I doubt most will even go that far. You can pretty much expect those that won't go HTTPS (for whatever reason, and there are many) to change their input type="password" fields to input type="text" fields.
That is probably what I am going to do for the internal site I maintain at work, since I can't get an SSL certificate for such a thing.
All this change is going to do is make password eavesdropping in person easier.