string SearchQuery="select * from emp where empNo = '"+ Desire_TextBox.Text+"'";
SqlCommand cmd=new SqlCommand(SearchQuery,Connection Here);
Or you can use SQL Parameter
SqlCommand cmd=new SqlCommand("select * from emp where empNo=@col1 and empName=@col2",ConnectionHere)
cmd.Parameters.AddWithValue("@col1",DesireTextBox.Text);
cmd.Parameters.AddWithValue("@col2",DesireTextBox2.Text);