function checkform(form){
	var exp1=/\d{5,}/;
	var exp2=/^[a-zA-Z0-9]+@[a-zA-Z0-9_-]+\.[a-zA-Z0-9._-]*$/;
    var pattern = /<(\/?)(script|i?frame|style|html|body|title|link|meta|\?|\%)([^>]*?)>|(<[^>]*)on[a-zA-Z]+\s*=([^>]*>)/;
	var email=form.email.value;
	var qq=form.qq.value;
	if (form.username.value==""){
		alert("用户名不能为空");
		form.username.focus();
		return false;
	}
	if(email.match(exp2)==null){
		alert("电子邮件不正确");
		form.email.focus();
		return false;
	}
	if(form.qq.value==""){
		alert("请填写你的QQ或msn联系方式!");
		form.qq.focus();
		return false;
	}

	if(form.validate.value==""){
		alert("请填写验证码!");
		form.validate.focus();
		return false;
	}
	
	if(pattern.exec(form.content.value)){
	    form.content.focus();
		alert("您输入的留言信息中含有非法字符,请更正！");
		return false;
	}
	return true
}


function checkInputChar(strInput){ 
    var pattern = /<(\/?)(script|i?frame|style|html|body|title|link|meta|\?|\%)([^>]*?)>|(<[^>]*)on[a-zA-Z]+\s*=([^>]*>)/;
	if(pattern.exec(strInput)){
	    document.form.content.focus();
		alert("您输入的留言信息中含有非法字符: "+pattern.exec(strInput)[0]+" 请更正！");
		 
	}
}
/*
function checkInputChar(strInput){
	var forbidChar = new Array('<\/script>','for','while','alert','do','if','<script>','script'); 
	for (var i = 0;i < forbidChar.length ; i++){ 
	  if(strInput.indexOf(forbidChar[i]) >= 0){ 
				alert("您输入的留言信息中含有非法字符: "+forbidChar[i]+" 请更正！"); 
		  return false; 
	  } 
	} 
	return true; 
}
*/


function slico(){
	document.getElementById("icolist").style.display="block";

}
function rtvalue(obj){
	var img = obj.src;
	var num = img.indexOf("images");
	var subimg = img.substr(num);
	document.getElementById("icolist").style.display="none";
	document.getElementById("userico").src = subimg;
	document.getElementById("pic").value = subimg;
}
