Hi, I am trying to create a query to get all values that are larger than the average value. I have a file size field and I need to find all the files that are larger than the average file size.
| eventstats avg(filesize) as avg_filesize
| where filesize > avg_filesize