Did you run anything like a space reclaim or copy in any new VMs to the data store?
A snap that size is caused by a large amount of change…
Compression is another thing to look out for, if you post compress, it can write an awful lot of new blocks as part of the compression job…
But you are looking for changes between the two snapshots.
Sorry if that’s all basic stuff…but always a good place to start…