Ch
T1 = (h) + Sigma1_256((e)) + Ch((e), (f), (g)) + K256[j] + W256[j]; \
T1 = (h) + Sigma1_256((e)) + Ch((e), (f), (g)) + K256[j] + \
T1 = h + Sigma1_256(e) + Ch(e, f, g) + K256[j] + W256[j];
T1 = h + Sigma1_256(e) + Ch(e, f, g) + K256[j] +
T1 = (h) + Sigma1_512((e)) + Ch((e), (f), (g)) + K512[j] + W512[j]; \
T1 = (h) + Sigma1_512((e)) + Ch((e), (f), (g)) + K512[j] + \
T1 = h + Sigma1_512(e) + Ch(e, f, g) + K512[j] + W512[j];
T1 = h + Sigma1_512(e) + Ch(e, f, g) + K512[j] +
T = crypto_rol_u32(*a, 5) + Ch(*b, *c, *d) + *e + Kt + Wt;
T1 = *h + Sigma1(*e) + Ch(*e, *f, *g) + Kt + Wt;
T1 = *h + Sigma1(*e) + Ch(*e, *f, *g) + Kt + Wt;
T1 = (h) + Sigma1_256((e)) + Ch((e), (f), (g)) + K256[j] + W256[j]; \
T1 = (h) + Sigma1_256((e)) + Ch((e), (f), (g)) + K256[j] + \
T1 = h + Sigma1_256(e) + Ch(e, f, g) + K256[j] + W256[j];
T1 = h + Sigma1_256(e) + Ch(e, f, g) + K256[j] +
T1 = (h) + Sigma1_512((e)) + Ch((e), (f), (g)) + K512[j] + W512[j]; \
T1 = (h) + Sigma1_512((e)) + Ch((e), (f), (g)) + K512[j] + \
T1 = h + Sigma1_512(e) + Ch(e, f, g) + K512[j] + W512[j];
T1 = h + Sigma1_512(e) + Ch(e, f, g) + K512[j] +
T1 = (h) + Sigma1_256((e)) + Ch((e), (f), (g)) + K256[j] + W256[j]; \
T1 = (h) + Sigma1_256((e)) + Ch((e), (f), (g)) + K256[j] + \
T1 = h + Sigma1_256(e) + Ch(e, f, g) + K256[j] + W256[j];
T1 = h + Sigma1_256(e) + Ch(e, f, g) + K256[j] +
T1 = (h) + Sigma1_512((e)) + Ch((e), (f), (g)) + K512[j] + W512[j]; \
T1 = (h) + Sigma1_512((e)) + Ch((e), (f), (g)) + K512[j] + \
T1 = h + Sigma1_512(e) + Ch(e, f, g) + K512[j] + W512[j];
T1 = h + Sigma1_512(e) + Ch(e, f, g) + K512[j] +