Those logs can't all be for one IPS protection, as the severity and confidence rankings are different on different lines.
I assume you have checked for any rule-based or global exceptions. Also look in the matching TP profile under IPS...Additional Activation and check what is configured there, although normally this would Inactivate a protection and not set it to Detect.
Beyond that I'll need to see the full log card for a Prevent and another one for Detect on the same IPS signature, and your TP policy containing the rule matching this traffic. You can PM it to me if you wish.
Gateway Performance Optimization R81.20 Course
now available at maxpowerfirewalls.com