You can find out when the pool members were added without having Audit Logging enabled as there would be an entry in the ltm log file when they first came up (or went down) monitoring wise. You can then probably correlate the time this occurred with who was logged in at the time by looking at the secure log file.