Are any and all IIS boxes behind the router patched? Do you have an excessive number of Subnets local to the router with a small number of hosts? Do you have a firewall to protect the router from the internet?
Routers are getting hurt right now due to a "CodeRed 3 or Code blue or W32.nimda.a.mm" Worm that seems to be hitting from all angles and as such we will see box performance, routers, and (with smaller links) network issues riseing swiftly. Seems to be hitting Web Servers, rumor of TFTP useage and even telnet probes also.