zoukankan      html  css  js  c++  java
  • HTMLHelper

    public class HTMLHelper
    {
    /**/
    /// <summary>
    /// 去除HTML标记
    /// </summary>
    /// <param name="NoHTML">包括HTML的源码 </param>
    /// <param name="isClearSpechars">去除特殊字符 </param>
    /// <returns>已经去除后的文字</returns>
    public static string NoHTML(string htmlstring, bool isClearSpechars = true)
    {
    if (String.IsNullOrEmpty(htmlstring))
    {
    return string.Empty;
    }
    
    //删除脚本
    htmlstring = Regex.Replace(htmlstring, @"<script[^>]*?>.*?</script>", "", RegexOptions.IgnoreCase);
    //删除HTML
    htmlstring = Regex.Replace(htmlstring, @"<(.[^>]*)>", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"([
    ])[s]+", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"-->", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"<!--.*", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(quot|#34);", """, RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(amp|#38);", "&", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(lt|#60);", "<", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(gt|#62);", ">", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(nbsp|#160);", " ", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(iexcl|#161);", "xa1", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(cent|#162);", "xa2", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(pound|#163);", "xa3", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(copy|#169);", "xa9", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&#(d+);", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "xp_cmdshell", "", RegexOptions.IgnoreCase);
    //删除与数据库相关的词
    htmlstring = Regex.Replace(htmlstring, "select", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "insert", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "delete from", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "count''", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "drop table", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "truncate", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "asc", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "mid", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "char", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "xp_cmdshell", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "exec master", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "net localgroup administrators", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "and", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "net user", "", RegexOptions.IgnoreCase);
    //htmlstring = Regex.Replace(htmlstring, "or", "", RegexOptions.IgnoreCase);
    //htmlstring = Regex.Replace(htmlstring, "net", "", RegexOptions.IgnoreCase);
    //htmlstring = Regex.Replace(htmlstring, "*", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "-", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "delete", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "drop", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "script", "", RegexOptions.IgnoreCase);
    if (isClearSpechars)
    {
    //特殊的字符
    htmlstring = htmlstring.Replace("<", "");
    htmlstring = htmlstring.Replace(">", "");
    htmlstring = htmlstring.Replace("*", "");
    htmlstring = htmlstring.Replace("-", "");
    htmlstring = htmlstring.Replace("?", "");
    htmlstring = htmlstring.Replace("'", "''");
    htmlstring = htmlstring.Replace(",", "");
    htmlstring = htmlstring.Replace("/", "");
    htmlstring = htmlstring.Replace(";", "");
    htmlstring = htmlstring.Replace("*/", "");
    htmlstring = htmlstring.Replace("
    ", "");
    }
    htmlstring = System.Web.HttpUtility.HtmlEncode(htmlstring).Trim();
    return htmlstring;
    }
    
    
    /**/
    /// <summary>
    /// 去除HTML标记
    /// </summary>
    /// <param name="NoHTML">包括HTML的源码 </param>
    /// <param name="isClearSpechars">去除特殊字符 </param>
    /// <returns>已经去除后的文字</returns>
    public static string NoHTMLByTextarea(string htmlstring, bool isClearSpechars = true)
    {
    if (String.IsNullOrEmpty(htmlstring))
    {
    return string.Empty;
    }
    
    //删除脚本
    htmlstring = Regex.Replace(htmlstring, @"<script[^>]*?>.*?</script>", "", RegexOptions.IgnoreCase);
    //删除HTML
    htmlstring = Regex.Replace(htmlstring, @"<(.[^>]*)>", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"-->", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"<!--.*", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(quot|#34);", """, RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(amp|#38);", "&", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(lt|#60);", "<", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(gt|#62);", ">", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(nbsp|#160);", " ", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(iexcl|#161);", "xa1", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(cent|#162);", "xa2", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(pound|#163);", "xa3", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&(copy|#169);", "xa9", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, @"&#(d+);", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "xp_cmdshell", "", RegexOptions.IgnoreCase);
    //删除与数据库相关的词
    htmlstring = Regex.Replace(htmlstring, "delete from", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "count''", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "drop table", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "truncate", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "asc", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "mid", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "char", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "xp_cmdshell", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "exec master", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "net localgroup administrators", "", RegexOptions.IgnoreCase);
    //htmlstring = Regex.Replace(htmlstring, "and", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "net user", "", RegexOptions.IgnoreCase);
    //htmlstring = Regex.Replace(htmlstring, "or", "", RegexOptions.IgnoreCase);
    //htmlstring = Regex.Replace(htmlstring, "net", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "delete", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "drop", "", RegexOptions.IgnoreCase);
    htmlstring = Regex.Replace(htmlstring, "script", "", RegexOptions.IgnoreCase);
    if (isClearSpechars)
    {
    //特殊的字符
    htmlstring = htmlstring.Replace("<", "");
    htmlstring = htmlstring.Replace(">", "");
    htmlstring = htmlstring.Replace("*", "");
    htmlstring = htmlstring.Replace("-", "");
    htmlstring = htmlstring.Replace("?", "");
    htmlstring = htmlstring.Replace("'", "''");
    htmlstring = htmlstring.Replace(",", "");
    htmlstring = htmlstring.Replace("/", "");
    htmlstring = htmlstring.Replace(";", "");
    htmlstring = htmlstring.Replace("*/", "");
    }
    htmlstring = System.Web.HttpUtility.HtmlEncode(htmlstring).Trim();
    if (htmlstring.Contains("
    "))
    {
    htmlstring = htmlstring.Replace("
    ", "<br/>");
    }
    if (htmlstring.Contains("
    "))
    {
    htmlstring = htmlstring.Replace("
    ", "<br/>");
    }
    return htmlstring;
    }
    }
    View Code
  • 相关阅读:
    实现高效易用的java操作mysql包装
    部分NLuke版本源码更新(2009111)
    ASP.NET Forms验证的安全性问题研究——为什么加密代码需要配置为服务
    VirtualBox 虚拟机 Debian系统上安装Cassandra步骤及遇到的问题
    mysql master/slave 使用感受
    一个不必要的设计
    应对服务器端访问限制的一些办法(Cookie,Session,IP等)
    qq四国军旗2.1 beat03 builde017记牌器开发思路(一)
    MVC与WebForm最大的区别
    dell笔记本的Broadcom 802.11b/g 无线网卡ubuntu 9.10下安装
  • 原文地址:https://www.cnblogs.com/yueyongsheng/p/13964491.html
Copyright © 2011-2022 走看看