尝试这个:
@H_301_13@var query = "select * from foo where name like @searchterm";
using (var command = new sqlCommand(query,connection))
{
command.Parameters.AddWithValue("@searchterm",String.Format("%{0}%",searchTerm));
var result = command.ExecuteReader();
}