Hello Nelton,
Use the "Add comment" function when replying instead of posting a new answer.
Regarding your second question: Your logs contain a UTC timestamp. Splunk Web will display your local time zone. I guess for you that is GMT+1. (You can view/edit your user's time zone if you click on your username at the top and then click on "Preferences".)
Regarding your first question: Splunk can automatically extract the header and create the corresponding fields. See Extract fields from files with structured data. However, that only works for file-based inputs and for the "Upload" function in Splunk Web. Add the "FIELD_DELIMITER" and "HEADER_FIELD_DELIMITER" configuration:
https://ibb.co/3rjcBLV
Splunk complains that the header contains 9 fields whereas the other lines contain 10 fields.
You could also configure field extractions at search time instead at index time like shown here.
... View more