse3 .cse10 .cse5 .cse6 .cse13 .cse11) (and .cse2 .cse9 .cse3 .cse4 .cse5 .cse6 .cse8) (and .cse0 .cse12 .cse2 .cse3 .cse4 .cse5 .cse6 .cse13 .cse8)))) [2021-11-23 13:54:02,991 INFO L854 garLoopResultBuilder]: At program point L83(lines 78 86) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-11-23 13:54:02,991 INFO L858 garLoopResultBuilder]: For program point L810(lines 810 817) no Hoare annotation was computed. [2021-11-23 13:54:02,992 INFO L858 garLoopResultBuilder]: For program point L810-2(lines 810 817) no Hoare annotation was computed. [2021-11-23 13:54:02,992 INFO L854 garLoopResultBuilder]: At program point L68(lines 64 70) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-11-23 13:54:02,996 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-11-23 13:54:02,997 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-11-23 13:54:03,048 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 23.11 01:54:03 BoogieIcfgContainer [2021-11-23 13:54:03,049 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-11-23 13:54:03,049 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-11-23 13:54:03,050 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-11-23 13:54:03,050 INFO L275 PluginConnector]: Witness Printer initialized [2021-11-23 13:54:03,050 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 23.11 01:53:47" (3/4) ... [2021-11-23 13:54:03,053 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-11-23 13:54:03,073 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 59 nodes and edges [2021-11-23 13:54:03,075 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-11-23 13:54:03,076 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-11-23 13:54:03,077 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-11-23 13:54:03,078 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-11-23 13:54:03,079 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-11-23 13:54:03,080 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-11-23 13:54:03,106 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-11-23 13:54:03,107 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((tmp == 1 && pumpRunning == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-11-23 13:54:03,107 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((tmp == 1 && pumpRunning == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-11-23 13:54:03,107 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(tmp___0 == 0)) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || (((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= \result) && !(0 == systemActive))) || (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2)) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2) [2021-11-23 13:54:03,108 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || (((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 0 == systemActive)) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) [2021-11-23 13:54:03,108 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || (((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 0 == systemActive)) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) [2021-11-23 13:54:03,109 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive))) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) [2021-11-23 13:54:03,109 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && 0 == systemActive) && waterLevel == 1) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 0 == systemActive)) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && 0 == systemActive) [2021-11-23 13:54:03,110 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) || (((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel)) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) [2021-11-23 13:54:03,110 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2)) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel == 1)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) [2021-11-23 13:54:03,110 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive))) || ((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= switchedOnBeforeTS) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2)) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel == 1) [2021-11-23 13:54:03,111 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel == 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && waterLevel <= 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive)) [2021-11-23 13:54:03,111 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel == 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && waterLevel <= 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive)) [2021-11-23 13:54:03,112 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && tmp == 0) && tmp == waterLevel) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) || (((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel == 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive))) || ((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || (((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) [2021-11-23 13:54:03,112 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && \result <= 1) && 1 <= \result) && !(0 == systemActive)) || (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && 2 <= \result) && \result <= 2) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && 0 == systemActive)) || (((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && \result <= 1) && 0 == systemActive)) || (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && tmp == 0) && 2 <= \result) && \result <= 2) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= waterLevel) && 2 <= \result) && \result <= 2) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) [2021-11-23 13:54:03,113 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(tmp___0 == 0)) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || ((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && tmp == 0) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2)) || ((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= \result) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2) [2021-11-23 13:54:03,113 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(tmp___0 == 0)) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || ((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && tmp == 0) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2)) || ((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= \result) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2) [2021-11-23 13:54:03,113 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) || ((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) [2021-11-23 13:54:03,114 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && \result == 0) && splverifierCounter == 0) && \result <= 1) && tmp == waterLevel) && 1 <= \result) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && \result <= 1) && tmp == waterLevel) && 0 == systemActive)) || (((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && tmp == waterLevel) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) [2021-11-23 13:54:03,114 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && tmp == waterLevel) && tmp___0 == 0) && splverifierCounter == 0) && waterLevel == 1) && \result == 0) && !(0 == systemActive)) || (((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp___0 == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && \result == 0) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) [2021-11-23 13:54:03,115 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && tmp == 0) && tmp == waterLevel) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) || ((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || (((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) [2021-11-23 13:54:03,115 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive) [2021-11-23 13:54:03,160 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/witness.graphml [2021-11-23 13:54:03,160 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-11-23 13:54:03,161 INFO L158 Benchmark]: Toolchain (without parser) took 17105.54ms. Allocated memory was 88.1MB in the beginning and 302.0MB in the end (delta: 213.9MB). Free memory was 53.1MB in the beginning and 190.7MB in the end (delta: -137.6MB). Peak memory consumption was 75.7MB. Max. memory is 16.1GB. [2021-11-23 13:54:03,161 INFO L158 Benchmark]: CDTParser took 0.30ms. Allocated memory is still 88.1MB. Free memory was 60.6MB in the beginning and 60.5MB in the end (delta: 26.7kB). There was no memory consumed. Max. memory is 16.1GB. [2021-11-23 13:54:03,162 INFO L158 Benchmark]: CACSL2BoogieTranslator took 554.25ms. Allocated memory was 88.1MB in the beginning and 119.5MB in the end (delta: 31.5MB). Free memory was 52.8MB in the beginning and 85.5MB in the end (delta: -32.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2021-11-23 13:54:03,162 INFO L158 Benchmark]: Boogie Procedure Inliner took 98.43ms. Allocated memory is still 119.5MB. Free memory was 85.5MB in the beginning and 82.5MB in the end (delta: 3.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-11-23 13:54:03,163 INFO L158 Benchmark]: Boogie Preprocessor took 62.23ms. Allocated memory is still 119.5MB. Free memory was 82.5MB in the beginning and 80.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-11-23 13:54:03,163 INFO L158 Benchmark]: RCFGBuilder took 748.92ms. Allocated memory is still 119.5MB. Free memory was 80.4MB in the beginning and 60.9MB in the end (delta: 19.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2021-11-23 13:54:03,164 INFO L158 Benchmark]: TraceAbstraction took 15523.28ms. Allocated memory was 119.5MB in the beginning and 302.0MB in the end (delta: 182.5MB). Free memory was 60.4MB in the beginning and 200.1MB in the end (delta: -139.8MB). Peak memory consumption was 148.4MB. Max. memory is 16.1GB. [2021-11-23 13:54:03,164 INFO L158 Benchmark]: Witness Printer took 111.05ms. Allocated memory is still 302.0MB. Free memory was 200.1MB in the beginning and 190.7MB in the end (delta: 9.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2021-11-23 13:54:03,166 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.30ms. Allocated memory is still 88.1MB. Free memory was 60.6MB in the beginning and 60.5MB in the end (delta: 26.7kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 554.25ms. Allocated memory was 88.1MB in the beginning and 119.5MB in the end (delta: 31.5MB). Free memory was 52.8MB in the beginning and 85.5MB in the end (delta: -32.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 98.43ms. Allocated memory is still 119.5MB. Free memory was 85.5MB in the beginning and 82.5MB in the end (delta: 3.0MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 62.23ms. Allocated memory is still 119.5MB. Free memory was 82.5MB in the beginning and 80.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 748.92ms. Allocated memory is still 119.5MB. Free memory was 80.4MB in the beginning and 60.9MB in the end (delta: 19.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * TraceAbstraction took 15523.28ms. Allocated memory was 119.5MB in the beginning and 302.0MB in the end (delta: 182.5MB). Free memory was 60.4MB in the beginning and 200.1MB in the end (delta: -139.8MB). Peak memory consumption was 148.4MB. Max. memory is 16.1GB. * Witness Printer took 111.05ms. Allocated memory is still 302.0MB. Free memory was 200.1MB in the beginning and 190.7MB in the end (delta: 9.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 92]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 92]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - PositiveResult [Line: 92]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 1 procedures, 123 locations, 3 error locations. Started 1 CEGAR loops. OverallTime: 15.4s, OverallIterations: 14, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.9s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 9.2s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2696 SdHoareTripleChecker+Valid, 0.5s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2696 mSDsluCounter, 4307 SdHoareTripleChecker+Invalid, 0.4s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2714 mSDsCounter, 110 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 423 IncrementalHoareTripleChecker+Invalid, 533 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 110 mSolverCounterUnsat, 1593 mSDtfsCounter, 423 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 602 GetRequests, 512 SyntacticMatches, 2 SemanticMatches, 88 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 123 ImplicationChecksByTransitivity, 0.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=414occurred in iteration=12, InterpolantAutomatonStates: 92, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 14 MinimizatonAttempts, 1279 StatesRemovedByMinimization, 11 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 59 LocationsWithAnnotation, 59 PreInvPairs, 265 NumberOfFragments, 2549 HoareAnnotationTreeSize, 59 FomulaSimplifications, 71 FormulaSimplificationTreeSizeReduction, 2.8s HoareSimplificationTime, 59 FomulaSimplificationsInter, 218207 FormulaSimplificationTreeSizeReductionInter, 6.3s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 2.0s InterpolantComputationTime, 1105 NumberOfCodeBlocks, 1105 NumberOfCodeBlocksAsserted, 17 NumberOfCheckSat, 1265 ConstructedInterpolants, 0 QuantifiedInterpolants, 2308 SizeOfPredicates, 8 NumberOfNonLiveVariables, 1420 ConjunctsInSsa, 16 ConjunctsInUnsatCore, 19 InterpolantComputations, 12 PerfectInterpolantSequences, 811/849 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 3 specifications checked. All of them hold - InvariantResult [Line: 264]: Loop Invariant Derived loop invariant: ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && 0 == systemActive) && waterLevel == 1) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 0 == systemActive)) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && 0 == systemActive) - InvariantResult [Line: 727]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 200]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && tmp == 0) && tmp == waterLevel) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) || ((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || (((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 200]: Loop Invariant Derived loop invariant: (((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2)) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel == 1)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) - InvariantResult [Line: 953]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 148]: Loop Invariant Derived loop invariant: ((((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && tmp == 0) && tmp == waterLevel) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) || (((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel == 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive))) || ((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || (((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) - InvariantResult [Line: 113]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 173]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 834]: Loop Invariant Derived loop invariant: (((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive))) || ((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && 1 <= \result) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= switchedOnBeforeTS) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2)) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel == 1) - InvariantResult [Line: 245]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 953]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 789]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 844]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 666]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 876]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 826]: Loop Invariant Derived loop invariant: (((tmp == 1 && pumpRunning == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 78]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 944]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 953]: Loop Invariant Derived loop invariant: (((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive)) || ((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) - InvariantResult [Line: 245]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 737]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 173]: Loop Invariant Derived loop invariant: (((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 834]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 148]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: (((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel == 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && waterLevel <= 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive)) - InvariantResult [Line: 200]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 888]: Loop Invariant Derived loop invariant: (((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || (((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 0 == systemActive)) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) - InvariantResult [Line: 173]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 944]: Loop Invariant Derived loop invariant: (((((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && \result <= 1) && 1 <= \result) && !(0 == systemActive)) || (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && 2 <= \result) && \result <= 2) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && 0 == systemActive)) || (((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && \result <= 1) && 0 == systemActive)) || (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && tmp == 0) && 2 <= \result) && \result <= 2) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= waterLevel) && 2 <= \result) && \result <= 2) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) - InvariantResult [Line: 844]: Loop Invariant Derived loop invariant: ((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(tmp___0 == 0)) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || ((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && tmp == 0) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2)) || ((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= \result) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2) - InvariantResult [Line: 140]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 900]: Loop Invariant Derived loop invariant: ((((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || (((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && !(0 == systemActive))) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 0 == systemActive)) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 200]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 800]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 113]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 200]: Loop Invariant Derived loop invariant: (((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && \result == 0) && splverifierCounter == 0) && \result <= 1) && tmp == waterLevel) && 1 <= \result) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && \result <= 1) && tmp == waterLevel) && 0 == systemActive)) || (((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && tmp == waterLevel) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) - InvariantResult [Line: 876]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 834]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 148]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 876]: Loop Invariant Derived loop invariant: (((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 1 <= \result) && splverifierCounter == 0) && waterLevel == 1) && 1 <= switchedOnBeforeTS) && !(0 == systemActive)) || ((((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && waterLevel <= 1) && 1 <= \result) && splverifierCounter == 0) && \result <= 1) && 1 <= switchedOnBeforeTS) && !(tmp___0 == 0)) && !(0 == systemActive)) - InvariantResult [Line: 200]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 667]: Loop Invariant Derived loop invariant: (((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(tmp___0 == 0)) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || (((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= \result) && !(0 == systemActive))) || (((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2)) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2) - InvariantResult [Line: 781]: Loop Invariant Derived loop invariant: (((tmp == 1 && pumpRunning == 0) && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 844]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 71]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 279]: Loop Invariant Derived loop invariant: ((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(0 == systemActive)) || (((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive))) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive))) || (((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) && !(0 == systemActive))) || ((((((((1 <= pumpRunning && tmp <= 1) && tmp == 1) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(0 == systemActive)) - InvariantResult [Line: 657]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 113]: Loop Invariant Derived loop invariant: ((((((((((((1 <= pumpRunning && \result == waterLevel) && tmp == 1) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && !(tmp___0 == 0)) && !(0 == systemActive)) || ((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && \result == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 0 == systemActive)) || ((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && tmp == 0) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2)) || ((((((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp == 0) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel) && 1 <= \result) && !(0 == systemActive))) || (((((((((1 <= pumpRunning && tmp == 1) && \result == 1) && 2 <= \result) && \result <= 2) && 1 < tmp) && splverifierCounter == 0) && tmp == waterLevel) && !(0 == systemActive)) && tmp <= 2) - InvariantResult [Line: 181]: Loop Invariant Derived loop invariant: (((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && !(\result == 0)) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && !(tmp___0 == 0)) || (((((((\result == waterLevel && tmp == 1) && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && tmp == waterLevel)) || (((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) - InvariantResult [Line: 944]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 245]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && pumpRunning == 0) && \result == 1) && \result == waterLevel) && tmp == waterLevel) && tmp___0 == 0) && splverifierCounter == 0) && waterLevel == 1) && \result == 0) && !(0 == systemActive)) || (((((((((((tmp <= 1 && tmp == 1) && pumpRunning == 0) && 1 <= tmp) && \result == 1) && tmp___0 == 0) && splverifierCounter == 0) && waterLevel <= 2) && \result <= 1) && 1 <= \result) && \result == 0) && !(0 == systemActive))) || ((((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) RESULT: Ultimate proved your program to be correct! [2021-11-23 13:54:03,249 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_bfa74023-d3e4-4410-867f-5a601e6cf5b9/bin/uautomizer-wIGwrQj20G/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE