Phishing compromises are unrelated to the contents or security of your Mac. Service credentials, payment card details, Apple Account password, those can be requested by and exposed to the phishing. I’d expect a Punchbowl phishing to ask for Punchbowl credentials.
Not unless the scam had you download apps to your Mac, or provide remote access into your Mac. If you did do that, then the path is restoring a pre-breach backup, and changing all passwords.
One thing that can be an immense problem here is password re-use. If you;re using the same email and password with multiple services, getting that password phished in one place can (does) lead to breaches in other places where that password was re-used. This is where using unique passwords, and using passkeys where the services support those, are helpful. If you re-used that phished password, get to work changing it everywhere it was used.
On the local Mac, malware scans won’t detect compromised credentials* or enabling remote access or various sorts of backdoors, because that is something that the user specifically requested.
macOS has in-built malware scanning, and that detects and remediates most common problems.
*Apple has a separate tool that reports password compromises, integrated with the Passwords app. Other add-on security tools can have similar checks. if you want to see some of where your email and password may or has been compromised, visit https://haveibeenpwned.com and enter your email address.