Yeah, that is one thing that could be done. But they didn't want to sit around and wait for any length of time, so to workaround the issue and immediately return to service they programmatically switched the servers to use a different service account.
No, I don't see people messing with the default much. On rare occasions I'll see people wanting to set it to 1 day or asking how to programmatically roll the password every 30 minutes or something, but that's not the norm.