This is an accelerator setup for internal webserver(s).
If there's nothing in squid's access.log, there may have been a connection attempt at the network level (only). I would however find it difficult ; the fact that cachemgr would detect this. Are your squid's protected by firewalling setup(s) ? Firewalls might provide more info, concerning bogus packets and or attacks , for instance. M.