I think you misunderstand was phishing is.
It is where you are sent an email with a link in it to a web site, say your bank, but clicking on the link takes you to a "fake" site that looks like your bank.
Logging on to this "fake" web site gives away your userid and password, allowing someone else to log on tot he REAL site using your userid and password.
My guess is someone found out your password (do you use the same password to logon to other web sites?) and logged on and sent an email out to all your contacts.
You should ALWAYS use a different password for your email system than you use to logon to web sites.